-
Notifications
You must be signed in to change notification settings - Fork 82
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Error in yarascan #28
Comments
Will have a look and see if i can reproduce the error |
In you that this function is normal? I deployed two is the error. Is it my image or profile has a problem? |
Which OS is your Image? You can try running volscan from the command line like normal. This would tell you if your image is ok |
is centos65x64 i can use linux_yarascan at command line i can't find volscan command, :( |
DEBUG Yara String Scanner
DEBUG : web.views : Yara String Scanner
DEBUG Setting Config CASE to None
DEBUG : web.vol_interface : Setting Config CASE to None
DEBUG Setting Config WIDE to None
DEBUG : web.vol_interface : Setting Config WIDE to None
DEBUG Setting Config ALL to None
DEBUG : web.vol_interface : Setting Config ALL to None
DEBUG Setting Config REVERSE to 0
DEBUG : web.vol_interface : Setting Config REVERSE to 0
DEBUG Setting Config YARA_RULES to google
DEBUG : web.vol_interface : Setting Config YARA_RULES to google
DEBUG Setting Config SIZE to 256
DEBUG : web.vol_interface : Setting Config SIZE to 256
ERROR Struct VOLATILITY_MAGIC has no member KPCR
ERROR : web.views : Struct VOLATILITY_MAGIC has no member KPCR
[11/Jun/2016 00:19:53] "POST /ajaxhandler/yara-string/ HTTP/1.1" 200 28
DEBUG : web.views : Yara String Scanner
DEBUG Setting Config CASE to None
DEBUG : web.vol_interface : Setting Config CASE to None
DEBUG Setting Config WIDE to None
DEBUG : web.vol_interface : Setting Config WIDE to None
DEBUG Setting Config ALL to None
DEBUG : web.vol_interface : Setting Config ALL to None
DEBUG Setting Config REVERSE to 0
DEBUG : web.vol_interface : Setting Config REVERSE to 0
DEBUG Setting Config YARA_FILE to yararules/Ap0calypse.yar
DEBUG : web.vol_interface : Setting Config YARA_FILE to yararules/Ap0calypse.yar
DEBUG Setting Config SIZE to 256
DEBUG : web.vol_interface : Setting Config SIZE to 256
ERROR Struct VOLATILITY_MAGIC has no member KPCR
ERROR : web.views : Struct VOLATILITY_MAGIC has no member KPCR
[11/Jun/2016 00:21:52] "POST /ajaxhandler/yara-string/ HTTP/1.1" 200 28
i using The Yara Scan Memory button on the Tools Bar
can you help me ,thank you so much
The text was updated successfully, but these errors were encountered: