PE-sieve
Scans all running processes. Recognizes and dumps a variety of potentially malicious implants (replaced/implanted PEs, shellcodes, hooks, in-memory patches).
|
This is the complete list of members for pesieve::util::_mem_region_info, including all inherited members.
_mem_region_info() | pesieve::util::_mem_region_info | inline |
_mem_region_info(ULONGLONG _alloc_base, ULONGLONG _base, size_t _size) | pesieve::util::_mem_region_info | inline |
_mem_region_info(const _mem_region_info &other) | pesieve::util::_mem_region_info | inline |
alloc_base | pesieve::util::_mem_region_info | |
base | pesieve::util::_mem_region_info | |
operator<(const _mem_region_info &rhs) const | pesieve::util::_mem_region_info | inline |
size | pesieve::util::_mem_region_info |