PE-sieve icon

PE-sieve

4.1/5 18
Certified 100% FREE BSD License   

Scans running processes to detect in-memory code modifications, useful for spotting active malware infiltrated into your computer. #PE analyzer  #Process scanner  #Detect malware  #PE dumper  #Scanner  #Malware  

Softpedia Review

changelog

Free Download

Review by:
4.0/5

To boost the security level of your computer and keep an eye out for malware agents attempting to infiltrate into your system, you can add PE-Sieve to your collection of portable software.

It's a tiny command-line tool capable of scanning active PE processes to detect in-memory code modifications, which could mean that unauthorized changes were made by third parties trying to lower your PC's defenses. It requires no installation and has two executable files available for x86 and x64 Windows, so make sure to get the one that matches your system's architecture type.

The syntax is "/pid <target-pid>", where you can specify the ID of the running process you want to scan. PE-Sieve begins to scan all files linked to the process and shows a summary of the results when it's done, such as total scanned, hooked, modified and suspicious items.

This report is also saved in a JSON file that gets automatically created in a subfolder placed in the same directory as PE-Sieve. The subfolder's name matches the PID, so you can easily tell reports apart after running multiple scans on different processes.

Optional commands can be used for recovering imports (/imp, keeping in mind that it may slow down scans), filtering scanned modules by 32-bit (/mfilter 1) or 64-bit (/mfilter 2), and filtering the dumped output (/ofilter), among others.

The console program worked smoothly on Windows 10 in our tests, carrying out scanning operations quickly while remaining light on system resources consumption.

Taking everything into account, PE-Sieve can be really helpful in boosting the security level of your system by scanning currently running processes for possible malware changes. It's free and open-source, so you can take a look at its code and use it for your own projects if you're a software developer.

What's new in PE-sieve 0.3.9:

  • REFACT:
  • Refactored to use a new pattern matching engine (SigFinder) for shellcode detection. Improved performance.
Read the full changelog

PE-sieve 0.3.9

add to watchlist add to download basket send us an update REPORT
PRICE: Free
  runs on:
Windows All
  file size:
764 KB
  filename:
pe-sieve32.exe
  3 screenshots:
PE-sieve - Specify the ID of a currently running process to scan it in-code modificationsPE-sieve - The app runs a scan on all files that belong to the target processPE-sieve - It shows a summary report on scan completion with the total scanned, hooked, modified, replaced and other suspicious items
  main category:
Security
  developer:
  visit homepage

ShareX

Capture your screen, create GIFs, and record videos through this versatile solution that includes various other amenities: an OCR scanner, image uploader, URL shortener, and much more
ShareX

IrfanView

With support for a long list of plugins, this minimalistic utility helps you view images, as well as edit and convert them using a built-in batch mode
IrfanView

Microsoft Teams

Effortlessly chat, collaborate on projects, and transfer files within a business-like environment by employing this Microsoft-vetted application
Microsoft Teams

paint.net

Packed with an array of options and an intuitive interface, this application enables you to create professional-looking photographs
paint.net

Zoom Client

The official desktop client for Zoom, the popular video conferencing and collaboration tool used by millions of people worldwide
Zoom Client

4k Video Downloader

Export your favorite YouTube videos and playlists with this intuitive, lightweight program, built to facilitate downloading clips from the popular website
4k Video Downloader

Windows Sandbox Launcher

Set up the Windows Sandbox parameters to your specific requirements, with this dedicated launcher that features advanced parametrization
Windows Sandbox Launcher

Bitdefender Antivirus Free

Feather-light and free antivirus solution from renowned developer that keeps the PC protected at all times from malware without requiring user configuration
Bitdefender Antivirus Free

7-Zip

An intuitive application with a very good compression ratio that can help you not only create and extract archives, but also test them for errors
7-Zip

calibre

Effortlessly keep your e-book library thoroughly organized with the help of the numerous features offered by this efficient and capable manager
calibre

38% discount
Bitdefender Antivirus Free
  • Bitdefender Antivirus Free
  • 7-Zip
  • calibre
  • ShareX
  • IrfanView
  • Microsoft Teams
  • paint.net
  • Zoom Client
  • 4k Video Downloader
  • Windows Sandbox Launcher
essentials


User Comments
This enables Disqus, Inc. to process some of your data. Disqus privacy policy