PE-sieve
Scans all running processes. Recognizes and dumps a variety of potentially malicious implants (replaced/implanted PEs, shellcodes, hooks, in-memory patches).
Loading...
Searching...
No Matches
pesieve::PeArtefacts Member List

This is the complete list of members for pesieve::PeArtefacts, including all inherited members.

calculatedImgSizepesieve::PeArtefacts
dropPeBase(const ULONGLONG offset_with_pe_base) constpesieve::PeArtefactsinline
fieldsToJSON(std::stringstream &outs, size_t level, const pesieve::t_json_level &jdetails)pesieve::PeArtefactsinlinevirtual
hasNtHdrs()pesieve::PeArtefactsinline
hasSectionHdrs()pesieve::PeArtefactsinline
is64bitpesieve::PeArtefacts
isDllpesieve::PeArtefacts
isMzPeFoundpesieve::PeArtefacts
JSON_LEVELpesieve::PeArtefactsstatic
ntFileHdrsOffsetpesieve::PeArtefacts
PeArtefacts()pesieve::PeArtefactsinline
peBaseOffsetpesieve::PeArtefacts
peImageBase()pesieve::PeArtefactsinline
regionStartpesieve::PeArtefacts
secCountpesieve::PeArtefacts
secHdrsOffsetpesieve::PeArtefacts
toJSON(std::stringstream &outs, size_t level, const pesieve::t_json_level &jdetails)pesieve::PeArtefactsinlinevirtual