packing-box / peidLinks
Python implementation of the Packed Executable iDentifier (PEiD)
☆143Updated last year
Alternatives and similar repositories for peid
Users that are interested in peid are comparing it to the libraries listed below
Sorting:
- Dataset of packed PE samples☆40Updated last year
- HashDB API hash lookup plugin for IDA Pro☆346Updated last month
- capemon: CAPE's monitor☆141Updated this week
- ☆109Updated 2 years ago
- Native Python3 bindings for @horsicq's Detect-It-Easy☆76Updated 6 months ago
- The FLARE team's open-source library to disassemble Common Intermediate Language (CIL) instructions.☆169Updated 3 weeks ago
- Extract AutoIt scripts embedded in PE binaries☆212Updated last year
- Assortment of hashing algorithms used in malware☆386Updated 3 weeks ago
- Docker image gathering packers and tools for making datasets of packed executables and training machine learning models for packing detec…☆60Updated this week
- Powershell script deobfuscation using AST in Python☆72Updated 2 months ago
- Debug Child Process Tool (auto attach)☆310Updated 2 years ago
- Robust Automated Malware Unpacker☆86Updated 2 years ago
- A DTrace on Windows Reimplementation☆366Updated last month
- ShowStopper is a tool for helping malware researchers explore and test anti-debug techniques or verify debugger plugins or other solution…☆219Updated 3 years ago
- Parse .NET executable files.☆80Updated 2 months ago
- Tools developed by the Zscaler ThreatLabz Threat Intelligence team☆89Updated 2 months ago
- An automatic unpacker and logger for DotNet Framework targeting files☆266Updated 2 years ago
- An IDA Pro extension for easier (malware) reverse engineering☆115Updated 3 years ago
- msdocsviewer is a simple tool that parses Microsoft's win32 API and driver documentation to be used within IDA.☆155Updated last year
- BluePill: Neutralizing Anti-Analysis Behavior in Malware Dissection (Black Hat Europe 2019, IEEE TIFS 2020)☆127Updated 3 years ago
- LERN GHIDRA☆92Updated 3 months ago
- Web-based tool that allows comparing symbol, type and syscall information of Microsoft Windows binaries across different versions of the …☆351Updated this week
- XNTSV program for detailed viewing of system structures for Windows.☆469Updated this week
- FLARE Team's Binary Navigator☆295Updated last month
- IDA Pro plugin for recognizing known hashes of API function names☆82Updated 3 years ago
- Set of antianalysis techniques found in malware☆131Updated 2 years ago
- API Logger for Windows Executables☆80Updated 5 years ago
- A Binary Genetic Traits Lexer Framework☆518Updated 3 months ago
- Anti-Debug encyclopedia contains methods used by malware to verify if they are executed under debugging. It includes the description of v…☆61Updated 2 years ago
- Ghidra scripts for malware analysis☆102Updated last year