← Back to the catalog

pe-reconstruct

Recover and statically analyze manually-mapped DLLs (in-process implants, malware loaders, packers, anti-cheat modules) whose PE headers are wiped at runtime. Use when the user asks to dump a hidden DLL from a process, find a manually-mapped module, recover a headerless PE, reconstruct a wiped image, identify hooks installed by an in-process implant, or analyze a code region whose `MZ`/`PE\0\0` he

9stars
Updated last month

View on GitHub ↗License: MIT

How to add

/plugin marketplace add diabloidyobane/PEReconstruct

The exact command may vary by repository. Check the README on GitHub.

For the skill author

Drop this on your repo README

Shows your skill is listed on Skillteca, generates a backlink and trackable traffic.

Listada na Skillteca
[![Listada na Skillteca](https://www.skillteca.com.br/api/badge/pe-reconstruct/svg)](https://www.skillteca.com.br/skills/pe-reconstruct?utm_source=badge&utm_medium=readme&utm_campaign=badge)

Category alert

Get new Desenvolvimento skills every Monday

One short email with only the new Desenvolvimento skills. 4 minutes of reading, no spam, unsubscribe with one click.

You confirm your email on the first send. No spam. Unsubscribe with one click.

ShareXLinkedIn

Comments · No comments

Sign in to comment. Sign in

  • No comments yet. Be the first.