Ejemplo n.º 1
0
                print "DIRECTORY DEBUG"
                print directory.get_debug(suspicious_file)

            elif sys.argv[1] == "--dir-tls":

                print "DIRECTORY TLS"
                print directory.get_tls(suspicious_file)

            elif sys.argv[1] == "--dump":

                print dump.get(suspicious_file)

            elif sys.argv[1] == "--export":

                print "EXPORTED FUNCTIONS AND ADRESSES"
                list = export_function.get(suspicious_file)
                for elem in list:
                    print elem

            elif sys.argv[1] == "--fileinfo":

                print "Compile Time ", fileinfo.getCompileTime(suspicious_file)
                md5 = fileinfo.get_hashes(sys.argv[2])[0]
                sha1 = fileinfo.get_hashes(sys.argv[2])[1]
                sha256 = fileinfo.get_hashes(sys.argv[2])[2]
                print "Hashes MD5 ", md5
                print "Hashes SHA 1", sha1
                print "Hashes SHA 256", sha256
                print "DLL ", fileinfo.getDLL(suspicious_file)
                print "File Info name and size ", fileinfo.getFileInfo(sys.argv[2])
                print "Number of Sections", fileinfo.getNumberofSections(suspicious_file)