【发布时间】:2016-02-13 09:05:18
【问题描述】:
我有一个关于在 Java 中解析文本的问题。
Name Virtual address Virtual size Raw size Entropy MD5
CODE 4096 37732 37888 6.56 2c410dfc3efd04d9b69c35c70921424e
DATA 45056 588 1024 2.74 d5ea23d4ecf110fd2591314cbaa84278
BSS 49152 3720 0 0.00 d41d8cd98f00b204e9800998ecf8427e
.idata 53248 2384 2560 4.43 bb5485bf968b970e5ea81292af2acdba
.tls 57344 8 0 0.00 d41d8cd98f00b204e9800998ecf8427e
.rdata 61440 24 512 0.20 9ba824905bf9c7922b6fc87a38b74366
.reloc 65536 2228 0 0.00 d41d8cd98f00b204e9800998ecf8427e
.rsrc 69632 378360 378368 4.42 dc75e95cd49ce06a635cad0b18dab6d7
? Runtime DLLs
c:\docume~1\<USER>~1\locals~1\temp\glc1.tmp (successful)
c:\docume~1\<USER>~1\locals~1\temp\glk2.tmp (successful)
riched32.dll (successful)
secur32.dll (successful)
shell32.dll (successful)
ole32.dll (successful)
setupapi.dll (successful)
rpcrt4.dll (successful)
clbcatq.dll (successful)
comctl32.dll (successful)
ntshrui.dll (successful)
linkinfo.dll (successful)
userenv.dll (successful)
netapi32 (successful)
Contract
? PE imports
[+] advapi32.dll ()
LookupPrivilegeValueA
我想解析文本,它位于运行时 DLLS 部分。是否有任何解决方案在找到字符串 Runtime DLLS 时开始追加到 stringbuilder 并且在找到下一个时会追加? PE IMPORTS 排在哪一行?或者他们会为此解析选择其他解决方案吗?
【问题讨论】: