| Trees | Indices | Help |
|
|---|
|
|
A class to manage hits and create contiguous context buffers.
| Instance Methods | |||
|
|||
|
|||
|
|||
|
|||
|
|||
|
Inherited from |
|||
| Properties | |
|
Inherited from |
| Method Details |
x.__init__(...) initializes x; see help(type(x)) for signature
|
Get the process owner from the physical address. We could use the ptov() or rammap() plugin but this is a very fast implementation which only cares about the identity of the owner. |
Get some context about this offset. We use this context to group similar yara hits into logical groups. Returns: a list of things which can be used as contexts - i.e. they are unique for all pages common within this context. Pages will be grouped by these contexts and evaluated together. |
| Trees | Indices | Help |
|
|---|
| Generated by Epydoc 3.0.1 on Mon Oct 9 03:29:15 2017 | http://epydoc.sourceforge.net |