blob: 5592ed9fdf1408b28f19aa2823a4bbcb9567bab4 (
plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
|
require 'json'
class CloudQueries
include Sneakers::Worker
from_queue "worker.queries"
def work(json)
logger.info "Query for: #{json.inspect}"
attributes = JSON.parse(json)
fingerprint = attributes["fingerprint"]
disposition = Disposition.find_by(fingerprint: fingerprint)
publish(JSON.generate({
name: :scanned,
agent_id: attributes["agent_id"],
data: attributes["data"]
}), to_queue: "worker.events")
if disposition.nil?
publish(JSON.generate({
command: :request_analysis,
agent_id: attributes["agent_id"],
fingerprint: fingerprint,
}), routing_key: "malwer.agents.#{attributes["agent_id"]}")
end
ack!
end
end
|