PE-sieve
Scans all running processes. Recognizes and dumps a variety of potentially malicious implants (replaced/implanted PEs, shellcodes, hooks, in-memory patches).
|
This is the complete list of members for pesieve::_process_details, including all inherited members.
_process_details() | pesieve::_process_details | inline |
_process_details(bool _isReflection, bool _isDEP) | pesieve::_process_details | inline |
_process_details(const _process_details &other) | pesieve::_process_details | inline |
isDEP | pesieve::_process_details | |
isReflection | pesieve::_process_details |