hasherezade/pe-bear
Portable Executable reversing tool with a friendly GUI
Scans a given process. Recognizes and dumps a variety of potentially malicious implants (replaced/injected PEs, shellcodes, hooks, in-memory patches).
Quick read
Latest capture 2026-09-01 03:06
0 paths
Agent instructions and tool configuration found in this repository.
No config files detected.
5 observed captures since 2026-06-24. Observed captures are shown by default.
Stars from first capture +171
Observed captures only
All tracked data
Observed snapshots
Observed snapshots
Nearest indexed repositories by embedding similarity.
Portable Executable reversing tool with a friendly GUI
Recover and statically analyze manually-mapped DLLs whose PE headers are wiped at runtime. Pure-stdlib Python, no driver, no debugger required. Includes a Claude Code skill.
Malware Configuration And Payload Extraction
Process dumper edited to fit the new League of Legends Anti-Cheat system.
PEASS - Privilege Escalation Awesome Scripts SUITE (with colors)
Malware Configuration And Payload Extraction