PE-sieve
Scans all running processes. Recognizes and dumps a variety of potentially malicious implants (replaced/implanted PEs, shellcodes, hooks, in-memory patches).
|
The main file of PE-sieve built as a DLL. More...
Go to the source code of this file.
Macros | |
#define | PESIEVE_EXPORTS |
Functions | |
BOOL WINAPI | DllMain (HANDLE hinstDLL, DWORD fdwReason, LPVOID lpvReserved) |
The main file of PE-sieve built as a DLL.
Definition in file dll_main.cpp.
#define PESIEVE_EXPORTS |
Definition at line 10 of file dll_main.cpp.
BOOL WINAPI DllMain | ( | HANDLE | hinstDLL, |
DWORD | fdwReason, | ||
LPVOID | lpvReserved ) |
Definition at line 13 of file dll_main.cpp.