Cuckoo dump a PE file from a memory dump?
Can Cuckoo extract PE files from a memory dump or record the import table of the running process? I need to record the import table in PE not the called/executed API from the process.
There is Process-Dump which is able to extract PE from … Continue reading Cuckoo dump a PE file from a memory dump?