

PE-sieve
2 likes
PE-sieve scans a given process, searching for the modules containing in-memory code modifications. When found, it dumps the modified PE. Detects inline hooks, hollowed processes, Process Doppelgänging etc. Can be used for unpacking malware.
Cost / License
- Free
- Open Source (BSD-2-Clause)
Application type
Platforms
- Windows
Features
PE-sieve News & Activities
Highlights All activities
Recent activities
- POX added PE-sieve as alternative to PyMemoryEditor
PE-sieve information
No comments or reviews, maybe you want to be first?


