Portable executable (PE) manipulation toolkit
PE Tools - portable executable (PE) manipulation toolkit.
PE Tools lets you actively research PE files and processes.
Process Viewer
and PE filesEditor
,Dumper
,Rebuilder
,Comparator
,Analyzer
are included. PE Tools is an oldschool reverse engineering tool with a long history since2002
. PE Tools was initially inspired by LordPE (yoda).
Section Editor
via section context menuData Directory
in Directory Editor
Plugin SDK
availableComplete PE Tools v1.9 announces:
PE Editor
dialogSection Editor
via section context menuFile Compare
dialog for both compared filesv3.3.4
jmp / call
directionIMAGE_LOAD_CONFIG_DIRECTORY
supportDPI
modes supported and tested: 96
, 120
, 144
, 192
See HISTORY
SeDebugPrivilege
throw std::exception(“PE Tools source code is not available”);
Win64
versionOverlay
Analyzer and ExtractorAuthenticode
ViewerRich
Signature EditorRelocations
CheckerDebug
Directory Remover: remove debug section if empty.NET Directory
ViewerExternal Tools
support (preliminary list):
Structures Export
to readable formats like JSON
/ YAML
Crypto
tools (hash
, decryption
/ decryption
)ARM
disassembler (far-far-away)File | Description | Lang |
---|---|---|
PETools.exe |
main PE Tools executable | |
HEdit.dll |
Hex-editor | |
RebPE.dll |
PE Rebuilder | |
Signs.txt |
PEiD signatures for PE Sniffer | |
ReadMe_EN.md |
ReadMe | EN |
WhatsNew_EN.md |
What’s New | EN |
WhatsNew_RU.md |
What’s New | RU |
petools.sha1 |
Checksums SHA-1 |
See LICENSE
1.5
, 2002-20061.5
, 2007-20181.8
, 2017-20181.5
, 2012-2014Feel free to contact via Twitter @petoolse.