WreckedByEmotet Posted August 12, 2019 ID:1328937 Share Posted August 12, 2019 Anyone know off hand were I could find local logs for the endpoint client's detection's? The notifications on the client popup and fade before anyone can see what's still going on, and in situations where we can't access the terminal on cloud.malwarebytes.com...that's a bit problematic. thanks! Link to post Share on other sites More sharing options...
exile360 Posted August 12, 2019 ID:1328938 Share Posted August 12, 2019 Greetings, If it works anything like the consumer product, then depending on which component of protection made the detections, you should be able to find them under one of the folders stored under the Malwarebytes ProgramData\MBAMService folder. For example, detections for Web Protection can be found under C:\ProgramData\Malwarebytes\MBAMService\MwacDetections. The .JSON files can be viewed using any plaintext editor such as notepad. I hope this helps. Link to post Share on other sites More sharing options...
WreckedByEmotet Posted August 12, 2019 Author ID:1328940 Share Posted August 12, 2019 Thank you! That was very helpful. Link to post Share on other sites More sharing options...
exile360 Posted August 12, 2019 ID:1328941 Share Posted August 12, 2019 You're welcome, I'm glad I was able to help. Link to post Share on other sites More sharing options...
Staff CHMOD_777 Posted August 12, 2019 Staff ID:1328995 Share Posted August 12, 2019 Hello @WreckedByEmotet In addition to that folder path, you can collect all the logs by holding "Control" and "Right-Clicking" the Blue M in the tray icon. This will present you with an option to Generate Diagnostic logs in a zipped folder to the desktop. Warm Regards, Link to post Share on other sites More sharing options...
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now