You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
hasherezade edited this page Dec 28, 2021
·
4 revisions
Option: /minidmp
By default, PE-sieve extracts and dumps the elements that are detected as potential implants (PEs, and optionally shellcodes). However, sometimes you may like to make a dump of the full process space.
When the option /minidmp is chosen, PE-sieve will create a minidump of the full process that was detected as suspicious (in addition to dumping the implants).