HollowsHunter
Scans all running processes. Recognizes and dumps a variety of potentially malicious implants (replaced/implanted PEs, shellcodes, hooks, in-memory patches).
Loading...
Searching...
No Matches
pe_sieve_params_info.h
Go to the documentation of this file.
1#pragma once
2
3#include <iostream>
4#include <pe_sieve_types.h>
5
6std::string translate_dump_mode(const DWORD dump_mode);
7std::string translate_out_filter(const pesieve::t_output_filter o_filter);
8std::string translate_results_filter(const pesieve::t_results_filter r_filter);
9std::string results_filter_to_id(const DWORD r_filter);
10std::string translate_imprec_mode(const pesieve::t_imprec_mode imprec_mode);
11std::string translate_iat_scan_mode(const pesieve::t_iat_scan_mode mode);
12std::string translate_dotnet_policy(const pesieve::t_dotnet_policy &mode);
13std::string translate_json_level(const pesieve::t_json_level &mode);
14std::string translate_shellc_mode(const pesieve::t_shellc_mode& mode);
15std::string shellc_mode_mode_to_id(const pesieve::t_shellc_mode& mode);
16
17std::string translate_obfusc_mode(const pesieve::t_obfusc_mode& mode);
18std::string obfusc_mode_mode_to_id(const pesieve::t_obfusc_mode& mode);
19
20std::string translate_data_mode(const pesieve::t_data_scan_mode &mode);
21
22std::string dump_mode_to_id(const DWORD dump_mode);
23std::string imprec_mode_to_id(const pesieve::t_imprec_mode imprec_mode);
std::string translate_shellc_mode(const pesieve::t_shellc_mode &mode)
std::string translate_imprec_mode(const pesieve::t_imprec_mode imprec_mode)
std::string translate_out_filter(const pesieve::t_output_filter o_filter)
std::string translate_dump_mode(const DWORD dump_mode)
std::string obfusc_mode_mode_to_id(const pesieve::t_obfusc_mode &mode)
std::string translate_iat_scan_mode(const pesieve::t_iat_scan_mode mode)
std::string shellc_mode_mode_to_id(const pesieve::t_shellc_mode &mode)
std::string translate_data_mode(const pesieve::t_data_scan_mode &mode)
std::string translate_obfusc_mode(const pesieve::t_obfusc_mode &mode)
std::string translate_json_level(const pesieve::t_json_level &mode)
std::string translate_results_filter(const pesieve::t_results_filter r_filter)
std::string results_filter_to_id(const DWORD r_filter)
std::string translate_dotnet_policy(const pesieve::t_dotnet_policy &mode)
std::string imprec_mode_to_id(const pesieve::t_imprec_mode imprec_mode)
std::string dump_mode_to_id(const DWORD dump_mode)