saferwall / peLinks
A lightweight Go package to parse, analyze and extract metadata from Portable Executable (PE) binaries. Designed for malware analysis tasks and robust against PE malformations.
☆374Updated 3 months ago
Alternatives and similar repositories for pe
Users that are interested in pe are comparing it to the libraries listed below
Sorting:
- GoRE - Package gore is a library for analyzing Go binaries☆523Updated 3 weeks ago
- Pakkero is a binary packer written in Go made for fun and educational purpose. Its main goal is to take in input a program file (elf bina…☆268Updated 2 years ago
- Go symbol recovery tool☆884Updated last month
- A command line Windows API tracing tool for Golang binaries.☆159Updated 2 years ago
- A Simple Linux ELF Runtime Crypter☆265Updated 10 months ago
- Fork of pkg/debug that adds some additional functionality.☆128Updated last year
- Python tool to resolve all strings in Go binaries obfuscated by garble☆180Updated 10 months ago
- Redress - A tool for analyzing stripped Go binaries☆1,133Updated last week
- 🗜️ A packer for Windows x86 executable files written in C and Intel x86 Assembly. The new file after packing can obstruct reverse engine…☆354Updated last year
- A PoC package for hosting the CLR and executing .NET from Go☆229Updated 3 years ago
- Elf binary infector written in Go.☆214Updated last year
- IDApython Scripts for Analyzing Golang Binaries☆659Updated last year
- Injects additional machine instructions into various binary formats.☆287Updated last year
- MinHook binding for Go (Golang) with support for Windows API.☆81Updated 6 years ago
- Exploiting DLL Hijacking by DLL Proxying Super Easily☆550Updated 2 years ago
- Universal Shared Library User-space Loader☆234Updated 3 years ago
- x86 malware emulator☆261Updated last week
- Go interface to NTDLL functions☆80Updated last year
- A way to delete a locked file, or current running executable, on disk.☆613Updated 2 months ago
- Yet another variant of Process Hollowing☆425Updated 5 months ago
- It's a go variant of Hells gate! (directly calling windows kernel functions, but from Go!)☆526Updated 3 years ago
- x86 WinAPI hook written in pure Go☆50Updated 5 years ago
- Process Injection Techniques with Golang☆80Updated 5 years ago
- Anti Virtulization, Anti Debugging, AntiVM, Anti Virtual Machine, Anti Debug, Anti Sandboxie, Anti Sandbox, VM Detect package. Windows ON…☆828Updated last month
- A DTrace on Windows Reimplementation☆369Updated 3 months ago
- Donut Injector ported to pure Go. For use with https://github.com/TheWover/donut☆356Updated 3 years ago
- Dynamic unpacker based on PE-sieve☆793Updated 4 months ago
- Golang wrappers functions to call Windows APIs☆81Updated 3 years ago
- Small tool to run ELF binaries from memory with a given process name☆171Updated 4 years ago
- Assortment of hashing algorithms used in malware☆387Updated this week