pefile is a Python module to read and work with PE (Portable Executable) files
☆2,069Sep 18, 2026Updated last week
Alternatives and similar repositories for pefile
Users that are interested in pefile are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- FLARE Obfuscated String Solver - Automatically extract obfuscated strings from malware.☆4,161Updated this week
- Scans a given process. Recognizes and dumps a variety of potentially malicious implants (replaced/injected PEs, shellcodes, hooks, in-mem…☆3,907Jun 6, 2026Updated 3 months ago
- LIEF - Library to Instrument Executable Formats (C++, Python, Rust)☆5,574Updated this week
- Principled, lightweight C/C++ PE parser☆913Aug 5, 2026Updated last month
- A static analyzer for PE executables.☆1,147Aug 29, 2026Updated 3 weeks ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Repository of yara rules☆4,902Apr 17, 2024Updated 2 years ago
- Reverse engineering framework in Python☆3,973Sep 21, 2026Updated last week
- IDA Pro utilities from FLARE team☆2,451Oct 29, 2024Updated last year
- Capstone disassembly/disassembler framework for ARM, ARM64 (ARMv8), Alpha, BPF, Ethereum VM, HPPA, LoongArch, M68K, M680X, Mips, MOS65XX,…☆9,042Updated this week
- A powerful and user-friendly binary analysis platform!☆9,114Updated this week
- A list of IDA Plugins☆3,837May 31, 2024Updated 2 years ago
- ☆1,001Updated this week
- Triton is a dynamic binary analysis library. Build your own program analysis tools, automate your reverse engineering, perform software v…☆4,311Sep 18, 2026Updated last week
- Diaphora, the most advanced Free and Open Source program diffing tool.☆4,409Sep 4, 2026Updated 3 weeks ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- DRAKVUF Black-box Binary Analysis☆1,278Updated this week
- yarGen is a generator for YARA rules☆1,814Jan 10, 2026Updated 8 months ago
- A community driven collection of IDA FLIRT signature files☆1,363Sep 3, 2021Updated 5 years ago
- Noriben - Portable, Simple, Malware Analysis Sandbox☆1,304Sep 18, 2026Updated last week
- IDAPython project for Hex-Ray's IDA Pro☆1,537Dec 24, 2025Updated 9 months ago
- IDA 2016 plugin contest winner! Symbolic Execution just one-click away!☆1,627Jun 11, 2025Updated last year
- Windows kernel and user mode emulation.☆2,059Sep 15, 2026Updated last week
- Public malware techniques used in the wild: Virtual Machine, Emulation, Debuggers, Sandbox detection.☆7,138Jul 1, 2026Updated 2 months ago
- Reflective DLL injection is a library injection technique in which the concept of reflective programming is employed to perform the loadi…☆3,362Sep 3, 2022Updated 4 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Cuckoo Sandbox is an automated dynamic malware analysis system☆5,959May 3, 2022Updated 4 years ago
- The pattern matching swiss knife☆9,895Updated this week
- The FLARE team's open-source tool to identify capabilities in executable files.☆6,204Sep 14, 2026Updated 2 weeks ago
- Hex-Rays Decompiler plugin for better code navigation☆2,641Nov 27, 2025Updated 10 months ago
- Defund the Police.☆14,220Jun 7, 2024Updated 2 years ago
- Powerful Disassembler Library For x86/AMD64☆1,340Oct 10, 2023Updated 2 years ago
- WinAppDbg Debugger☆486Mar 24, 2026Updated 6 months ago
- Pafish is a testing tool that uses different techniques to detect virtual machines and malware analysis environments in the same way that…☆3,943Jun 21, 2024Updated 2 years ago
- Export disassemblies into Protocol Buffers☆1,206Sep 15, 2026Updated last week
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- An advanced memory forensics framework☆8,061May 16, 2025Updated last year
- Elastic Malware Benchmark for Empowering Researchers☆1,170Nov 22, 2024Updated last year
- oletools - python tools to analyze MS OLE2 files (Structured Storage, Compound File Binary Format) and MS Office documents, for malware a…☆3,421Feb 14, 2026Updated 7 months ago
- Unicorn CPU emulator framework (ARM, AArch64, M68K, Mips, Sparc, PowerPC, RiscV, S390x, TriCore, X86)☆9,375Aug 28, 2026Updated last month
- Program for determining types of files for Windows, Linux and MacOS.☆11,599Updated this week
- Official repository for Pyew.☆394Sep 6, 2019Updated 7 years ago
- A True Instrumentable Binary Emulation Framework☆6,110Updated this week