This application includes a series of tools which might help not only reverse engineers but also programmers. SHA256: 8E72BCB9C6E83F188F4A259AD039ED3CC37CDF2C3EA12B00F0DF8D8B67E96D96ĬFF Explorer was designed to make PE editing as easy as possible, but without losing sight on the portable executable’s internal structure. – CFF Explorer (x86 Version, stand-alone, Zip Archive) – Explorer Suite (Multi-Platform Version, Recommended) Resource Editor (Windows Vista icons supported) capable of handling. Special fields description and modification (.NET supported), utilities, rebuilder, hex editor, import adder, signature scanner, signature manager, extension support, scripting, disassembler, dependency walker etc. The PE editor has full support for PE32/64. It’s multi-platform (Windows, OS X & Linux) and it comes as a free trial.Ĭreated by Erik Pistelli, a freeware suite of tools including a PE editor called CFF Explorer and a process viewer. Small announcement: If you or your organization needs professional PE inspection, then take a look at Cerbero Suite (the commercial product of my company), which properly supports many file formats beyond the complete Portable Executable specification.