zed-0xff / pedumpLinks
dump windows PE files using ruby
☆319Updated 3 weeks ago
Alternatives and similar repositories for pedump
Users that are interested in pedump are comparing it to the libraries listed below
Sorting:
- This is the main repository for metasm, a free assembler / disassembler / compiler written in ruby☆472Updated last month
- A patch analysis tool☆363Updated 5 years ago
- windows syscall table from xp ~ 10 rs4☆354Updated 7 years ago
- SmartDec decompiler☆409Updated 4 years ago
- Persistent IAT hooking application - based on bearparser☆261Updated 3 years ago
- C++ application that uses memory and code hooks to detect packers☆271Updated 7 years ago
- Virtualbox, VirtualMachine, Cuckoo, Anubis, ThreatExpert, Sandboxie, QEMU, Analysis Tools Detection Tools☆457Updated 6 years ago
- Portable Executable parsing library (from PE-bear)☆656Updated 3 weeks ago
- x86 Inline hooking engine (using trampolines)☆98Updated 10 years ago
- Better version of RunDll with GUI. This program allows you to load DLLs on Windows. You can select how to load the DLL. By direct Entry P…☆236Updated 10 years ago
- Source from VMDE paper, adapted to 2015☆188Updated 7 years ago
- Python code to parse Microsoft PDB files☆327Updated last year
- Drltrace is a library calls tracer for Windows and Linux applications.☆411Updated 5 years ago
- The ultimate hooking library☆274Updated 4 years ago
- Incident Response & Digital Forensics Debugging Extension☆382Updated 6 years ago
- Windows registry file format specification☆348Updated 7 years ago
- A tool to detect and crash Cuckoo Sandbox☆295Updated last year
- ☆244Updated 11 years ago
- A tool to help when dealing with Windows IOCTL codes or reversing Windows drivers.☆437Updated 7 years ago
- Basically a script thrift shop☆589Updated 2 years ago
- Consonance, a dark color scheme for IDA.☆263Updated 12 years ago
- YaCo is an Hex-Rays IDA plugin. When enabled, multiple users can work simultaneously on the same binary. Any modification done by any use…☆326Updated 6 years ago
- Labeless is a multipurpose IDA Pro plugin system for labels/comments synchronization with a debugger backend, with complex memory dumping…☆565Updated 9 months ago
- This is a plugin for OllyDbg 1.10 to replace the old disasm engine by Capstone disassembly/disassembler framework.☆79Updated 10 years ago
- Windows XP 32-Bit Bootkit☆145Updated 10 years ago
- ATrace is a tool for tracing execution of binaries on Windows.☆240Updated this week
- IDA Pro script to add some useful runtime info to static analysis☆531Updated 3 years ago
- The CrowdDetox plugin for Hex-Rays automatically removes junk code and variables from Hex-Rays function decompilations.☆160Updated 4 years ago
- DriverBuddy is an IDA Python script to assist with the reverse engineering of Windows kernel drivers.☆367Updated 5 years ago
- flare-dbg is a project meant to aid malware reverse engineers in rapidly developing debugger scripts.☆150Updated 8 years ago