PE-sieve: scan active processes and find malware!

JM Safe

Level 39
Thread author
Verified
Top Poster
Apr 12, 2015
2,882
19,912
3,798
Europe
It scans a given process, searching for potentially malicious implants and patches within the process space. When found, it dumps the modified/suspicious PE along with a report in JSON format, detailing about the found indicators.

detected1.png


https://hshrzd.files.wordpress.com/2018/09/detected1.png