hasherezade/pe-bear
Portable Executable reversing tool with a friendly GUI
Repository profile
Scans a given process. Recognizes and dumps a variety of potentially malicious implants (replaced/injected PEs, shellcodes, hooks, in-memory patches).
Repository updates
Get generated hasherezade/pe-sieve development summaries by email, or follow the weekly and monthly RSS feeds.
Sign in to subscribe by email. RSS feeds are public.
Sign in to subscribeTracked growth, recent movement, and commit velocity from stored repository snapshots.
Latest capture 2026-06-24 13:53
2 captures since 2026-06-24
Stars from baseline 0
All tracked data
Frameworks, package managers, ecosystems, and dependency manifests found during catalog scans.
Scanned 2026-06-24 13:53
CMakeLists.txt
c-cpp ecosystem,
0 dependencies
Searchable topics, generated tags, and stack labels that explain where this repository fits.
Agent instructions and tool configuration paths found in the repository tree.
Nearest indexed repositories by embedding similarity.
Portable Executable reversing tool with a friendly GUI
Recover and statically analyze manually-mapped DLLs whose PE headers are wiped at runtime. Pure-stdlib Python, no driver, no debugger required. Includes a Claude Code skill.
Malware Configuration And Payload Extraction
Process dumper edited to fit the new League of Legends Anti-Cheat system.
PEASS - Privilege Escalation Awesome Scripts SUITE (with colors)
Malware Configuration And Payload Extraction