horsicq / XPEViewer
PE file viewer/editor for Windows, Linux and MacOS.
☆1,045Updated this week
Alternatives and similar repositories for XPEViewer:
Users that are interested in XPEViewer are comparing it to the libraries listed below
- PDBRipper is a utility for extract an information from PDB-files.☆823Updated this week
- Linker/Compiler/Tool detector for Windows, Linux and MacOS.☆545Updated this week
- Windows Object Explorer 64-bit☆1,714Updated last month
- A library to load, manipulate, dump PE files. See also: https://github.com/hasherezade/libpeconv_tpl☆1,182Updated last week
- Hiding kernel-driver for x86/x64.☆2,209Updated 2 weeks ago
- Native API header files for the System Informer project.☆1,130Updated last month
- Windows NT Syscall tables☆1,249Updated last month
- PE Tools - Portable executable (PE) manipulation toolkit☆1,078Updated 6 years ago
- A curated list of IDA x64DBG, Ghidra and OllyDBG plugins.☆1,345Updated 9 months ago
- Windows System Call Tables (NT/2000/XP/2003/Vista/7/8/10/11)☆2,267Updated 3 weeks ago
- A Pin Tool for tracing API calls etc☆1,392Updated last month
- Imports Reconstructor☆1,173Updated last year
- An easy-to-use library for emulating memory dumps. Useful for malware analysis (config extraction, unpacking) and dynamic analysis in gen…☆781Updated last year
- Hook system calls, context switches, page faults and more.☆2,506Updated last year
- PE-bear (builds only)☆773Updated last year
- A static devirtualizer for VMProtect x64 3.x. powered by VTIL.☆1,992Updated 3 years ago
- proof-of-concept Windows Driver for injecting DLL into user-mode processes using APC☆1,200Updated 10 months ago
- xAnalyzer plugin for x64dbg☆1,061Updated 3 years ago
- Automatic and platform-independent unpacker for Windows binaries based on emulation☆681Updated 5 months ago
- VirtualKD-Redux - A revival and modernization of VirtualKD☆863Updated 8 months ago
- A dynamic VMP dumper and import fixer, powered by VTIL.☆1,204Updated 4 years ago
- State-of-the-art native debugging tools☆3,127Updated last week
- Hook system calls on Windows by using Kaspersky's hypervisor☆1,156Updated 11 months ago
- 🇺🇦 Windows driver with usermode interface which can hide processes, file-system and registry objects, protect processes and etc☆1,880Updated 2 years ago
- Playing with the VMProtect software protection. Automatic deobfuscation of pure functions using symbolic execution and LLVM.☆1,216Updated 2 years ago
- Windows System Explorer☆848Updated 9 months ago
- ret-sync is a set of plugins that helps to synchronize a debugging session (WinDbg/GDB/LLDB/OllyDbg2/x64dbg) with IDA/Ghidra/Binary Ninja…☆2,105Updated last year
- Windows kernel hacking framework, driver template, hypervisor and API written on C++☆1,701Updated last year
- Process Monitor X v2☆598Updated last year
- XNTSV program for detailed viewing of system structures for Windows.☆456Updated this week