yangyang5214 / cuckoo

Cuckoo Sandbox is an automated dynamic malware analysis system
http://www.cuckoosandbox.org
Other
0 stars 0 forks source link

screenshot failed #3

Open yangyang5214 opened 1 year ago

yangyang5214 commented 1 year ago
2023-07-27 17:30:43,496 [modules.auxiliary.screenshots] ERROR: Cannot take screenshot: screen grab failed
2023-07-27 17:30:44,512 [modules.auxiliary.screenshots] ERROR: Cannot take screenshot: screen grab failed
2023-07-27 17:30:45,528 [modules.auxiliary.screenshots] ERROR: Cannot take screenshot: screen grab failed
2023-07-27 17:30:46,543 [modules.auxiliary.screenshots] ERROR: Cannot take screenshot: screen grab failed
2023-07-27 17:30:47,559 [modules.auxiliary.screenshots] ERROR: Cannot take screenshot: screen grab failed
2023-07-27 17:30:48,575 [modules.auxiliary.screenshots] ERROR: Cannot take screenshot: screen grab failed
2023-07-27 17:30:49,591 [modules.auxiliary.screenshots] ERROR: Cannot take screenshot: screen grab failed
2023-07-27 17:30:50,605 [modules.auxiliary.screenshots] ERROR: Cannot take screenshot: screen grab failed
2023-07-27 17:30:51,621 [modules.auxiliary.screenshots] ERROR: Cannot take screenshot: screen grab failed
yangyang5214 commented 1 year ago

不能通过 windwos 计划任务后台执行, 截图会失败(初步排查是这样的)

问题解决,调整:

  1. agent.py 通过 powershell administrator 运行
  2. 之前是配置了 windwos 计划任务启动的,调整为通过 1 方式启动,然后创建快照,确保恢复快照后 agent:8000 端口能通信