10 results found Sort:

135
1.1k
mit
53
PE Tools - Portable executable (PE) manipulation toolkit
Created 2017-09-01
12 commits to master branch, last one 6 years ago
83
669
gpl-2.0
32
Automatic and platform-independent unpacker for Windows binaries based on emulation
Created 2019-02-07
225 commits to master branch, last one 2 months ago
Process Ghosting - a PE injection technique, similar to Process Doppelgänging, but using a delete-pending file instead of a transacted file
Created 2021-06-16
24 commits to master branch, last one 9 months ago
115
596
apache-2.0
31
Portable Executable (PE) library written in .Net
Created 2015-07-02
1,110 commits to master branch, last one 17 days ago
Transacted Hollowing - a PE injection technique, hybrid between ProcessHollowing and ProcessDoppelgänging
Created 2021-06-05
33 commits to main branch, last one 9 months ago
19
147
mit
6
Python Antivirus Software
Created 2021-07-27
1,216 commits to main branch, last one 26 days ago
POC of a better implementation of GetProcAddress for ntdll using binary search
Created 2021-12-19
17 commits to main branch, last one 2 years ago
29
90
unknown
6
A Malware classifier dataset built with header fields’ values of Portable Executable files
Created 2016-04-01
46 commits to master branch, last one 2 years ago
15
67
unknown
4
Small visualizator for PE files
Created 2022-07-07
22 commits to master branch, last one about a year ago
Herpaderply Hollowing - a PE injection technique, hybrid between Process Hollowing and Process Herpaderping
Created 2022-10-07
4 commits to main branch, last one 2 years ago