hasherezade / pe-sieve

Scans a given process. Recognizes and dumps a variety of potentially malicious implants (replaced/injected PEs, shellcodes, hooks, in-memory patches).
https://hshrzd.wordpress.com/pe-sieve/
BSD 2-Clause "Simplified" License
2.97k stars 420 forks source link

can I add my own list of process, like malware in the laptop #122

Closed fasteddys closed 6 months ago

fasteddys commented 8 months ago

please advice, I have H .P malware, I want to remove, where do I add these process names

image

hasherezade commented 8 months ago

hi! I am not sure what exactly is your case, and if PE-sieve can help in it. But, if you want to scan a list of your own processes, you can do it with the help of HollowsHunter, which is a PE-sieve based tool. More information: https://github.com/hasherezade/hollows_hunter/wiki#hollows-hunter-vs-pe-sieve