all options
trixie  ] [  sid  ]
[ Source: readpe  ]

Package: readpe (0.84-1)

Links for readpe

Screenshot

Debian Resources:

Download Source Package readpe:

Maintainers:

External Resources:

Similar packages:

command-line tools to manipulate Windows PE files

readpe is a toolkit designed to analyze Microsoft Windows PE (Portable Executable) binary files. Its tools can parse and compare PE32/PE32+ executable files (EXE, DLL, OCX, etc), and analyze them in search of suspicious characteristics.

It can be used to get information from those executable files, such as headers, sections, resources and more. It also provides tools to disassemble PE files and determine their security mitigations. It is useful for application security research, digital forensics and incident response, and malware analysis.

It is similar to elftools, only designed for PE files. It has more features than other more specific PE tools, such as icoextract or ntldd.

This package provides the ofs2rva, pedis, pehash, peldd, pepack, peres, pescan, pesec, pestr, readpe and rva2ofs commands.

Other Packages Related to readpe

  • depends
  • recommends
  • suggests
  • enhances

Download readpe

Download for all available architectures
Architecture Package Size Installed Size Files
armel 135.0 kB1,073.0 kB [list of files]