pefile
Here are 55 public repositories matching this topic...
Language:All
Sort:Most stars
PE Tools - Portable executable (PE) manipulation toolkit
- Updated
Apr 4, 2018
Process Ghosting - a PE injection technique, similar to Process Doppelgänging, but using a delete-pending file instead of a transacted file
- Updated
Mar 11, 2024 - C
Portable Executable (PE) library written in .Net
- Updated
Mar 16, 2025 - C#
Transacted Hollowing - a PE injection technique, hybrid between ProcessHollowing and ProcessDoppelgänging
- Updated
Mar 8, 2024 - C
Malware Data Science Reading Diary / Notes
- Updated
May 5, 2019 - Jupyter Notebook
POC of a better implementation of GetProcAddress for ntdll using binary search
- Updated
Apr 8, 2024 - C
A Malware classifier dataset built with header fields’ values of Portable Executable files
- Updated
Dec 2, 2022 - YARA
A Machine Learning approach for classifying a file as Malicious or Legitimate
- Updated
Oct 10, 2016 - Jupyter Notebook
PE Binary Shellcode Injector - Automated code cave discovery, shellcode injection, ASLR bypass, x86/x64 compatible
- Updated
Nov 24, 2019 - Python
Small visualizator for PE files
- Updated
Sep 20, 2023 - Python
Herpaderply Hollowing - a PE injection technique, hybrid between Process Hollowing and Process Herpaderping
- Updated
Oct 9, 2022 - C
Dump certificates from PE files in different formats
- Updated
Dec 25, 2023 - C#
ProcessGhosting 技术的 rust 实现版本
- Updated
Oct 23, 2024 - Rust
Detecting Malware in PE files
- Updated
Aug 8, 2023 - Jupyter Notebook
This project is Malware detection API using ML and CNN techniques
- Updated
Apr 29, 2023 - Jupyter Notebook
Hex Workshop editor's structure library for the Microsoft's Portable Executable format.
- Updated
Feb 28, 2019
Improve this page
Add a description, image, and links to thepefile topic page so that developers can more easily learn about it.
Add this topic to your repo
To associate your repository with thepefile topic, visit your repo's landing page and select "manage topics."