PE-bear
Last updated
PE-bear is a multiplatform reversing tool for PE files. Its objective is to deliver fast and flexible “first view” for malware analysts, stable and capable to handle malformed PE files.
Install with winget
$ winget install --id hasherezade.PE-bear --exact --version 0.7.2Run in Command Prompt, PowerShell, or Windows Terminal. Prompts for any agreements.
For Intune admins
Stop chasing app updates. Pckgr patches them for you.
Automated application patching for Microsoft Intune. Pckgr keeps a curated library of 1,000+ apps continuously up-to-date in your tenant via Microsoft Graph - no manual repackaging, no chasing vendor sites.
Start free 30-day trialNo credit card required.
Installers · v0.7.2
Copy a command tailored to that specific architecture, type, and scope - useful when winget would otherwise pick a different default.
Security
No known CVEs for PE-bear.
Coverage is best-effort and depends on a winget package mapping to an NVD CPE entry. Absence here is not a guarantee of safety.
Related apps
More from hasherezade or browse bearparser, malware-analysis, multiplatform.
Frequently asked questions
How do I install PE-bear on Windows?
How do I install PE-bear silently for unattended deployment?
How do I uninstall PE-bear via winget?
Is PE-bear free?
Does PE-bear work on Windows 10?
How do I keep PE-bear up to date?
Recent versions
- 0.7.2latest
- 0.7.1
- 0.7.0