Skip to content

MemProcFS-Analyzer-v0.8

Compare
Choose a tag to compare
@evild3ad evild3ad released this 22 Jan 12:16
· 25 commits to main since this release

Added: MUICache
Added: Windows Background Activity Moderator (BAM)
Added: Check if it's a Domain Controller
Added: Check if it's a Microsoft Exchange Server
Added: jq - Command-line JSON processor
Added: Checking for processes spawned from suspicious folder locations
Added: Checking for suspicious processes without any command-line arguments
Added: Checking for suspicious process lineage
Added: Checking for processes with suspicious command-line arguments
Added: Parent Name (proc.csv, Processes.xlsx, and RunningandExited.xlsx)
Added: Listing of MiniDumps
Added: Status Bar (User Interface)
Fixed: Other minor fixes and improvements