Anatol Paulovich's plugins and utilities on TOTALCMD.NET
Author Profile: Anatol Paulovich All Plugins and Files by Anatol Paulovich
The plugin is designed to view information about modules of PE, MZ, NE, LE and ELF/ELF64 formats (EXE, DLL, SO, DRV, SYS, OCX, COM, etc.).
Shows:
- summary information about the file: size, timestamps, hashes and entropy.
- statistics from virustotal.com.
- signature analysis of "PE Sniffer" and "PEiD".
- detailed information about sections and module headings.
- functions exported by the module.
- imported external modules and their functions used. With the ability to open the selected external module in a separate instance of the plugin.
- resources contained in the module. With the ability to view, copy to the clipboard and save all resources.
- digital signatures and certificates. With the ability to check the validity of the signature of the module itself and the validity of the certificates used.
- debugging structures with detailed analysis.
- load configuration structure with detailed analysis.
- CLR header of the .Net assembly. With the ability to display the versions installed in the OS ".Net Framework" and ".Net Core".
Make sure that there is no detect line for the plugin in the wincmd.ini configuration file. Allows you to open files without filtering by extension.
2166 KB - Updated: 30.12.2024 - x32/x64 - Downloaded 16978 times
|
|