-
Notifications
You must be signed in to change notification settings - Fork 385
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
- Loading branch information
1 parent
d806e3f
commit 773ee72
Showing
7 changed files
with
35 additions
and
0 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,35 @@ | ||
This analyzer let you run Virustotal services on several datatypes: | ||
|
||
* _file_ | ||
* _hash_ | ||
* _domain_ | ||
* _fqdn_ | ||
* _ip_ | ||
* _url_ | ||
|
||
The program uses [VirusTotal API v3](https://developers.virustotal.com/v3.0/reference). | ||
|
||
Major improvements have been added with _VirusTotal\_GetReport_ flavor. Now, with the classical scan results, the report can display: | ||
|
||
* A Summary: with qualitative informnation about the detection | ||
|
||
data:image/s3,"s3://crabby-images/e46b6/e46b60a96bb8913c6b6ce93000d52de9e5955853" alt="" | ||
|
||
|
||
* Crowdsourced YARA results with known Yara rules to detect the threat | ||
|
||
data:image/s3,"s3://crabby-images/2c13e/2c13ea82b98a4105555f3693b6806b00dcf134b0" alt="" | ||
|
||
|
||
* Contacted IP addresses, domains and URLs if any | ||
* Crowdsourced IDS results with known IDS rules to detect the threat | ||
* Sandbox verdict if any | ||
|
||
data:image/s3,"s3://crabby-images/3b65f/3b65f91a0b320e7acf1cf6b985debd0de799e8a9" alt="" | ||
|
||
#### Extracted Observables | ||
|
||
Moreover, these domains, IP addresses, URLs as well as detection YARA and IDS rules reported are added to the extracted Observables, ready | ||
to be imported and actioned in TheHive. | ||
|
||
data:image/s3,"s3://crabby-images/a85a6/a85a6dcbf611d83380b77c997ce836ff794def63" alt="" |
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.