Bitdefender Hypervisor Memory Introspection
|
#include <winpe.h>
UINT32 _IMAGE_SECTION_HEADER::Characteristics |
Definition at line 92 of file winpe.h.
Referenced by IntExceptGetVictimEpt(), IntExceptWinGetVictimDriver(), IntExceptWinKernelGetOriginator(), IntModBlockHandleBlockModHeadersInMemory(), IntPeFindFunctionStart(), IntPeFindFunctionStartInBuffer(), IntPtiHookPtDriver(), IntPtiIsPtrInAgent(), IntPtiMonitorAllPtWriteCandidates(), IntSlackAllocWindows(), IntSwapgsStartMitigation(), IntVeEnableDisableDriverAccessInProtectedView(), IntVeHookVeDriver(), IntWinDagentHandleSuspModHeaders(), IntWinDrvHeadersInMemory(), IntWinGuestReadKernel(), IntWinHalReadHal(), IntWinModHookModule(), IntWinModHookPoly(), IntWinStackTraceGet64(), IntWinStackTraceGetUser32(), and IntWinStackTraceGetUser64().
union { ... } _IMAGE_SECTION_HEADER::Misc |
Referenced by IntModBlockHandleBlockModHeadersInMemory(), IntPeFindFunctionByPattern(), IntPeFindFunctionByPatternInBuffer(), IntPeValidateHeader(), IntPtiDeliverDriverForLoad(), IntPtiHookPtDriver(), IntPtiMonitorAllPtWriteCandidates(), IntSlackAllocWindows(), IntSwapgsStartMitigation(), IntVeEnableDisableDriverAccessInProtectedView(), IntVeHookVeDriver(), IntWinDagentHandleSuspModHeaders(), IntWinDrvHeadersInMemory(), IntWinGuestFindDriversNamespace(), IntWinGuestFindDriversNamespaceNoBuffer(), IntWinGuestFindKernelObjectsInternal(), IntWinGuestReadKernel(), IntWinGuestValidateKernel(), IntWinHalFindHalHeapAndInterruptController(), IntWinHalFindInterruptController(), IntWinHalReadHal(), IntWinModHookModule(), IntWinModHookPoly(), and IntWinNetFindTcpObjects().
UINT8 _IMAGE_SECTION_HEADER::Name[IMAGE_SIZEOF_SHORT_NAME] |
Definition at line 79 of file winpe.h.
Referenced by IntExceptGetVictimEpt(), IntExceptWinGetVictimDriver(), IntExceptWinKernelGetOriginator(), IntLdrGetImageSizeAndEntryPoint(), IntModBlockHandleBlockModHeadersInMemory(), IntPeFindFunctionByPattern(), IntPeFindFunctionByPatternInBuffer(), IntPeValidateHeader(), IntPtiHookPtDriver(), IntPtiMonitorAllPtWriteCandidates(), IntSlackAllocWindows(), IntSwapgsStartMitigation(), IntVeEnableDisableDriverAccessInProtectedView(), IntVeHookVeDriver(), IntWinDagentSendDoubleAgentAlert(), IntWinDrvHeadersInMemory(), IntWinGuestFindKernelObjectsInternal(), IntWinGuestReadKernel(), IntWinHalReadHal(), IntWinModFillDriverInjectionData(), and IntWinModHookModule().
UINT32 _IMAGE_SECTION_HEADER::SizeOfRawData |
Definition at line 86 of file winpe.h.
Referenced by IntPeValidateHeader().
UINT32 _IMAGE_SECTION_HEADER::VirtualAddress |
Definition at line 85 of file winpe.h.
Referenced by IntLdrGetImageSizeAndEntryPoint(), IntModBlockHandleBlockModHeadersInMemory(), IntPeFindFunctionByPattern(), IntPeFindFunctionByPatternInBuffer(), IntPeFindFunctionStart(), IntPeFindFunctionStartInBuffer(), IntPeGetSectionHeaderByRva(), IntPeValidateHeader(), IntPtiDeliverDriverForLoad(), IntPtiHookPtDriver(), IntPtiMonitorAllPtWriteCandidates(), IntSlackAllocWindows(), IntSwapgsStartMitigation(), IntVeEnableDisableDriverAccessInProtectedView(), IntVeHookVeDriver(), IntWinDagentHandleSuspModHeaders(), IntWinDrvHeadersInMemory(), IntWinGuestFindDriversNamespace(), IntWinGuestFindDriversNamespaceNoBuffer(), IntWinGuestFindKernelObjectsInternal(), IntWinGuestReadKernel(), IntWinGuestValidateKernel(), IntWinHalFindHalHeapAndInterruptController(), IntWinHalFindInterruptController(), IntWinHalReadHal(), IntWinModHookModule(), IntWinModHookPoly(), and IntWinNetFindTcpObjects().
UINT32 _IMAGE_SECTION_HEADER::VirtualSize |
Definition at line 83 of file winpe.h.
Referenced by IntModBlockHandleBlockModHeadersInMemory(), IntPeFindFunctionByPattern(), IntPeFindFunctionByPatternInBuffer(), IntPeGetSectionHeaderByRva(), IntPeValidateHeader(), IntPtiDeliverDriverForLoad(), IntPtiHookPtDriver(), IntPtiMonitorAllPtWriteCandidates(), IntSlackAllocWindows(), IntSwapgsStartMitigation(), IntVeEnableDisableDriverAccessInProtectedView(), IntVeHookVeDriver(), IntWinDagentHandleSuspModHeaders(), IntWinDrvHeadersInMemory(), IntWinGuestFindDriversNamespace(), IntWinGuestFindDriversNamespaceNoBuffer(), IntWinGuestFindKernelObjectsInternal(), IntWinGuestReadKernel(), IntWinGuestValidateKernel(), IntWinHalFindHalHeapAndInterruptController(), IntWinHalFindInterruptController(), IntWinHalReadHal(), IntWinModHookModule(), IntWinModHookPoly(), and IntWinNetFindTcpObjects().