Scans a given process. Recognizes and dumps a variety of potentially malicious implants (replaced/injected PEs, shellcodes, hooks, in-memory patches).
Dynamic unpacker based on PE-sieve
Scans all running processes. Recognizes and dumps a variety of potentially malicious implants (replaced/implanted PEs, shellcodes, hooks, in-memory patches).
An experimental dynamic malware unpacker based on Intel Pin and PE-sieve
Golang bindings for PE-sieve
A PowerShell-based integration tool that enables pe-sieve to log detection results directly to Windows Event Log for enterprise-scale security monitoring and incident response.
Python script to extract the C&C configuration from an active Bumblebee process through PE-Sieve
External tests for PE-sieve
A perl implementation of a full Sieve Parser
LordPanther - Process Scanner With YARA && PE-SIEVE
Automatic Reliability Testing for Kubernetes Controllers and Operators
Pigeonhole project: Sieve support for Dovecot.
#十六进制编辑器#PE Tools - Portable executable (PE) manipulation toolkit
⚗️ Clean & extensible Sorting, Filtering, and Pagination for ASP.NET Core
A simple, clean and elegant way to filter Eloquent models.
Converts PE into a shellcode
Proof of Concepts (PE, PDF...)