PE-sieve
Scans all running processes. Recognizes and dumps a variety of potentially malicious implants (replaced/implanted PEs, shellcodes, hooks, in-memory patches).
Toggle main menu visibility
Main Page
Namespaces
Namespace List
Namespace Members
All
_
b
c
d
e
f
g
h
i
j
l
m
n
o
p
q
r
s
t
u
v
w
Functions
_
b
c
d
e
f
g
h
i
l
m
n
o
p
q
r
s
t
v
w
Variables
b
c
d
e
f
g
h
i
j
l
m
n
o
p
q
r
s
t
u
w
Typedefs
Enumerations
Enumerator
c
h
i
p
s
t
Classes
Class List
Class Index
Class Hierarchy
Class Members
All
_
a
b
c
d
e
f
g
h
i
j
l
m
n
o
p
q
r
s
t
u
v
w
~
Functions
_
a
b
c
d
e
f
g
h
i
l
m
n
o
p
r
s
t
u
v
w
~
Variables
_
a
b
c
d
e
f
h
i
j
l
m
n
o
p
q
r
s
t
u
v
w
Typedefs
Enumerations
Enumerator
i
o
r
s
Related Symbols
Files
File List
File Members
All
a
b
c
d
e
f
g
h
i
j
l
m
o
p
r
s
t
u
Functions
Variables
Typedefs
Enumerations
Enumerator
j
o
p
r
s
Macros
c
d
e
g
h
i
l
m
o
p
r
u
•
All
Classes
Namespaces
Files
Functions
Variables
Typedefs
Enumerations
Enumerator
Friends
Macros
Pages
Loading...
Searching...
No Matches
Here is a list of all functions with links to the classes they belong to:
- _ -
_analyzeCallStack() :
pesieve::ThreadScanner
_analyzeHook() :
pesieve::PatchAnalyzer
_analyzeRelocated() :
pesieve::PatchAnalyzer
_appendVal() :
pesieve::AreaEntropyStats
,
pesieve::AreaMultiStats
,
pesieve::AreaStats
_ctx_details() :
pesieve::_ctx_details
_deleteLeastRecent() :
pesieve::ModulesCache
_findDosHdrByPatterns() :
pesieve::ArtefactScanner
_findMZoffset() :
pesieve::ArtefactScanner
_findSecByPatterns() :
pesieve::ArtefactScanner
_freeRemote() :
pesieve::MemPageData
_isMatching() :
pesieve::CodeMatcher
,
pesieve::EncryptedMatcher
,
pesieve::ObfuscatedMatcher
,
pesieve::RuleMatcher
,
pesieve::TextMatcher
_loadFullImage() :
pesieve::RemoteModuleData
_loadOriginal() :
pesieve::ModuleData
_loadRemote() :
pesieve::MemPageData
_mem_region_info() :
pesieve::util::_mem_region_info
_process_details() :
pesieve::_process_details
_readRemote() :
pesieve::PeBuffer
_t_stack_enum_params() :
_t_stack_enum_params
_thread_info() :
pesieve::util::_thread_info
_thread_info_ext() :
pesieve::util::_thread_info_ext
_toJSON() :
pesieve::ElementScanReport
,
pesieve::ModuleScanReport
_validateSecRegions() :
pesieve::ArtefactScanner
Generated by
1.13.2