Author Topic: PEiD  (Read 1340 times)

llAmElliK

  • [TiME4CRiME]
  • Administrator
  • VIP
  • *****
  • Posts: 960
PEiD v0.94 Build 10.05.2006
« Reply #15 on: May 10, 2006, 07:42:26 PM »
PEiD detects most common packers, cryptors and compilers for PE files. It can currently detect more than 600 different signatures in PE files.

PEiD is special in some aspects when compared to other identifiers already out there!

1. It has a superb GUI and the interface is really intuitive and simple.
2. Detection rates are amongst the best given by any other identifier.
3. Special scanning modes for *advanced* detections of modified and unknown files.
4. Shell integration, Command line support, Always on top and Drag'n'Drop capabilities.
5. Multiple file and directory scanning with recursion.
6. Task viewer and controller.
7. Plugin Interface with plugins like Generic OEP Finder and Krypto ANALyzer.
8. Extra scanning techniques used for even better detections.
9. Heuristic Scanning options.
10. New PE details, Imports, Exports and TLS viewers
11. New built in quick disassembler.
12. New built in hex viewer.
13. External signature interface which can be updated by the user.
TiME AND CRiME ARE ETERNAL-REVERSE ENGINEERiNG iS MODERN PHiLOSOPHY AND iSN'T CRiME
[TiME4CRiME]

llAmElliK

  • [TiME4CRiME]
  • Administrator
  • VIP
  • *****
  • Posts: 960
PEiDLL - Library
« Reply #16 on: November 04, 2006, 08:38:59 PM »
This DLL is for programmers, it has PEiD v0.94 embedded and uses the power of PEiD (invisibly) to scan a file passed to one of the functions to get the ID.
  Also embedded is a 430k UserDB.TXT.. all files are in compressed archive, and DLL size in total is 242k unpacked (211k for archive, mostly 163k PEiD) ..


  Included with this DLL is an example Console-PEiD type program, written in MASM and also two examples in Delphi. The first Delphi version checks the registry for the scan-mode settings of installed PEiD, the second demonstrates the new exports of PEiDLL v1.01 + v1.02 and using PEiDLL_Unit.pas to easily use PEiDLL.. Also included in the Delphi Examples dir is Multi.DPR - An example of a simple multi-scanner.
  Type -? as the param for the examples to get usage instructions.
TiME AND CRiME ARE ETERNAL-REVERSE ENGINEERiNG iS MODERN PHiLOSOPHY AND iSN'T CRiME
[TiME4CRiME]

llAmElliK

  • [TiME4CRiME]
  • Administrator
  • VIP
  • *****
  • Posts: 960
Re: PEiD
« Reply #17 on: November 17, 2006, 10:42:43 PM »
Cca 2600 PEiD Signatures.
TiME AND CRiME ARE ETERNAL-REVERSE ENGINEERiNG iS MODERN PHiLOSOPHY AND iSN'T CRiME
[TiME4CRiME]