Topic: "libpeconv"
hasherezade/pe-sieve
Scans a given process. Recognizes and dumps a variety of potentially malicious implants (replaced/injected PEs, shellcodes, hooks, in-memory patches).
Language: C++ - Size: 131 MB - Last synced at: 9 days ago - Pushed at: about 1 month ago - Stars: 3,313 - Forks: 450

hasherezade/libpeconv
A library to load, manipulate, dump PE files. See also: https://github.com/hasherezade/libpeconv_tpl
Language: C++ - Size: 140 MB - Last synced at: about 24 hours ago - Pushed at: 4 days ago - Stars: 1,222 - Forks: 191

hasherezade/dll_to_exe
Converts a DLL into EXE
Language: C++ - Size: 38.1 KB - Last synced at: 6 days ago - Pushed at: almost 2 years ago - Stars: 812 - Forks: 172

hasherezade/mal_unpack
Dynamic unpacker based on PE-sieve
Language: C - Size: 980 KB - Last synced at: 7 days ago - Pushed at: 2 months ago - Stars: 732 - Forks: 72

hasherezade/libpeconv_tpl
A ready-made template for a project based on libpeconv.
Language: C++ - Size: 41 KB - Last synced at: about 2 months ago - Pushed at: 3 months ago - Stars: 46 - Forks: 11

hasherezade/loaderine
A demo implementation of a well-known technique used by some malware to evade userland hooking, using my library: libpeconv.
Language: C - Size: 33.2 KB - Last synced at: about 2 months ago - Pushed at: about 7 years ago - Stars: 19 - Forks: 13

hasherezade/libpeconv_wrappers
A ready-made template for a new project based on libPeConv library
Language: C++ - Size: 24.4 KB - Last synced at: about 2 months ago - Pushed at: over 6 years ago - Stars: 7 - Forks: 8
