forked from kevoreilly/CAPEv2
-
Notifications
You must be signed in to change notification settings - Fork 0
/
cuckoo.py
148 lines (121 loc) · 4.42 KB
/
cuckoo.py
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
#!/usr/bin/env python
# Copyright (C) 2010-2015 Cuckoo Foundation.
# This file is part of Cuckoo Sandbox - http://www.cuckoosandbox.org
# See the file 'docs/LICENSE' for copying permission.
import argparse
import logging
import os
import sys
from pathlib import Path
if sys.version_info[:2] < (3, 8):
sys.exit("You are running an incompatible version of Python, please use >= 3.8")
if os.geteuid() == 0 and os.getenv("CAPE_AS_ROOT", "0") != "1":
sys.exit("Root is not allowed. You gonna break permission and other parts of CAPE. RTM!")
from lib.cuckoo.common.exceptions import CuckooCriticalError, CuckooDependencyError
try:
import bson
from lib.cuckoo.common.constants import CUCKOO_ROOT, CUCKOO_VERSION
from lib.cuckoo.common.logo import logo
from lib.cuckoo.core.resultserver import ResultServer
from lib.cuckoo.core.scheduler import Scheduler
from lib.cuckoo.core.startup import (
check_configs,
check_linux_dist,
check_tcpdump_permissions,
check_webgui_mongo,
check_working_directory,
create_structure,
init_logging,
init_modules,
init_rooter,
init_routing,
init_tasks,
init_yara,
)
bson # Pretend like it's actually being used (for static checkers.)
except (CuckooDependencyError, ImportError) as e:
print(f"ERROR: Missing dependency: {e}")
sys.exit()
log = logging.getLogger()
check_linux_dist()
def cuckoo_init(quiet=False, debug=False, artwork=False, test=False):
cur_path = Path.cwd()
os.chdir(CUCKOO_ROOT)
logo()
check_working_directory()
check_configs()
create_structure()
if artwork:
import time
try:
while True:
time.sleep(1)
logo()
except KeyboardInterrupt:
return
if quiet:
level = logging.WARN
elif debug:
level = logging.DEBUG
else:
level = logging.INFO
log.setLevel(level)
init_logging(level)
check_webgui_mongo()
init_modules()
init_tasks()
init_yara()
init_rooter()
init_routing()
check_tcpdump_permissions()
# This is just a temporary hack, we need an actual test suite to integrate
# with Travis-CI.
if test:
return
ResultServer()
os.chdir(cur_path)
def cuckoo_main(max_analysis_count=0):
cur_path = Path.cwd()
os.chdir(CUCKOO_ROOT)
try:
sched = Scheduler(max_analysis_count)
sched.start()
except KeyboardInterrupt:
sched.stop()
os.chdir(cur_path)
if __name__ == "__main__":
parser = argparse.ArgumentParser()
parser.add_argument("-q", "--quiet", help="Display only error messages", action="store_true", required=False)
parser.add_argument("-d", "--debug", help="Display debug messages", action="store_true", required=False)
parser.add_argument("-v", "--version", action="version", version="You are running Cuckoo Sandbox {0}".format(CUCKOO_VERSION))
parser.add_argument("-a", "--artwork", help="Show artwork", action="store_true", required=False)
parser.add_argument("-t", "--test", help="Test startup", action="store_true", required=False)
parser.add_argument("-m", "--max-analysis-count", help="Maximum number of analyses", type=int, required=False)
parser.add_argument(
"-s",
"--stop",
help="Send signal to STOP analyzing upcoming tasks. Finish existent tasks and quit. Proper restart to pick any core changes.",
action="store_true",
required=False,
)
args = parser.parse_args()
if args.stop:
import psutil
filename = Path(__file__).parts[-1]
for p in psutil.process_iter(attrs=["name", "pid", "cmdline"]):
# cuckoo.py but doing in this way in case we rename it in future
if filename in p.info["cmdline"]:
p.send_signal(1)
break
else:
try:
cuckoo_init(quiet=args.quiet, debug=args.debug, artwork=args.artwork, test=args.test)
if not args.artwork and not args.test:
cuckoo_main(max_analysis_count=args.max_analysis_count)
except CuckooCriticalError as e:
message = "{0}: {1}".format(e.__class__.__name__, e)
if any(filter(lambda hdlr: not isinstance(hdlr, logging.NullHandler), log.handlers)):
log.critical(message)
else:
sys.stderr.write("{0}\n".format(message))
sys.exit(1)