Skip to main content
buildradar
Sign in

hasherezade/pe-sieve

@hasherezade

Scans a given process. Recognizes and dumps a variety of potentially malicious implants (replaced/injected PEs, shellcodes, hooks, in-memory patches).

Stars
3,879
Forks
495
Language
C++
License
BSD-2-Clause
Last push
3 months ago
C++hookingmalware-analysispe-formatscansmemory-forensicsanti-malwarelibpeconvpe-sievepe-analyzerpe-dumperprocess-analyzer

No related intel yet

This repo has not appeared in any of the sources the radar tracks. The collector runs on a schedule — check back once it covers this repo.