PE-sieve
Scans all running processes. Recognizes and dumps a variety of potentially malicious implants (replaced/implanted PEs, shellcodes, hooks, in-memory patches).
Toggle main menu visibility
Main Page
Namespaces
Namespace List
Namespace Members
All
_
b
c
d
e
f
g
h
i
j
l
m
n
o
p
q
r
s
t
u
v
w
Functions
_
b
c
d
e
f
g
h
i
l
m
n
o
p
q
r
s
t
v
w
Variables
b
c
d
e
f
g
h
i
j
l
m
n
o
p
q
r
s
t
u
w
Typedefs
Enumerations
Enumerator
c
h
i
p
s
t
Classes
Class List
Class Index
Class Hierarchy
Class Members
All
_
a
b
c
d
e
f
g
h
i
j
l
m
n
o
p
q
r
s
t
u
v
w
~
Functions
_
a
b
c
d
e
f
g
h
i
l
m
n
o
p
r
s
t
u
v
w
~
Variables
_
a
b
c
d
e
f
h
i
j
l
m
n
o
p
q
r
s
t
u
v
w
Typedefs
Enumerations
Enumerator
i
o
r
s
Related Symbols
Files
File List
File Members
All
a
b
c
d
e
f
g
h
i
j
l
m
o
p
r
s
t
u
Functions
Variables
Typedefs
Enumerations
Enumerator
j
o
p
r
s
Macros
c
d
e
g
h
i
l
m
o
p
r
u
•
All
Classes
Namespaces
Files
Functions
Variables
Typedefs
Enumerations
Enumerator
Friends
Macros
Pages
Loading...
Searching...
No Matches
scanners
scanners → utils Relation
File in scanners
Includes file in utils
artefact_scanner.cpp
artefacts_util.h
artefact_scanner.cpp
workingset_enum.h
artefact_scanner.h
process_util.h
code_scanner.cpp
artefacts_util.h
mapping_scanner.cpp
path_converter.h
mapping_scanner.h
path_util.h
mempage_data.cpp
process_util.h
mempage_data.h
byte_buffer.h
module_cache.h
custom_mutex.h
module_data.cpp
artefacts_util.h
module_data.cpp
format_util.h
module_data.cpp
path_converter.h
module_data.cpp
process_util.h
module_data.h
format_util.h
module_scan_report.h
format_util.h
module_scan_report.h
path_util.h
module_scanner.h
format_util.h
patch_list.cpp
format_util.h
scan_report.cpp
format_util.h
scanner.cpp
format_util.h
scanner.cpp
modules_enum.h
scanner.cpp
path_converter.h
scanner.cpp
process_privilege.h
scanner.cpp
process_util.h
scanner.cpp
workingset_enum.h
scanner.h
process_symbols.h
thread_scanner.cpp
artefacts_util.h
thread_scanner.cpp
process_symbols.h
thread_scanner.cpp
process_util.h
thread_scanner.cpp
syscall_extractor.h
thread_scanner.h
process_symbols.h
thread_scanner.h
threads_util.h
workingset_scanner.cpp
artefacts_util.h
workingset_scanner.cpp
path_converter.h
workingset_scanner.cpp
workingset_enum.h
workingset_scanner.h
format_util.h
workingset_scanner.h
workingset_enum.h
Generated by
1.13.2