MCPcopy Create free account

hub / github.com/Velocidex/WinPmem / functions

Functions176 in github.com/Velocidex/WinPmem

↓ 1 callersFunctionreverseQuery
src/testing/testapp2.c:138
↓ 1 callersFunctionsetMode
src/testing/testapp.c:140
↓ 1 callersFunctionsetMode
src/testing/testapp3.c:94
↓ 1 callersFunctionsetMode
src/testing/testapp1.c:120
↓ 1 callersFunctionsetMode
src/testing/testapp2.c:126
↓ 1 callersMethodset_write_enabled
Turn on write support in the driver.
src/executable/winpmem.cpp:218
↓ 1 callersFunctionsetupBackupForOriginalRoguePage
src/pte_mmap.c:281
↓ 1 callersFunctionsetupPhysMemSectionHandle
This opens a section handle to the physicalMemory device and quicksaves the handle in the device extension.
src/read.c:25
↓ 1 callersFunctionstartService
(name string)
go-winpmem/install.go:120
↓ 1 callersFunctionstartService
(name string)
src/golang/install.go:120
↓ 1 callersMethodwrite_raw_image
src/executable/winpmem.cpp:352
MethodClose
()
go-winpmem/sparse.go:30
MethodClose
()
src/golang/sparse.go:30
FunctionCopyAndLog
( ctx context.Context, in io.Reader, out io.Writer, logger Logger)
go-winpmem/compressor.go:70
FunctionCreateFileForWriting
(sparse bool, path string)
go-winpmem/sparse.go:34
FunctionCreateFileForWriting
(sparse bool, path string)
src/golang/sparse.go:34
MethodDebug
(format string, args ...interface{})
go-winpmem/logger.go:10
MethodDebug
(format string, args ...interface{})
go-winpmem/logger.go:34
MethodDebug
(format string, args ...interface{})
src/golang/logger.go:34
FunctionDriverEntry
src/winpmem.c:544
FunctionDumpRuns
src/NotInUse/pci.c:112
FunctionGetCompressor
(name string, w io.Writer)
go-winpmem/compressor.go:16
FunctionGetDecompressor
(header []byte, r io.Reader)
go-winpmem/compressor.go:54
FunctionGetSection
src/NotInUse/unused.c:68
MethodInfo
(format string, args ...interface{})
go-winpmem/logger.go:24
MethodInfo
(format string, args ...interface{})
src/golang/logger.go:24
FunctionInstallDriver
( driver_path, service_name string, logger Logger)
go-winpmem/install.go:43
FunctionInstallDriver
( driver_path, service_name string, logger Logger)
src/golang/install.go:43
FunctionKernelGetProcAddress
Get proc address for kernel space. Can support higher irqls.
src/NotInUse/unused.c:6
MethodLog
src/executable/winpmem.cpp:512
MethodLogError
src/executable/winpmem.cpp:502
MethodLogLastError
src/executable/winpmem.cpp:524
MethodMarshalYAML
()
go-winpmem/api.go:94
MethodMarshalYAML
()
src/golang/api.go:88
FunctionNewImager
( device_name string, logger Logger)
go-winpmem/imager.go:343
FunctionNewImager
( device_name string, logger Logger)
src/golang/imager.go:197
FunctionNewLogger
(debug bool)
go-winpmem/logger.go:74
FunctionNewLogger
(debug bool)
src/golang/logger.go:74
FunctionPCI_AddMemoryRanges
Uses direct PCI probing to add accessible physical memory ranges. */
src/NotInUse/pci.c:338
FunctionPmemRead
src/read.c:515
FunctionPmemWrite
src/read.c:642
MethodProgress
(pages int)
go-winpmem/logger.go:12
MethodProgress
(pages int)
go-winpmem/logger.go:46
MethodProgress
(pages int)
go-winpmem/cmd/decompress.go:70
MethodProgress
(pages int)
src/golang/logger.go:46
MethodReadAt
(buf []byte, offset int64)
go-winpmem/imager.go:115
MethodSetProgress
(pages_per_dot int)
go-winpmem/logger.go:70
MethodSetProgress
(pages_per_dot int)
src/golang/logger.go:70
MethodWinPmem
src/executable/winpmem.cpp:469
FunctionWinpmem_x64
* // go:embed embed/winpmem_x86.sys // var Winpmem_x86 string */
go-winpmem/assets.go:15
Function_tmain
src/executable/main.cpp:75
Functionaswprintf
src/executable/winpmem.cpp:927
Methodcopy_memory
src/executable/winpmem.cpp:64
Methodextract_file_
src/executable/winpmem.cpp:544
Functionif
src/read.c:334
Functioninit
()
go-winpmem/cmd/decompress.go:53
Functioninit
()
go-winpmem/cmd/acquire.go:135
Functioninit
()
go-winpmem/cmd/save.go:36
Functioninit
()
go-winpmem/cmd/install.go:77
Functionmain
()
go-winpmem/cmd/main.go:20
Functionmain
()
src/golang/cmd/main.go:30
Functionmain
src/testing/testapp.c:22
Functionmain
src/testing/testapp3.c:22
Functionmain
src/testing/testapp1.c:22
Functionmain
src/testing/testapp2.c:23
Methodpad
* Pad file in pad range with zeros. */
src/executable/winpmem.cpp:26
FunctionpmemFastIoRead
FAST I/O read
src/read.c:385
Methodprint_memory_info
Display information about the memory geometry. Simply drop a 'care package' info struct (you get that from the driver) into this function to get a nic
src/executable/winpmem.cpp:263
Methodprint_mode_
src/executable/winpmem.cpp:239
FunctionreverseQuery
src/testing/testapp3.c:106
FunctionsetupEventLogging
src/NotInUse/log.c:157
Functionstore_metadata_
Create a YAML file describing the image encoded into a null terminated string. Caller will own the memory. */
src/executable/winpmem.cpp:745
FunctionwddCreateClose
src/winpmem.c:134
FunctionwddDispatchDeviceControl
src/winpmem.c:148
FunctionwriteToEventLog
src/NotInUse/log.c:5
Method~WinPmem
src/executable/winpmem.cpp:487
← previous101–176 of 176, ranked by callers