Paketname | python-pefile |
Beschreibung | Portable Executable (PE) parsing module for Python |
Archiv/Repository | Offizielles Ubuntu Archiv lucid (universe) |
Version | 1.2.9.1-1 |
Sektion | universe/python |
Priorität | extra |
Installierte Größe | 240 Byte |
Hängt ab von | python, python-central (>= 0.6.6) |
Empfohlene Pakete | |
Paketbetreuer | Ubuntu MOTU Developers |
Quelle | |
Paketgröße | 41170 Byte |
Prüfsumme MD5 | 108bbd5ac6567c2c376176a67c1d8bca |
Prüfsumme SHA1 | 8bf09413f1fa7f519c065cdb5ae5df86ec23fea4 |
Prüfsumme SHA256 | 2b9b1d117319ac8fb7d4b92fdff0443e2a38949ebf30d5a8b0cdbb83a47c59bc |
Link zum Herunterladen | python-pefile_1.2.9.1-1_all.deb |
Ausführliche Beschreibung | pefile is a Python module to read and work with Portable Executable (PE)
files. Most of the information in the PE header is accessible, as well as all
the sections, section information and data.
.
All the basic PE file structures are available with their default names as
attributes of the returned instance.
.
Processed elements such as the import table are made available with lowercase
names, to differentiate them from the upper case basic structure names.
.
pefile has been tested against the limits of valid PE headers; that is,
Windows malware. Lots of packed malware attempt to abuse the format beyond its
standard use.
.
Some of the tasks that pefile makes possible are:
* Modifying and writing back to the PE image
* Header inspection
* Section analysis
* Retrieving data
* Warnings for suspicious and malformed values
* Packer detection with PEiD signatures
* PEiD signature generation
|