Package modules :: Package processing :: Module behavior :: Class Anomaly
[hide private]
[frames] | no frames]

Class Anomaly

source code

object --+
         |
        Anomaly

Anomaly detected during analysis. For example: a malware tried to remove Cuckoo's hooks.

Instance Methods [hide private]
 
__init__(self)
x.__init__(...) initializes x; see help(type(x)) for signature
source code
 
event_apicall(self, call, process)
Process API calls.
source code
 
run(self)
Fetch all anomalies.
source code

Inherited from object: __delattr__, __format__, __getattribute__, __hash__, __new__, __reduce__, __reduce_ex__, __repr__, __setattr__, __sizeof__, __str__, __subclasshook__

Class Variables [hide private]
  key = 'anomaly'
Properties [hide private]

Inherited from object: __class__

Method Details [hide private]

__init__(self)
(Constructor)

source code 

x.__init__(...) initializes x; see help(type(x)) for signature

Overrides: object.__init__
(inherited documentation)

event_apicall(self, call, process)

source code 

Process API calls.

Parameters:
  • call - API call object
  • process - process object