-
Notifications
You must be signed in to change notification settings - Fork 1.3k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
*** Failed to import volatility.plugins #535
Comments
sudo apt-get install yara |
if you use Ubuntu, try these command below.
|
this worked for me on kali:
|
Hi, Thanks for the answers...All of the above commands worked for me except "sudo -H pip install distorm3 pycrypto openpyxl Pillow" I'm getting this error: Failed building wheel for distorm3
Command "/usr/bin/python -u -c "import setuptools, tokenize;file='/tmp/pip-install-EGwkUD/distorm3/setup.py';f=getattr(tokenize, 'open', open)(file);code=f.read().replace('\r\n', '\n');f.close();exec(compile(code, file, 'exec'))" install --record /tmp/pip-record-zA15BI/install-record.txt --single-version-externally-managed --compile" failed with error code 1 in /tmp/pip-install-EGwkUD/distorm3/ Please Help. Thanks |
I am getting the same errors you are getting (/usr/lib64/libyara.so: undefined symbol: lookup_rule). I believe it is due to changes in libyara that have not found their way to volatility yet. I do not have a solution at this time. |
This issue seems to crop up from time to time depending on how you install Yara: Its not really a Volatility issue, but hopefully that link will help. |
am getting this error in my kali ln: failed to create symbolic link '/usr/lib/libyara.so': File exists |
Libyara stopped exporting lookup_rule in version 2.0, python2 yara is linked to libyara version 1.6 |
Ran fresh and this is still happening |
I am getting this error after running the volatility.
Volatility Foundation Volatility Framework 2.6
*** Failed to import volatility.plugins.linux.malfind (AttributeError: /usr/lib/libyara.so: undefined symbol: lookup_rule)
*** Failed to import volatility.plugins.malware.timers (AttributeError: /usr/lib/libyara.so: undefined symbol: lookup_rule)
*** Failed to import volatility.plugins.overlays.windows.win8 (AttributeError: /usr/lib/libyara.so: undefined symbol: lookup_rule)
*** Failed to import volatility.plugins.drivermodule (AttributeError: /usr/lib/libyara.so: undefined symbol: lookup_rule)
*** Failed to import volatility.plugins.overlays.mac.mac (AttributeError: /usr/lib/libyara.so: undefined symbol: lookup_rule)
*** Failed to import volatility.plugins.overlays.windows.win8_kdbg (AttributeError: /usr/lib/libyara.so: undefined symbol: lookup_rule)
*** Failed to import volatility.plugins.timeliner (AttributeError: /usr/lib/libyara.so: undefined symbol: lookup_rule)
*** Failed to import volatility.plugins.malware.apihooks (AttributeError: /usr/lib/libyara.so: undefined symbol: lookup_rule)
*** Failed to import volatility.plugins.multiscan (AttributeError: /usr/lib/libyara.so: undefined symbol: lookup_rule)
*** Failed to import volatility.plugins.tcaudit (AttributeError: /usr/lib/libyara.so: undefined symbol: lookup_rule)
*** Failed to import volatility.plugins.dumpcerts (AttributeError: /usr/lib/libyara.so: undefined symbol: lookup_rule)
*** Failed to import volatility.plugins.malware.devicetree (AttributeError: /usr/lib/libyara.so: undefined symbol: lookup_rule)
*** Failed to import volatility.plugins.overlays.windows.win10 (AttributeError: /usr/lib/libyara.so: undefined symbol: lookup_rule)
*** Failed to import volatility.plugins.malware.threads (AttributeError: /usr/lib/libyara.so: undefined symbol: lookup_rule)
*** Failed to import volatility.plugins.malware.idt (AttributeError: /usr/lib/libyara.so: undefined symbol: lookup_rule)
*** Failed to import volatility.plugins.mac.mac_yarascan (AttributeError: /usr/lib/libyara.so: undefined symbol: lookup_rule)
*** Failed to import volatility.plugins.linux.netscan (AttributeError: /usr/lib/libyara.so: undefined symbol: lookup_rule)
*** Failed to import volatility.plugins.linux.linux_truecrypt (AttributeError: /usr/lib/libyara.so: undefined symbol: lookup_rule)
*** Failed to import volatility.plugins.malware.malfind (AttributeError: /usr/lib/libyara.so: undefined symbol: lookup_rule)
*** Failed to import volatility.plugins.ssdt (AttributeError: /usr/lib/libyara.so: undefined symbol: lookup_rule)
*** Failed to import volatility.plugins.mac.malfind (AttributeError: /usr/lib/libyara.so: undefined symbol: lookup_rule)
*** Failed to import volatility.plugins.malware.callbacks (AttributeError: /usr/lib/libyara.so: undefined symbol: lookup_rule)
*** Failed to import volatility.plugins.linux.linux_yarascan (AttributeError: /usr/lib/libyara.so: undefined symbol: lookup_rule)
The text was updated successfully, but these errors were encountered: