PE-sieve
Scans all running processes. Recognizes and dumps a variety of potentially malicious implants (replaced/implanted PEs, shellcodes, hooks, in-memory patches).
|
Static Public Attributes | |
int | JSON_BASIC = 0 |
int | JSON_DETAILS = 1 |
int | JSON_DETAILS2 = 2 |
int | JSON_LVL_COUNT = 3 |
Definition at line 82 of file pesieve.py.
|
static |
Definition at line 83 of file pesieve.py.
|
static |
Definition at line 84 of file pesieve.py.
|
static |
Definition at line 85 of file pesieve.py.
|
static |
Definition at line 86 of file pesieve.py.