flare-vm icon indicating copy to clipboard operation
flare-vm copied to clipboard

Everything is pretty much....broken

Open opticoax747 opened this issue 5 years ago • 1 comments

Seems I am using this to learn how to troubleshoot python rather than analyzing malware.

λ olemap.exe -x "f11b7237907275ca59ce4f0b630f69a6c3770b0060359917bf465690e2309e47 (1).bin" olemap 0.54 - http://decalage.info/python/oletools

FILE: f11b7237907275ca59ce4f0b630f69a6c3770b0060359917bf465690e2309e47 (1).bin

Traceback (most recent call last): File "C:\Python37\Scripts\olemap-script.py", line 11, in load_entry_point('oletools==0.54.2', 'console_scripts', 'olemap')() File "C:\Python37\lib\site-packages\oletools-0.54.2-py3.7.egg\oletools\olemap.py", line 278, in main ole = olefile.OleFileIO(filename) File "C:\Python37\lib\site-packages\olefile-0.46-py3.7.egg\olefile\olefile.py", line 1075, in init File "C:\Python37\lib\site-packages\olefile-0.46-py3.7.egg\olefile\olefile.py", line 1192, in open File "C:\Python37\lib\site-packages\olefile-0.46-py3.7.egg\olefile\olefile.py", line 1105, in _raise_defect OSError: not an OLE2 structured storage file

Traceback (most recent call last): File "C:\Python37\lib\site-packages\oletools-0.54.2-py3.7.egg\oletools\olebrowse.py", line 133, in main ole = olefile.OleFileIO(filename) File "C:\Python37\lib\site-packages\olefile-0.46-py3.7.egg\olefile\olefile.py", line 1075, in init self.open(filename, write_mode=write_mode) File "C:\Python37\lib\site-packages\olefile-0.46-py3.7.egg\olefile\olefile.py", line 1192, in open self._raise_defect(DEFECT_FATAL, "not an OLE2 structured storage file") File "C:\Python37\lib\site-packages\olefile-0.46-py3.7.egg\olefile\olefile.py", line 1105, in _raise_defect raise exception_type(message) OSError: not an OLE2 structured storage file

λ olemeta.exe "f11b7237907275ca59ce4f0b630f69a6c3770b0060359917bf465690e2309e47 (1).bin" olemeta 0.54 - http://decalage.info/python/oletools THIS IS WORK IN PROGRESS - Check updates regularly! Please report any issue at https://github.com/decalage2/oletools/issues

FILE: f11b7237907275ca59ce4f0b630f69a6c3770b0060359917bf465690e2309e47 (1).bin

Traceback (most recent call last): File "C:\Python37\Scripts\olemeta-script.py", line 11, in load_entry_point('oletools==0.54.2', 'console_scripts', 'olemeta')() File "C:\Python37\lib\site-packages\oletools-0.54.2-py3.7.egg\oletools\olemeta.py", line 173, in main ole = olefile.OleFileIO(filename) File "C:\Python37\lib\site-packages\olefile-0.46-py3.7.egg\olefile\olefile.py", line 1075, in init File "C:\Python37\lib\site-packages\olefile-0.46-py3.7.egg\olefile\olefile.py", line 1192, in open File "C:\Python37\lib\site-packages\olefile-0.46-py3.7.egg\olefile\olefile.py", line 1105, in _raise_defect OSError: not an OLE2 structured storage fil

opticoax747 avatar Dec 24 '19 08:12 opticoax747

@opticoax747 Please check if the latest version of FLARE VM has fixed your issues.

MalwareMechanic avatar Apr 03 '20 17:04 MalwareMechanic

Thank you for your feedback! We've been working on major updates to FLARE VM over the last year. The now revamped FLARE VM has just been released and will make the project more open and maintainable. Please check out our blog post at https://www.mandiant.com/resources/blog/flarevm-open-to-public and give the new installation a try.

If this problem still persists with the new installation, please report:

  • new tools or tool-related issues at https://github.com/mandiant/VM-Packages/issues
  • ideas and issues related to the installer script and configuration at https://github.com/mandiant/flare-vm/issues

Please note that we use this message to close all legacy issues in this repository. We look forward to your feedback and support for the next generation of FLARE VM.

vm-packages avatar Dec 05 '22 15:12 vm-packages