PE-sieve¶
Category: Files and apps / PE
Source: GitHub Release
Profiles: Full, Basic
File Extensions: .exe, .dll
Tags: pe-analysis, malware-analysis, dynamic-analysis
Scans a given process. Recognizes and dumps a variety of potentially malicious implants (replaced/injected PEs, shellcodes, hooks, in-memory patches).