e62a14dafc
Generate interlinked wiki from master inventory: 397 tool pages, 15 workflow pages, 27 recipe pages, 33 category pages, plus index. All pages use [[wiki-links]] for cross-navigation between tools, workflows, recipes, and categories (1782 links total). Install zk for interactive browsing with fzf search, tag filtering, and backlink discovery. Add 'fhelp wiki' command and Makefile target. Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com>
25 lines
830 B
Markdown
25 lines
830 B
Markdown
# peframe
|
|
> Static analysis of PE files — extract properties, detect anomalies, identify packers
|
|
|
|
**Category:** [[categories/static-analysis-pe|static-analysis-pe]] | **Tier:** Rich (FOR610)
|
|
|
|
## Usage
|
|
```bash
|
|
peframe specimen.exe
|
|
```
|
|
|
|
## Workflows
|
|
- [[workflows/static-analysis-workflow|Static Properties Analysis]] — Step 3: Packing & Entropy Check
|
|
- [[workflows/unpacking-workflow|Unpacking Packed Executables]] — Step 1: Packing Identification
|
|
- [[workflows/code-injection-workflow|Code Injection Analysis]] — Step 7: Extracted Payload Analysis
|
|
- [[workflows/dotnet-analysis-workflow|.NET Malware Analysis]] — Step 1: Identification & Metadata
|
|
|
|
## Related Tools
|
|
- [[tools/pestr|pestr]] — Extract ASCII and Unicode strings from PE files
|
|
|
|
## FOR610
|
|
**Labs:** 1.1, 4.8
|
|
**Sections:** 1, 4
|
|
|
|
#pe #static-analysis #triage
|