Comments (13)
Are you running the latest version of Malheur from https://github.com/rieck/malheur ? We changed to using their new config format, so it will fail if you're using an older version.
-Brad
from cuckoo-modified.
Yes, version 0.5.4. However, I am running from OS X--not sure if this might be the issue..?
from cuckoo-modified.
Possibly -- I can't test on there. Can you run the malheur command present in the reporting module manually and see what error it's giving?
-Brad
from cuckoo-modified.
Sure.. it doesn't seem to like the -c command-line option to reference the config file..
from cuckoo-modified.
resolved: edited malheur.py with following changes..
line 148: cfgpath = os.path.join(CUCKOO_ROOT, "cons")
line 167: cmdline = ["malheur", "-m", cfgpath, "-o", outputfile, "cluster", reportsdir]
from cuckoo-modified.
You're not running the latest version (via git HEAD, not version number -- the changes I mentioned above were after the bump to 0.5.4)? There is no -m option in the latest version, and the -c option was added via this commit: rieck/malheur@28e0368
-Brad
from cuckoo-modified.
right you are! working now with latest and greatest version of Malheur. many thanks.
from cuckoo-modified.
After analyzing 178 samples, I'm getting this same error again. While restarting Cuckoo does not help, a total clean of jobs/samples/data/etc. does resolve the issue... for a while, then it consistently prints this error after 178 samples.
from cuckoo-modified.
That could be a different issue (there are a couple bugs in Malheur that I had fixed upstream, this is also why we require the current git HEAD). Can you re-run the commandline and see what the problem is?
-Brad
from cuckoo-modified.
Ran the command-line, and Malheur completed with no problems against the (>178) reports I generated with Cuckoo.
Note that, even when it prints the error after 178 samples, the individual report files are being generated in storage/malheur/reports, but everything after sample 178 is not being saved to storage/malheur/malheur.txt.
As a next step, I am going to run it against a different batch of samples..
from cuckoo-modified.
The other batch got well past 178. I then threw sample 178 from the original batch into another batch and, as bizarre as it sounds, that same sample is what killed the Malheur reporting (this time as sample 33).
from cuckoo-modified.
I'm having same issue too, after some time when malheur was working correctly, now I'm receiving that error:
WARNING: The reporting module "Malheur" returned the following error: Failed to perform Malheur classification: [Errno 2] No such file or directory
I'm using latest version etc...
from cuckoo-modified.
But for other analysis, exmaple the file 11323.txt under /storage/malheur/reports is generated..
from cuckoo-modified.
Related Issues (20)
- DEBUG: winxp: not ready yet ([lib.cuckoo.core.resultserver] CRITICAL: ResultServer unable to map ip to context: 192.168.56.101.)
- DEBUG: winxp: not ready yet
- Issue win7: not ready yet HOT 16
- [lib.cuckoo.core.scheduler] ERROR: Analysis failed: invalid string pointer 0x03AF1C8000000000
- I have created 5 vm. Which utilities can I use? HOT 1
- cuckoo1: the guest initialization hit the critical timeout, analysis aborted. HOT 28
- failed to read eve.json file as a json HOT 8
- Distributed Cuckoo HOT 5
- win 10: not ready yet
- run-detectors: unable to find an interpreter HOT 4
- Stop cuckoo if detect "file already exist" HOT 1
- Python Relink and clock_gettime Segmentation Fault on Ubuntu 18.04 HOT 3
- Any way to scroll down the web page in browser ?
- Running Cuckoo host and guest on Google cloud HOT 6
- PDF file not Found HOT 1
- Using signature helpers in original cuckoo sandbox HOT 5
- How to get Pafish spotless windows 10 ready for anti vm malware testing HOT 1
- [Analysis STUCK] Database error fetching task: Can't resolve label reference for ORDER BY / GROUP BY / DISTINCT etc.
- Simple installation of Modified Cuckoo
- Usage.py auxiliary module doesn't call add_pid function in Cape Sandbox
Recommend Projects
-
React
A declarative, efficient, and flexible JavaScript library for building user interfaces.
-
Vue.js
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
-
Typescript
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
-
TensorFlow
An Open Source Machine Learning Framework for Everyone
-
Django
The Web framework for perfectionists with deadlines.
-
Laravel
A PHP framework for web artisans
-
D3
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
-
Recommend Topics
-
javascript
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
-
web
Some thing interesting about web. New door for the world.
-
server
A server is a program made to process requests and deliver data to clients.
-
Machine learning
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
-
Visualization
Some thing interesting about visualization, use data art
-
Game
Some thing interesting about game, make everyone happy.
Recommend Org
-
Facebook
We are working to build community through open source technology. NB: members must have two-factor auth.
-
Microsoft
Open source projects and samples from Microsoft.
-
Google
Google ❤️ Open Source for everyone.
-
Alibaba
Alibaba Open Source for everyone
-
D3
Data-Driven Documents codes.
-
Tencent
China tencent open source team.
from cuckoo-modified.