hasherezade/pe-bear
Portable Executable reversing tool with a friendly GUI
Scans a given process. Recognizes and dumps a variety of potentially malicious implants (replaced/injected PEs, shellcodes, hooks, in-memory patches).
Quick read
Latest capture 2026-07-30 03:04
0 paths
Agent instructions and tool configuration found in this repository.
No config files detected.
4 observed captures since 2026-06-24. Charts use measured snapshots only.
Stars from first capture +124
All tracked data
Observed snapshots
Observed snapshots
Nearest indexed repositories by embedding similarity.
Portable Executable reversing tool with a friendly GUI
Recover and statically analyze manually-mapped DLLs whose PE headers are wiped at runtime. Pure-stdlib Python, no driver, no debugger required. Includes a Claude Code skill.
Malware Configuration And Payload Extraction
Process dumper edited to fit the new League of Legends Anti-Cheat system.
PEASS - Privilege Escalation Awesome Scripts SUITE (with colors)
Malware Configuration And Payload Extraction