hasherezade / pe-sieve

Scans a given process. Recognizes and dumps a variety of potentially malicious implants (replaced/injected PEs, shellcodes, hooks, in-memory patches).
3,183Updated last month

Alternatives and similar repositories for pe-sieve:

Users that are interested in pe-sieve are comparing it to the libraries listed below