Detect It Easy

horsicq · horsicq.DIE-engine

Detect It Easy, or abbreviated DIE is a program for determining types of files.

Detect It Easy (DiE) is a powerful tool for file type identification, popular among malware analysts, cybersecurity experts, and reverse engineers worldwide. Supporting both signature-based and heuristic analysis, DiE enables efficient file inspections across a broad range of platforms, including Windows, Linux, and MacOS. Its adaptable, script-driven detection architecture makes it one of the most versatile tools in the field, with a comprehensive list of supported OS images. Detect It Easy’s flexible signature system and scripting capabilities make it an essential tool for malware analysis and digital forensics. With traditional static analyzers often limited in scope and prone to false positives, DiE’s customizable design enables precise integration of new detection logic, ensuring reliable results across diverse file types. Detect It Easy supports a wide range of executable and archive types, including: - PE (Portable Executable format for Windows) - ELF (Executable and Linkable Format for Linux) - APK (Android Application Package) - IPA (iOS Application Package) - JAR (Java Archive) - ZIP (Compressed archives) - DEX (Dalvik Executable for Android) - MS-DOS (MS-DOS executable files) - COM (Simple executable format for DOS) - LE/LX (Linear Executable for OS/2) - MACH (Mach-O files for MacOS) - NPM (JavaScript packages) - Amiga (Executable format for Amiga computers) - Binary (Other unclassified files)

winget install --id horsicq.DIE-engine --exact --source winget

Latest 3.10

Release Notes

[+] Bundle for Ubuntu 24.04 and 24.10 [+] APK/DEX/NPM/Amiga support [+] Improved "Visualization" widget [+] Improved Heuristic module for PE (thanks to DosX_dev) [+] New "extra" database for not basic detections [+] New detects and optimization of all scripts (thanks to DosX_dev, hypn0, Kae and all contributors) [+] Some GUI changes [+] Many bugs have been fixed

Installer type: zip

Architecture Scope Download SHA256
x86 Download DBD639A9BEBCEAF84E63C47BDB4A64E3FBB7677EC834321FE9B8574FE7781B10
x64 Download 6E84AC8D3ABDFBA60078A36FA7F6B492B20C2AF2C502E0A4579F41367AC37C80

Details

Homepage
https://github.com/horsicq/Detect-It-Easy/
License
MIT
Publisher
horsicq
Support
https://github.com/horsicq/DIE-engine/issues
Copyright
Copyright (c) 2012-2023 hors<horsicq@gmail.com>

Tags

binary-analysisdisassemblerelfentropyhacktoberfesthacktoberfest22program-analysisreverse-engineeringsignatureunpackeryara

Older versions (2)

3.09
Architecture Scope Download SHA256
x64 Download 299ff9d91cead31c32926ecfb5f27d629d06997d259e70af8632044edaf27c9b
x86 Download 7cdc3c3e33e23cc04463dc2c463c5d9dd7f746ee5dbacb280657e29b5d75b39a
3.08
Architecture Scope Download SHA256
x64 Download A6B9EA7EA2E06A048AC4AEF3D27020FBC383BBAD448DA6C767118EBFD2449D5E
x86 Download 359EC80D46CB3924D51A551A2720984E998E9FDF2E0A766DEBECB09697393B87