Question: create a runnable program (by complete Python program below ), the program should be able to scan a folder, and analysis the PE structure of

create a runnable program (by complete Python program below ), the program should be able to scan a folder, and analysis the PE structure of each "malware detected":

import pefile

import sys

malware_file = sys.argv[1]

pe = pefile.PE(malware_file)

if hasattr(pe, 'DIRECTORY_ENTRY_EXPORT'):

for exp in pe.DIRECTORY_ENTRY_EXPORT.symbols:

d[(exp.address + pe.OPTIONAL_HEADER.ImageBase] +=1

Step by Step Solution

There are 3 Steps involved in it

1 Expert Approved Answer
Step: 1 Unlock blur-text-image
Question Has Been Solved by an Expert!

Get step-by-step solutions from verified subject matter experts

Step: 2 Unlock
Step: 3 Unlock

Students Have Also Explored These Related Databases Questions!