PE-sieve
Scans all running processes. Recognizes and dumps a variety of potentially malicious implants (replaced/implanted PEs, shellcodes, hooks, in-memory patches).
|
This is the complete list of members for _t_stack_enum_params, including all inherited members.
_t_stack_enum_params(IN HANDLE _hProcess=NULL, IN HANDLE _hThread=NULL, IN LPVOID _ctx=NULL, IN const pesieve::ctx_details *_cDetails=NULL) | _t_stack_enum_params | inline |
callStack | _t_stack_enum_params | |
cDetails | _t_stack_enum_params | |
ctx | _t_stack_enum_params | |
hProcess | _t_stack_enum_params | |
hThread | _t_stack_enum_params | |
is_ok | _t_stack_enum_params |