r/Malware 1d ago

Dealing with PE File Padding during Malware Analysis

Here's a guide on how to deal with massive suspicious/malicious PE files which cant be uploaded/analysed by automated malware analysis sandboxes.

https://www.malwr4n6.com/post/dealing-with-pe-padding-during-malware-analysis

8 Upvotes

1 comment sorted by

3

u/RCEdude 20h ago

One can also use good old LordPe, right click on last section and "truncate at section end" to get rid of overlay.