zed-0xff / pedump
dump windows PE files using ruby
☆315Updated last week
Alternatives and similar repositories for pedump
Users that are interested in pedump are comparing it to the libraries listed below
Sorting:
- C++ application that uses memory and code hooks to detect packers☆270Updated 7 years ago
- windows syscall table from xp ~ 10 rs4☆353Updated 6 years ago
- This is the main repository for metasm, a free assembler / disassembler / compiler written in ruby☆469Updated 6 months ago
- Portable Executable parsing library (from PE-bear)☆658Updated 3 weeks ago
- Labeless is a multipurpose IDA Pro plugin system for labels/comments synchronization with a debugger backend, with complex memory dumping…☆546Updated 3 months ago
- PowerLoaderEx - Advanced Code Injection Technique for x32 / x64☆368Updated 8 years ago
- Incident Response & Digital Forensics Debugging Extension☆378Updated 6 years ago
- x86 Inline hooking engine (using trampolines)☆96Updated 10 years ago
- Better version of RunDll with GUI. This program allows you to load DLLs on Windows. You can select how to load the DLL. By direct Entry P…☆235Updated 10 years ago
- DriverBuddy is an IDA Python script to assist with the reverse engineering of Windows kernel drivers.☆362Updated 5 years ago
- SmartDec decompiler☆403Updated 3 years ago
- A patch analysis tool☆363Updated 4 years ago
- Persistent IAT hooking application - based on bearparser☆257Updated 2 years ago
- Dynamic IDA Enrichment☆471Updated 3 years ago
- Source from VMDE paper, adapted to 2015☆182Updated 7 years ago
- Open source library that implements translator and tools for REIL (Reverse Engineering Intermediate Language)☆508Updated 4 years ago
- Consonance, a dark color scheme for IDA.☆264Updated 12 years ago
- IDA Pro Instruction Reference Plugin☆645Updated 3 years ago
- Virtualbox, VirtualMachine, Cuckoo, Anubis, ThreatExpert, Sandboxie, QEMU, Analysis Tools Detection Tools☆451Updated 6 years ago
- IDA Pro script to add some useful runtime info to static analysis☆528Updated 2 years ago
- Python code to parse Microsoft PDB files☆323Updated 9 months ago
- A tool to help when dealing with Windows IOCTL codes or reversing Windows drivers.☆434Updated 6 years ago
- Debug Child Process Tool (auto attach)☆286Updated last year
- ROPMEMU is a framework to analyze, dissect and decompile complex code-reuse attacks.☆286Updated 8 years ago
- A Turing complete ROP compiler☆320Updated 11 years ago
- zer0m0n driver for cuckoo sandbox☆360Updated 9 years ago
- The ultimate hooking library☆267Updated 4 years ago
- Mirror of users section of rootkit.com☆295Updated 8 years ago
- ATrace is a tool for tracing execution of binaries on Windows.☆238Updated 8 years ago
- A tool to detect and crash Cuckoo Sandbox☆294Updated 9 months ago