This program is meant to be run and then left alone. like I said, it's in its early stage. clicking away From the cmd window can lead to things getting...unpredictable.
So just don't do it, unless youre trying to close it.
- Yara exe
- Yara Rule List
- Output folder
AMIINFECTED is a process enumerator/yara memory scanner. Using GetProcessById and a set max fuzz point, it guesses all open processes and then runs YARA on all processes enumerated
Executable is located in bin/debug