Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

What part of cuckoo generated report is from Virustotal. #484

Open
masifpak opened this issue Aug 28, 2017 · 3 comments
Open

What part of cuckoo generated report is from Virustotal. #484

masifpak opened this issue Aug 28, 2017 · 3 comments

Comments

@masifpak
Copy link

I have deployed Cuckoo for malware analysis. I want to understand following queries.
What part of report is get from virustotal. I mean does we integrate whole virustotal report in cuckoo report or some part.
Cuckoo shows Behavior Analysis and static analysis from virus total or its own.

@doomedraven
Copy link
Contributor

become familiar with project structure will save you a lot of time
https://github.com/spender-sandbox/cuckoo-modified/tree/master/modules/processing

@kevoreilly
Copy link

The behavioural analysis and static analysis are performed by Cuckoo. As doomedraven suggests, the code for this is in the processing subdirectory, and the VirusTotal lookups may be completely disabled by configuring the [virustotal] section of conf\processing.conf, setting enabled = no. Then what will remain will only be Cuckoo.

@kevoreilly
Copy link

Apologies for bumping what is such an old post - should have checked the date before replying!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

3 participants