如何找到一些代码来检测代码加壳?
我想检查很多由加壳器或编译器生成的执行文件(*.exe)。
所以我需要一个库或类似的东西来告诉我女巫编译器或加壳器已经创建了 *.exe 文件。
我已经尝试过 exeinfo,但它让我等了很长时间,因为它一一起作用。
是否有任何程序或库可以处理这一切。
I wanna check lots of execution files (*.exe) that made by packer or compilers.
So I need a library or anything like that which could tell me witch compiler or packer has made the *.exe files.
I have tried the exeinfo but it makes me lots of minute to wait becouse it works one by one.
Is there any program or library to handle that all.
如果你对这篇内容有疑问,欢迎到本站社区发帖提问 参与讨论,获取更多帮助,或者扫码二维码加入 Web 技术交流群。
绑定邮箱获取回复消息
由于您还没有绑定你的真实邮箱,如果其他用户或者作者回复了您的评论,将不能在第一时间通知您!
发布评论
评论(1)
PEiD是您的最佳选择。
如果您需要“库”,您可以创建一个使用提供的签名文件的脚本。我想我不久前在博客上看到了一个 python 脚本,它正是这样做的,但我丢失了链接。
PEiD is your best choice.
If you need "a library" you could create a script that uses the supplied signature file. I think I saw a python script which did exactly this on a blog a while back, I lost the link though.