修复主函数中的恶意软件扫描和沙箱功能调用顺序
- 将主函数中的沙箱功能调用注释掉,恢复恶意软件扫描功能的调用 - 注释掉了沙箱函数的实现,保持代码整洁 - 确保恶意软件扫描功能在主程序中优先执行
This commit is contained in:
@@ -311,14 +311,15 @@ auto doMalwareScan(int argc, char* argv[]) -> void {
|
|||||||
auto sampleType = scanner.DetectMalware(filePath);
|
auto sampleType = scanner.DetectMalware(filePath);
|
||||||
printf("sample type: %d \n", sampleType);
|
printf("sample type: %d \n", sampleType);
|
||||||
}
|
}
|
||||||
|
/*
|
||||||
int doSandbox(int argc, char* argv[]) {
|
int doSandbox(int argc, char* argv[]) {
|
||||||
/*
|
|
||||||
if (argc < 3) {
|
if (argc < 3) {
|
||||||
std::cout << "用法: " << argv[0] << " <文件路径> <地址>" << std::endl;
|
std::cout << "用法: " << argv[0] << " <文件路径> <地址>" << std::endl;
|
||||||
return;
|
return;
|
||||||
}
|
}
|
||||||
std::string filePath = argv[1];
|
std::string filePath = argv[1];
|
||||||
*/
|
|
||||||
std::string filePath = "C:\\mso.dll";
|
std::string filePath = "C:\\mso.dll";
|
||||||
|
|
||||||
auto peInfo = getPeInfo(filePath);
|
auto peInfo = getPeInfo(filePath);
|
||||||
@@ -330,10 +331,11 @@ int doSandbox(int argc, char* argv[]) {
|
|||||||
se.Run(0x180003980);
|
se.Run(0x180003980);
|
||||||
return 0;
|
return 0;
|
||||||
}
|
}
|
||||||
|
*/
|
||||||
int main(int argc, char* argv[]) {
|
int main(int argc, char* argv[]) {
|
||||||
// doMl(argc, argv);
|
// doMl(argc, argv);
|
||||||
// doPredict(argc, argv);
|
// doPredict(argc, argv);
|
||||||
// doMalwareScan(argc, argv);
|
doMalwareScan(argc, argv);
|
||||||
doSandbox(argc, argv);
|
// doSandbox(argc, argv);
|
||||||
return 0;
|
return 0;
|
||||||
}
|
}
|
||||||
|
|||||||
Reference in New Issue
Block a user