Example #1
0
 def testName(self):
     pe = PE.get('chrome.exe')
     print dump.get(pe)
Example #2
0
                print "DIRECTORY RESOURCE"
                print directory.get_resource(suspicious_file)
            elif sys.argv[1] == "--dir-debug":

                print "DIRECTORY DEBUG"
                print directory.get_debug(suspicious_file)

            elif sys.argv[1] == "--dir-tls":

                print "DIRECTORY TLS"
                print directory.get_tls(suspicious_file)

            elif sys.argv[1] == "--dump":

                print dump.get(suspicious_file)

            elif sys.argv[1] == "--export":

                print "EXPORTED FUNCTIONS AND ADRESSES"
                list = export_function.get(suspicious_file)
                for elem in list:
                    print elem

            elif sys.argv[1] == "--fileinfo":

                print "Compile Time ", fileinfo.getCompileTime(suspicious_file)
                md5 = fileinfo.get_hashes(sys.argv[2])[0]
                sha1 = fileinfo.get_hashes(sys.argv[2])[1]
                sha256 = fileinfo.get_hashes(sys.argv[2])[2]
                print "Hashes MD5 ", md5