packing-box / peid
Python implementation of the Packed Executable iDentifier (PEiD)
☆134Updated 8 months ago
Alternatives and similar repositories for peid:
Users that are interested in peid are comparing it to the libraries listed below
- HashDB API hash lookup plugin for IDA Pro☆301Updated 3 months ago
- msdocsviewer is a simple tool that parses Microsoft's win32 API and driver documentation to be used within IDA.☆148Updated last year
- Robust Automated Malware Unpacker☆84Updated last year
- ☆99Updated 2 years ago
- capemon: CAPE's monitor☆106Updated last week
- Debug Child Process Tool (auto attach)☆278Updated last year
- An interactive list of plugins for hex-rays' IDA Pro☆406Updated 2 months ago
- Parse .NET executable files.☆74Updated 2 months ago
- Dynamic unpacker based on PE-sieve☆692Updated 2 weeks ago
- An IDA Pro extension for easier (malware) reverse engineering☆110Updated 2 years ago
- Ghidra scripts for malware analysis☆91Updated last year
- An easy-to-use library for emulating memory dumps. Useful for malware analysis (config extraction, unpacking) and dynamic analysis in gen…☆769Updated 11 months ago
- Assortment of hashing algorithms used in malware☆338Updated 7 months ago
- Automatic and platform-independent unpacker for Windows binaries based on emulation☆675Updated 3 months ago
- ☆189Updated last year
- SHAREM is a shellcode analysis framework, capable of emulating more than 20,000 WinAPIs and virutally all Windows syscalls. It also conta…☆350Updated 2 months ago
- Powershell script deobfuscation using AST in Python☆64Updated last year
- BluePill: Neutralizing Anti-Analysis Behavior in Malware Dissection (Black Hat Europe 2019, IEEE TIFS 2020)☆123Updated 3 years ago
- A DTrace on Windows Reimplementation☆337Updated 2 months ago
- XNTSV program for detailed viewing of system structures for Windows.☆448Updated this week
- A list of open source reverse engineering tools with a focus on binary analysis☆191Updated 9 months ago
- Static deobfuscator for Themida, WinLicense and Code Virtualizer 3.x's mutation-based obfuscation.☆251Updated 5 months ago
- x64dbg plugin to set breakpoints automatically to Win32/64 APIs☆171Updated 7 years ago
- This project aims at simplifying Windows API import recovery on arbitrary memory dumps☆246Updated last year
- Simple windows API logger☆98Updated 5 years ago
- Advanced driver monitoring utility.☆202Updated 2 years ago
- Bindings for Microsoft WinDBG TTD☆217Updated last year
- Tool for viewing and analyzing execution traces☆273Updated 3 years ago
- LERN GHIDRA☆89Updated 2 years ago
- My reversing tools. Some custom, some not.☆198Updated last year