Alle Optionen
trixie  ] [  sid  ]
[ Quellcode: readpe  ]

Paket: readpe (0.84-1 und andere)

Links für readpe

Screenshot

Debian-Ressourcen:

Quellcode-Paket readpe herunterladen:

Betreuer:

Externe Ressourcen:

Ähnliche Pakete:

command-line tools to manipulate Windows PE files

readpe is a toolkit designed to analyze Microsoft Windows PE (Portable Executable) binary files. Its tools can parse and compare PE32/PE32+ executable files (EXE, DLL, OCX, etc), and analyze them in search of suspicious characteristics.

It can be used to get information from those executable files, such as headers, sections, resources and more. It also provides tools to disassemble PE files and determine their security mitigations. It is useful for application security research, digital forensics and incident response, and malware analysis.

It is similar to elftools, only designed for PE files. It has more features than other more specific PE tools, such as icoextract or ntldd.

This package provides the ofs2rva, pedis, pehash, peldd, pepack, peres, pescan, pesec, pestr, readpe and rva2ofs commands.

Andere Pakete mit Bezug zu readpe

  • hängt ab von
  • empfiehlt
  • schlägt vor
  • erweitert

readpe herunterladen

Download für alle verfügbaren Architekturen
Architektur Version Paketgröße Größe (installiert) Dateien
i386 0.84-1+b1 145,0 kB1.158,0 kB [Liste der Dateien]