{"repo":"DosX-dev/Astral-PE","free":true,"listed":false,"github":"https://github.com/DosX-dev/Astral-PE","clone":"git clone https://github.com/DosX-dev/Astral-PE.git","description":"Astral-PE is a low-level mutator (Headers/EP obfuscator) for native Windows PE files (x32/x64)","language":"C#","stars":354,"topics":["cybersecurity","hacktoberfest","low-level","mutator","obfuscation","obfuscator","pe","infosec","dotnet","native"],"license":"MIT","category":"security-tools","readme_excerpt":"--- Astral-PE is a low-level mutator (headers obfuscator and patcher) for Windows PE files ( .exe , .dll , .sys ) that rewrites structural metadata after compilation (or postbuild protection) — without breaking execution . It does not pack, encrypt or inject . Instead, it mutates low-hanging but critical structures like timestamps, headers, section flags, debug info, import/export names, and more. #### 🛠 Download Astral-PE build for Windows/Linux x64 🔧 In what cases is it useful? You’ve protected a binary — but public unpackers or YARA rules still target its unchanged structure . ### 👨🏼‍💻 Use Astral-PE as a post-processing step to: - Prevent automated unpacking - Break static unpacker logic - Invalidate reverse-engineering signatures - Disrupt clustering in sandboxes - Strip metadata, overlays (only if file is signed), debug traces... ### 🤩 Perfect for: - For packed/protected builds (e.g. legacy Enigma) - To create your own protector on this base - Hardened loaders that remain structurally default - To create interesting crackme quests - For educational purposes ✨ What it modifies Astral-PE applies precise, compliant, and execution-safe mutations: Target Description ------------------------- --------------------------------------------------------------------------- 🕓 Timestamp Clears TimeDateStamp in file headers 🧠 Rich Header Fully removed — breaks toolchain fingerprinting 📜 Section Names Wiped ( .text , .rsrc , etc. → null) 📎 Checksum Reset to zero 📦 Overlay Str","default_branch":null,"files":null,"tree":[],"storefront":"/r/DosX-dev","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/DosX-dev/Astral-PE/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}