packing-box / peidLinks
Python implementation of the Packed Executable iDentifier (PEiD)
☆139Updated last year
Alternatives and similar repositories for peid
Users that are interested in peid are comparing it to the libraries listed below
Sorting:
- ☆105Updated 2 years ago
- HashDB API hash lookup plugin for IDA Pro☆324Updated last month
- Dataset of packed PE samples☆35Updated last year
- capemon: CAPE's monitor☆124Updated 3 weeks ago
- The FLARE team's open-source library to disassemble Common Intermediate Language (CIL) instructions.☆165Updated 3 weeks ago
- LERN GHIDRA☆89Updated 2 years ago
- BluePill: Neutralizing Anti-Analysis Behavior in Malware Dissection (Black Hat Europe 2019, IEEE TIFS 2020)☆125Updated 3 years ago
- Assortment of hashing algorithms used in malware☆367Updated this week
- Robust Automated Malware Unpacker☆84Updated 2 years ago
- masm32 kernel programming, drivers, tutorials, examples, and tools (credits Four-F)☆124Updated last year
- An IDA Pro extension for easier (malware) reverse engineering☆115Updated 2 years ago
- Debug Child Process Tool (auto attach)☆295Updated last year
- Set of antianalysis techniques found in malware☆132Updated last year
- malware analysis scripts for Ghidra☆79Updated last year
- Ghidra scripts for malware analysis☆101Updated last year
- Powershell script deobfuscation using AST in Python☆68Updated last year
- msdocsviewer is a simple tool that parses Microsoft's win32 API and driver documentation to be used within IDA.☆152Updated last year
- A Binary Genetic Traits Lexer Framework☆496Updated last week
- A DTrace on Windows Reimplementation☆348Updated 5 months ago
- Native Python3 bindings for @horsicq's Detect-It-Easy☆71Updated 2 months ago
- IDA Pro plugin for recognizing known hashes of API function names☆81Updated 3 years ago
- ShowStopper is a tool for helping malware researchers explore and test anti-debug techniques or verify debugger plugins or other solution…☆211Updated 3 years ago
- Advanced driver monitoring utility.☆213Updated 3 years ago
- Do you want to use x64dbg instead of immunity debugger? oscp eCPPTv2 buffer overflow exploits pocs☆89Updated last year
- A utility to fix intentionally corrupted UPX packed files.☆88Updated 2 years ago
- Parse .NET executable files.☆76Updated last week
- Anti-Debug encyclopedia contains methods used by malware to verify if they are executed under debugging. It includes the description of v…☆60Updated last year
- Docker image gathering packers and tools for making datasets of packed executables and training machine learning models for packing detec…☆60Updated last week
- Research notes☆126Updated 7 months ago
- My reversing tools. Some custom, some not.☆206Updated last year