Skip to content
hollows_hunter
SIEM & Threat Detection
A command‑line tool that scans and dumps potentially malicious in‑memory implants using a passive memory scanner based on PE‑sieve.
C
·
Latest v0.4.1.1 · 8mo ago
Security brief →
Features
-
Scans processes for replaced/injected PEs, shellcodes, hooks and in‑memory patches
-
Select targets by PID list, name list or creation time relative to execution
-
Supports continuous scanning via `/loop` argument
-
Can run as an ETW listener (64‑bit only) for real‑time monitoring
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
About
Languages
C
·
C++
·
CMake
View on GitHub
Documentation
Install & Platforms
Install via
binary
chocolatey
Search tools, categories, lists, and users
Use ↑↓ to navigate, Enter to open, Esc to close
No results for ""
⌘K to open
↑↓ navigate
⏎ open