Security of Information, Threat Intelligence, Hacking, Offensive Security, Pentest, Open Source, Hackers Tools, Leaks, Pr1v8, Premium Courses Free, etc

Sunday, February 7, 2016

PE editing - CFF Explorer



The CFF Explorer was designed to make PE editing as easy as possible, but without losing sight on the portable executable's internal structure. This application includes a series of tools which might help not only reverse engineers but also programmers. It offers a multi-file environment and a switchable interface. 





Also, it's the first PE editor with full support for the .NET file format. With this tool you can easily edit metadata's fields and flags. If you're programming something that has to do with .NET metadata, you will need this tool. The resource viewer supports .NET image formats like icons, bitmaps, pngs. You'll be able to analyze .NET files without having to install the .NET framework, this tool has its own functions to access the .NET format. 



Useful links:

- How to write a CFF Explorer Extension 
- CFF Explorer Scripting Language Documentation (v2)
- CFF Explorer Scripting Language Documentation (v1) 
- CFF Explorer Extensions Repository 


Features: 

ÂşProcess Viewer
ÂşDrivers Viewer
ÂşWindows Viewer
ÂşPE and Memory Dumper
ÂşFull support for PE32/64
ÂşSpecial fields description and modification (.NET supported)
ÂşPE Utilities
ÂşPE Rebuilder (with Realigner, IT Binder, Reloc Remover, Strong Name Signature Remover, Image Base Changer)
ÂşView and modification of .NET internal structures
ÂşResource Editor (full support for Windows Vista icons)
ÂşSupport in the Resource Editor for .NET resources (dumpable as well)
ÂşHex Editor
ÂşImport Adder
ÂşPE integrity checks
ÂşExtension support
ÂşVisual Studio Extensions Wizard
ÂşPowerful scripting language
ÂşDependency Walker
ÂşQuick Disassembler (x86, x64, MSIL)
ÂşName Unmangler
ÂşExtension support
ÂşFile Scanner
ÂşDirectory Scanner
ÂşDeep Scan method
ÂşRecursive Scan method
ÂşMultiple results
ÂşReport generation
ÂşSignatures Manager
ÂşSignatures Updater
ÂşSignatures Collisions Checker
ÂşSignatures Retriever


Share:

0 comentários:

Post a Comment

Note: Only a member of this blog may post a comment.

Established in 2015. Offensive Sec Blog has been sharing security research, hacking tools, threat intelligence, and offensive security content since 2015.
Copyright © OffSec Blog | Powered by OffensiveSec
Design by OffSec | Built for the security community