Question: create a runnable program (by complete Python program below ), the program should be able to scan a folder, and analysis the PE structure of
create a runnable program (by complete Python program below ), the program should be able to scan a folder, and analysis the PE structure of each "malware detected":
import pefile
import sys
malware_file = sys.argv[1]
pe = pefile.PE(malware_file)
if hasattr(pe, 'DIRECTORY_ENTRY_EXPORT'):
for exp in pe.DIRECTORY_ENTRY_EXPORT.symbols:
d[(exp.address + pe.OPTIONAL_HEADER.ImageBase] +=1
Step by Step Solution
There are 3 Steps involved in it
Get step-by-step solutions from verified subject matter experts
