Skip to main content

Etl2Pcap

This Script is part of the Windows Forensics Pack.#

Supported versions

Supported Cortex XSOAR versions: 6.0.0 and later.

Receives an ETL file and converts it to a PCAP file.

Script Data#


NameDescription
Script Typepython3
Tags
Cortex XSOAR Version6.0.0

Used In#


This script is used in the following playbooks and scripts.

  • PS-Remote Get Network Traffic

Inputs#


Argument NameDescription
EntryIDThe file entry ID of the ETL File.

Outputs#


PathDescriptionType
EtlToPcap.NewFileNameThe output filename.Unknown