Skip to content

hollows_hunter

SIEM & Threat Detection

A command‑line tool that scans and dumps potentially malicious in‑memory implants using a passive memory scanner based on PE‑sieve.

C Latest v0.4.1.1 · 8mo ago Security brief →

Features

  • Scans processes for replaced/injected PEs, shellcodes, hooks and in‑memory patches
  • Select targets by PID list, name list or creation time relative to execution
  • Supports continuous scanning via `/loop` argument
  • Can run as an ETW listener (64‑bit only) for real‑time monitoring

Recent releases

View all 1 releases →

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

About

Stars
2,358
Forks
290
Languages
C C++ CMake

Install & Platforms

Install via
binary chocolatey
Platforms
windows

Beta — feedback welcome: [email protected]