Exetools

Exetools (https://forum.exetools.com/index.php)
-   Community Tools (https://forum.exetools.com/forumdisplay.php?f=47)
-   -   Detect It Easy 0.73 (https://forum.exetools.com/showthread.php?t=15028)

chicknsoup 04-01-2014 00:52

Quote:

Originally Posted by Carbon (Post 90625)
Let's hope the author will make it open source or it will DIE like PEiD ;)

It shouldn't be dead anytime soon :D

peMan!a 04-01-2014 22:09

IMO this better than PEiD coz it is still active and detection engine can still be improved.

Dreamer 04-08-2014 20:26

DIE_083_win

Code:

http://rghost.net/53681044
reason for this link to post is cannot be downloaded from main site.

Ps: link i post is from tuts4you posted there by horse credit to him.

sendersu 04-08-2014 20:38

short question - does it detect .net protectors?

kjms 04-18-2014 10:13

DIE V.0.84
http://ntinfo.biz/index.php/detect-it-easy
Change log:
Code:

[+] Fixed some bugs
[+] Added support for native plugins (BoRoV)
[+] Improved definition BeRo DLL Linker Compressor v1.0 byBeRo (4kusNick)
[+] Improved definition. Net Reactor (BoRoV)
[+] Improved window view "Thanks" (BoRoV)
[+] Added detection Spoon Studio (GMAP)


Dreamer 04-18-2014 13:16

kjms mate your link no good

Code:

http://ntinfo.biz/index.php/detect-it-easy

RedBlkJck 04-22-2014 20:58

1 Attachment(s)
Here is a build of the DIE CFF plugin to support running the 64 bit version of CFF.

leetone 04-23-2014 13:53

Windows 0.8.4 - http://ntinfo.biz/files/DIE_084_win.zip
Linux x64 0.8.4 - http://ntinfo.biz/files/DIE_084_lin64.tar.gz
Linux x86 0.8.4 - http://ntinfo.biz/files/DIE_084_lin32.tar.gz
Mac OSX 0.8.4 - http://ntinfo.biz/files/DIE_084_mac.dmg

HIEW Plugin - http://ntinfo.biz/files/Detect%20It%20Easy%20Hem%20for%20Hiew.zip
(info: http://n10info.blogspot.ru/2014/01/dies-plugin-for-hiew.html)

CFF Explorer Plugin - http://ntinfo.biz/files/Detect%20It%20Easy%20Plugin%20for%20CFF%20Explorer.zip
(info: http://n10info.blogspot.ru/2014/01/dies-plugin-for-cff-explorer.html)

kjms 05-24-2014 11:54

DIE V.0.85

detect-it-easy

Code:

[+] Added detection of known files (ajax)
[+] Added ability to copy signatures (hypn0)
[+] Added detection EXE32pack (== DJ == [ZLO])
[+] Added a new type of "Text" (Jason Hood)
[+] Added a few new signatures (Levis)
[+] Added new features and the console version (Jason Hood)


kjms 06-18-2014 12:05

DIE V.0.86
http://ntinfo.biz/index.php/detect-it-easy
Code:

[+] Fixed some bugs
[+] For the entropy made ​​fixed-width table sections (void)
[+] Revision of all signatures (Jason Hood)
[+] Fixed error when scanning some non-standard files (deniskore)
[+] Added ability to search kriptosignatur [Search-> Crypto]
[+] Open repository for signatures https://github.com/horsicq/Detect-It-Easy
[+] Scan Engine as a separate dll http://ntinfo.biz/files/diedll.zip


kjms 07-07-2014 16:28

DIE V.0.87
http://ntinfo.biz/index.php/detect-it-easy
Code:

[+] Go to Qt 4.8.6
[+] Github: https://github.com/horsicq/Detect-It-Easy
[+] E-mail bug reports to: horsicq [at] gmail.com
[+] Fixed some bugs
[+] Changed the structure of signatures. To avoid compatibility problems with older versions, do not unzip the archive to a folder with an older version DIE!
[+] Updated documentation (SDK program folder)
[+] Make display and analysis of Microsoft's Rich Signature [PE-> Stub-> Rich] (ajax)
[+] Improved definition of PE:. Net Reactor 4.8 (Airenikus)
[+] Improved definition of PE: Confuser
[+] Improved definition of PE: VMP
[+] Improved definition of PE: Themida
[+] Improved definition of PE: Delphi
[+] Improved definition of PE: MinGW
[+] Improved definition of PE: Cab SFX (Jason Hood)
[+] Improved definition Binary: Shell scripts (Jason Hood)
[+] Improved definition of ELF: Qt
[+] Added detection of PE: wxWidgets (Jason Hood)
[+] Improved definition of PE: FASM (Jason Hood)
[+] Improved definition of PE: MVC (Jason Hood)
[+] Improved definition of PE: Watcom (Jason Hood)
[+] Improved definition of ELF: gcc
[+] Improved definition of PE: DeepSea
[+] Improved definition of PE: RLPack (Jason Hood)
[+] Added detection of PE: NTKrnl protector


BAHEK 07-23-2014 03:13

DIE V.0.88
http://ntinfo.biz/index.php/detect-it-easy

Quote:

[+] Github: https://github.com/horsicq/Detect-It-Easy
[+] E-mail bug reports to: horsicq [at] gmail.com
[+] Fixed some bugs.
[+] Updated documentation.
[+] Added more than 100 signatures for MS DOS.
[+] All MS DOS signatures have been thoroughly tested on real samples.
[+] Many thanks for your help and Hypn0 files from the personal archive.

pps44 07-24-2014 08:33

Quote:

Originally Posted by BAHEK (Post 93018)
DIE V.0.88
http://ntinfo.biz/index.php/detect-it-easy

sorry but the link not work,if you can to attach the program its much better ,thanks

uranus64 07-24-2014 13:16

Quote:

Originally Posted by pps44 (Post 93055)
sorry but the link not work,if you can to attach the program its much better ,thanks

Link is working good.

pcrlth0n 08-08-2014 14:48

this program is very good.tanx


All times are GMT +8. The time now is 09:44.

Powered by vBulletin® Version 3.8.8
Copyright ©2000 - 2026, vBulletin Solutions, Inc.
Always Your Best Friend: Aaron, JMI, ahmadmansoor, ZeNiX