/
processdump.json
27 lines (27 loc) 路 936 Bytes
/
processdump.json
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
{
"version": "2.1",
"description": "Process Dump is a Windows reverse-engineering tool to dump malware memory components back to disk for analysis.",
"homepage": "http://split-code.com/processdump.html",
"license": "MIT",
"url": "http://www.split-code.com/files/pd_v2_1.zip",
"hash": "2060f6713c082e78b2c18e6cb4e195602296af7ff9b096931f5f9f70a145b487",
"architecture": {
"64bit": {
"installer": {
"script": [
"Rename-Item -Path \"$dir\\pd64.exe\" -NewName 'pd.exe'",
"Remove-Item \"$dir\\pd32.exe\" -Force"
]
}
},
"32bit": {
"installer": {
"script": [
"Rename-Item -Path \"$dir\\pd32.exe\" -NewName 'pd.exe'",
"Remove-Item \"$dir\\pd64.exe\" -Force"
]
}
}
},
"bin": "pd.exe"
}