PE-sieve
Scans all running processes. Recognizes and dumps a variety of potentially malicious implants (replaced/implanted PEs, shellcodes, hooks, in-memory patches).
Loading...
Searching...
No Matches
postprocessors
postprocessors → utils Relation
File in postprocessors
Includes file in utils
dump_report.cpp
format_util.h
dump_report.h
path_converter.h
dump_report.h
path_util.h
pe_buffer.cpp
artefacts_util.h
pe_buffer.h
byte_buffer.h
pe_reconstructor.cpp
workingset_enum.h
results_dumper.cpp
format_util.h
results_dumper.cpp
workingset_enum.h
Generated by
1.12.0