PE-sieve
Scans all running processes. Recognizes and dumps a variety of potentially malicious implants (replaced/implanted PEs, shellcodes, hooks, in-memory patches).
|
This is the complete list of members for pesieve::ChunkStats, including all inherited members.
appendVal(BYTE val) | pesieve::ChunkStats | inline |
ChunkStats() | pesieve::ChunkStats | inline |
ChunkStats(size_t _offset, size_t _size) | pesieve::ChunkStats | inline |
ChunkStats(const ChunkStats &p1) | pesieve::ChunkStats | inline |
cleanStringsCount | pesieve::ChunkStats | |
entropy | pesieve::ChunkStats | |
fieldsToJSON(std::stringstream &outs, size_t level) | pesieve::ChunkStats | inlinevirtual |
fillSettings(MultiStatsSettings *_settings) | pesieve::ChunkStats | inline |
finishLastStr(bool isClean) | pesieve::ChunkStats | inline |
foundStrings | pesieve::ChunkStats | |
frequencies | pesieve::ChunkStats | |
histogram | pesieve::ChunkStats | |
lastStr | pesieve::ChunkStats | |
longestStr | pesieve::ChunkStats | |
offset | pesieve::ChunkStats | |
prevVal | pesieve::ChunkStats | |
settings | pesieve::ChunkStats | |
size | pesieve::ChunkStats | |
stringsCount | pesieve::ChunkStats | |
summarize() | pesieve::ChunkStats | inline |