hasherezade / pe-sieve

Scans a given process. Recognizes and dumps a variety of potentially malicious implants (replaced/injected PEs, shellcodes, hooks, in-memory patches).
3,104Updated 2 weeks ago

Related projects

Alternatives and complementary repositories for pe-sieve