themeldingwars / Be.HexEditorLinks
A modified fork of Be.HexEditor for use in debug tools
☆15Updated 3 years ago
Alternatives and similar repositories for Be.HexEditor
Users that are interested in Be.HexEditor are comparing it to the libraries listed below
Sorting:
- Library to process OLE compound file format. This is a work in progress and was initially written for jumplist parsing (for which it does…☆19Updated 8 months ago
- Dump certificates from PE files in different formats☆38Updated last year
- Lnk file parser☆90Updated 5 months ago
- ☆28Updated 2 years ago
- Automatic/Custom Destinations & LNK (MS-SHLLINK) Browser☆38Updated last year
- Parse Microsoft shim databases☆31Updated 9 months ago
- An attempt to create a friendly version of WinDbg☆105Updated 7 years ago
- Analyzers for Portable Executable anomalies and other malware behavior.☆32Updated last year
- A console debugger using DbgX and Terminal.Gui☆30Updated 3 years ago
- Extension blocks as found in ShellBags and other places in the Registry☆25Updated 9 months ago
- Example/starter code for custom Windows application compatibility shims☆34Updated 4 years ago
- Get USB Devices from Registry hives☆22Updated 3 years ago
- .NET wrapper for dbghelp.dll☆21Updated 6 years ago
- extract and parse WEVT_TEMPLATEs from PE files☆18Updated last year
- VB Exe Parser is an IDA script written in Python. This script will help you to parse VB program internal structures. It can find: Event, …☆17Updated 9 years ago
- analysis of visual basic code☆45Updated 7 years ago
- A Microsoft Windows service to provide telemetry on Windows executable memory page changes to facilitate threat detection☆32Updated 5 years ago
- A repo that contains a recursive dump from the ROOT key of every Windows Registry hive (using KAPE) from a vanilla (clean) install of eve…☆48Updated 3 weeks ago
- ☆69Updated 2 months ago
- A set of small utilities, helpers for PIN tracers☆34Updated 3 weeks ago
- PowerShell PE Parser☆64Updated last year
- An example pattern in C# for using WMI to monitor process creation and termination events.☆52Updated 7 years ago
- Diff tool for comparing symbols in PDB files☆84Updated 5 years ago
- Windows.EDB Browser☆58Updated 2 years ago
- CLI tool to compute the TypeRefHash for .NET binaries.☆19Updated 3 years ago
- $MFT parser (from live systems or a copy of the $MFT) and raw file copy utility☆38Updated last year
- MFT parser☆72Updated 8 months ago
- A template for projects using both libPeConv and MS Detours☆16Updated 3 weeks ago
- Code samples that serve as references for Windows API functions☆35Updated last year
- Windows Event Log Knowledge Base☆27Updated last week