Skip to main content

Packed Executable iDentifier Tweet

Detect packers on PE files using signatures.

PyPi Python Versions Build Status DOI License

This tool is an implementation in Python of the Packed Executable iDentifier (PEiD) in the scope of packing detection for Windows PE files based on signatures. It uses a combination of more than 5.500 signatures merged from the following sources:

$ pip install peid

The main tool checks the input executable against the embedded or user-defined signatures database.

$ peid --help
[...]

$ peid program.exe
[...]

$ peid program.exe --db custom_sigs_db.txt

The second tool allows to inspect signatures.

$ peid-db --db path/to/userdb.txt --filter UPX

The third tool allows to create and integrate new signatures.

$ peid-sig *.exe --db path/to/userdb.txt --packer UPX --version v3.97 --author jsmith

Related Projects

You may also like these:

Release files for peid 2.3.1

For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.

Source distribution (sdist)

Source distribution for peid 2.3.1
File Size Uploaded
peid-2.3.1.tar.gz 627.4 kB Details

Built distribution (wheel)

Table of built distributions (wheels) for peid 2.3.1
File Interpreter ABI Platform
peid-2.3.1-py3-none-any.whl Python 3 none any Details

Total release size: 1.2 MB

Release files / peid-2.3.1.tar.gz

Download URL peid-2.3.1.tar.gz
Size 627.4 kB
Tags Source
SHA-256 checksum
How to use checksums
29714f5e05dac9bb333328fd9e74662eeaeb62383f781b6c8289d8d666b6e37c
BLAKE2b-256 checksum
How to use checksums
9b3aea4575990419cda1fd0ce838f10c79e22834fe50d228ae281da2d03ebf8a
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
No
Uploaded via twine/6.1.0 CPython/3.13.12

Release files / peid-2.3.1-py3-none-any.whl

Download URL peid-2.3.1-py3-none-any.whl
Size 555.9 kB
Tags Python 3
SHA-256 checksum
How to use checksums
89e108dad6d34fccbb4773fef9e8fee074155cbf496c6fe1e5bcb558f993e49d
BLAKE2b-256 checksum
How to use checksums
f5a4b596626934a7672db2d563d343b914517ee0267d3f679f54794bdb3aa349
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
No
Uploaded via twine/6.1.0 CPython/3.13.12

Release history Release notifications | RSS feed

This release

2.3.1 This release

2 release files

2.2.1

2 release files

2.1.1

2 release files

2.1.0

2 release files

2.0.1

2 release files

2.0.0

2 release files

1.2.9

2 release files

1.2.8

2 release files

1.2.7

1 release file

1.2.6

1 release file

1.2.5

1 release file

1.2.4

1 release file

1.2.3

1 release file

1.2.2

1 release file

1.2.1

1 release file

1.2.0

1 release file

1.1.3

1 release file

1.1.2

1 release file

1.1.1

1 release file

1.1.0

1 release file

1.0.0

1 release file

Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page