Open seantree opened 6 years ago
Commonly, it should be stored in the "logs" directory of each analysis but I think Cuckoo cannot upload a file of 100 MB (that was the size that I got in VM) from VM to the Host. I don't know if the reason is that it cannot be uploaded the file because the time defined for each analysis or the size of the file was big. I tried with 30 minutes of analysis and I can't got the file.
you can change the size
Is there anyway to store the file in csv format also?
I don't know, does procmon
support CSV format?
Yes it's support
you can modify $CWD/data/analyzer/windows/modules/auxiliary/procmon.py to do CSV output by simply replacing the xml references with csv (quick and dirty). If you need to change the filters or configuration to suit your output (i.e. Procdot). Export a customized procmon.pmc file and overwrite the existing one.
Hello guys just want to know where the procmon.xml is stored after each analysis I didn't found in the storage folder.
Thanks & Regards Seantree