搜索资源列表
PE-Export
- 解析pe文件,分析PE文件加载的dll模块,显示导出表和导入表-Pe file analysis to analyze export tables and import tables PE
PE 脱壳学习pe文件格式
- 学习破解必备,脱壳学习pe文件格式的好帮手
PE_EXEVIEW_PEFILE
- The Portable Executable File Format from Top to Bottom原文、译文及源代码 1、The Portable Executable File Format from Top to Bottom 是最早讲解PE格式的文章之一,是了解PE格式入门很好的文章,原文可以在MSDN1998光盘找到中。 2、这篇文章被国内网友多次翻译,有代表性的译文有两个: 看雪软件安全论坛(bbs.pediy.com)中的ah007译为:可移植的
DalKrypt
- DalKrypt is a powerful windows PE cryptor -DalKrypt is a powerful windows PE cryptor ...
PEViewer
- PE文件查看器,对于研究PE文件,获取软件信息的好工具-PE viewer,use this tool to get PE file informatio。
SimplePeLoader
- peloader简单的pe加载程序,应该会比较有用-peloader simple pe loader, should be more useful
PEHOOK
- 可以实现PE HOOK。这种方法对于拦截、分析其他内核驱动的函数调用来说用的比较多。原理是根据替换 PE 格式导出表中的相应函数来实现的。 -Can achieve PE HOOK. This method for the interception, analysis of other core-driven function call is used more. The principle is based on PE format to export table to replace t
PE-digital-signature-
- 提取PE文件的数字签名,还可以写入数字签名-PE files extracted digital signature, digital signature can also be written
TLS_CallBack
- 漫谈TLS_CallBack:原理、编程、手工感染及检测.利用TLS_CallBack(线程局部存储回调函数)玩弄调试器以及感染PE文件.-Talk TLS_CallBack: principles, programming, manual infection and detection. Use TLS_CallBack (thread local storage callback function), as well as playing with the debugger PE file
PE.Resource.Explorer.v2.001
- PE.Resource.Explorer.v2.001 查看修改EXE资源的软件及源码-PE.Resource.Explorer.v2.001 view and modify the software source code EXE Resources
minifilterLimited
- 文件系统 Minifilter驱动,通过限制PE文件的载入和修改达到限制可执行文件启动运行。-Minifilter file system driver, by limiting the PE file limit is reached, load and modify the executable file to start running.
pcsnk029
- WIN95/98 PE压缩软件源程序-WIN95/98 PE compression software source program
vgcrypt
- PE程序加密壳源程序 -PE procedure encryption shell source program
pedump
- Windows PE文件格式分析与PEDUMP的实现-Windows PE File Format Analysis and realization of PEDUMP
关于PE可执行文件的修改
- 关于PE可执行文件的修改-PE executable files on the changes
pe
- 获取pe文件的函数. 我的QQ:2891-Pe a function of access to documents. My QQ: 2891
pe
- PE文件分析例子-Examples of PE File Analysis
PEDump
- Delphi下深入Windows核心编程,PE结构分析-Delphi depth under the Windows core programming, PE Structural Analysis
dos_stub
- Windows PE 文件在 DOS 下运行一般会显示:This program cannot be run in DOS mode. 这是PE文件头部的一个"dos stub"程序,这个就是"dos stub"的源码,我们可以修改它,用fasm.exe编译,在vc连接时,加上 /stub:stub.exe-Windows PE files will normally be run under DOS shows: This program cannot be run in DOS mode
ZEROADD
- 为PE文件增加任意名称,任意大小的空白区段。是DELPHI的原代码,自己准备编写壳时的一个练习。-PE file for the increase in arbitrary name, of any size blank section. Is DELPHI original code, its own shell at the time of the preparation of a practice.