MISP (core software) - Open Source Threat Intelligence and Sharing Platform (formely known as Malware Information Sharing Platform) https://www.misp-project.org/
25개 이상의 토픽을 선택하실 수 없습니다. Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
 
 
 
 
 
 

231 lines
8.5 KiB

  1. -- phpMyAdmin SQL Dump
  2. -- version 3.3.9.2
  3. -- http://www.phpmyadmin.net
  4. --
  5. -- Host: localhost
  6. -- Generation Time: Jun 14, 2012 at 09:57 AM
  7. -- Server version: 5.5.9
  8. -- PHP Version: 5.3.6
  9. SET SQL_MODE="NO_AUTO_VALUE_ON_ZERO";
  10. --
  11. -- Database: `cydefsig`
  12. --
  13. -- --------------------------------------------------------
  14. --
  15. -- Table structure for table `attributes`
  16. --
  17. CREATE TABLE `attributes` (
  18. `id` int(11) NOT NULL AUTO_INCREMENT,
  19. `event_id` int(11) NOT NULL,
  20. `category` varchar(255) COLLATE utf8_bin NOT NULL,
  21. `type` varchar(100) CHARACTER SET utf8 COLLATE utf8_unicode_ci NOT NULL,
  22. `value1` text CHARACTER SET utf8 COLLATE utf8_unicode_ci NOT NULL,
  23. `value2` text CHARACTER SET utf8 COLLATE utf8_unicode_ci NOT NULL,
  24. `to_ids` tinyint(1) NOT NULL DEFAULT '1',
  25. `uuid` varchar(40) COLLATE utf8_bin NOT NULL,
  26. `revision` int(10) NOT NULL DEFAULT '0',
  27. `private` tinyint(1) NOT NULL,
  28. `cluster` tinyint(1) NOT NULL,
  29. `communitie` tinyint(1) NOT NULL,
  30. PRIMARY KEY (`id`),
  31. KEY `event_id` (`event_id`),
  32. KEY `value1_key` (`value1`(5)),
  33. KEY `value2_key` (`value2`(5))
  34. ) ENGINE=MyISAM DEFAULT CHARSET=utf8 COLLATE=utf8_bin AUTO_INCREMENT=1 ;
  35. -- --------------------------------------------------------
  36. --
  37. -- Table structure for table `blacklist`
  38. --
  39. CREATE TABLE `blacklist` (
  40. `id` int(11) NOT NULL AUTO_INCREMENT,
  41. `name` varchar(254) NOT NULL,
  42. PRIMARY KEY (`id`)
  43. ) ENGINE=MyISAM DEFAULT CHARSET=utf8 COLLATE=utf8_bin AUTO_INCREMENT=1 ;
  44. -- --------------------------------------------------------
  45. --
  46. -- Table structure for table `bruteforces`
  47. --
  48. CREATE TABLE `bruteforces` (
  49. `ip` varchar(255) COLLATE utf8_bin NOT NULL,
  50. `username` varchar(255) COLLATE utf8_bin NOT NULL,
  51. `expire` datetime NOT NULL
  52. ) ENGINE=MyISAM DEFAULT CHARSET=utf8 COLLATE=utf8_bin;
  53. -- --------------------------------------------------------
  54. --
  55. -- Table structure for table `correlations`
  56. --
  57. DROP TABLE IF EXISTS `correlations`;
  58. CREATE TABLE `correlations` (
  59. `id` int(11) NOT NULL AUTO_INCREMENT,
  60. `1_event_id` int(11) NOT NULL,
  61. `1_attribute_id` int(11) NOT NULL,
  62. `1_private` tinyint(1) NOT NULL,
  63. `event_id` int(11) NOT NULL,
  64. `attribute_id` int(11) NOT NULL,
  65. `org` varchar(255) COLLATE utf8_bin NOT NULL,
  66. `private` tinyint(1) NOT NULL,
  67. `cluster` tinyint(1) NOT NULL,
  68. `date` date NOT NULL,
  69. PRIMARY KEY (`id`)
  70. ) ENGINE=MyISAM AUTO_INCREMENT=118 DEFAULT CHARSET=utf8 COLLATE=utf8_bin;
  71. -- --------------------------------------------------------
  72. --
  73. -- Table structure for table `events`
  74. --
  75. CREATE TABLE `events` (
  76. `id` int(11) NOT NULL AUTO_INCREMENT,
  77. `org` varchar(255) COLLATE utf8_bin NOT NULL,
  78. `date` date NOT NULL,
  79. `risk` enum('Undefined','Low','Medium','High') COLLATE utf8_bin NOT NULL,
  80. `info` text CHARACTER SET utf8 COLLATE utf8_unicode_ci NOT NULL,
  81. `user_id` int(11) NOT NULL,
  82. `published` tinyint(1) NOT NULL DEFAULT '0',
  83. `uuid` varchar(40) COLLATE utf8_bin NOT NULL,
  84. `revision` int(10) NOT NULL DEFAULT '0',
  85. `private` tinyint(1) NOT NULL,
  86. `cluster` tinyint(1) NOT NULL,
  87. `analysis` tinyint(4) NOT NULL,
  88. `communitie` tinyint(1) NOT NULL,
  89. `attribute_count` int(11) UNSIGNED DEFAULT NULL,
  90. `hop_count` int(11) UNSIGNED DEFAULT 0,
  91. PRIMARY KEY (`id`)
  92. ) ENGINE=MyISAM DEFAULT CHARSET=utf8 COLLATE=utf8_bin AUTO_INCREMENT=1 ;
  93. -- --------------------------------------------------------
  94. --
  95. -- Table structure for table `roles`
  96. --
  97. CREATE TABLE `roles` (
  98. `id` int(11) NOT NULL AUTO_INCREMENT,
  99. `name` varchar(100) COLLATE utf8_bin NOT NULL,
  100. `created` datetime NOT NULL,
  101. `modified` datetime NOT NULL,
  102. `perm_add` tinyint(1) NOT NULL,
  103. `perm_modify` tinyint(1) NOT NULL,
  104. `perm_modify_org` tinyint(1) NOT NULL,
  105. `perm_publish` tinyint(1) NOT NULL,
  106. `perm_sync` tinyint(1) NOT NULL,
  107. `perm_full` tinyint(1) NOT NULL,
  108. `perm_auth` tinyint(1) NOT NULL,
  109. PRIMARY KEY (`id`)
  110. ) ENGINE=MyISAM DEFAULT CHARSET=utf8 COLLATE=utf8_bin AUTO_INCREMENT=1 ;
  111. -- --------------------------------------------------------
  112. --
  113. -- Table structure for table `logs`
  114. --
  115. CREATE TABLE `logs` (
  116. `id` int(11) NOT NULL AUTO_INCREMENT,
  117. `title` varchar(255) COLLATE utf8_bin NOT NULL,
  118. `created` datetime NOT NULL,
  119. `model` varchar(20) COLLATE utf8_bin NOT NULL,
  120. `model_id` int(11) NOT NULL,
  121. `action` varchar(20) COLLATE utf8_bin NOT NULL,
  122. `user_id` int(11) NOT NULL,
  123. `change` varchar(255) COLLATE utf8_bin,
  124. `email` varchar(255) COLLATE utf8_bin NOT NULL,
  125. `org` varchar(255) COLLATE utf8_bin NOT NULL,
  126. `description` varchar(255) COLLATE utf8_bin NOT NULL,
  127. PRIMARY KEY (`id`)
  128. ) ENGINE=MyISAM DEFAULT CHARSET=utf8 COLLATE=utf8_bin AUTO_INCREMENT=1 ;
  129. -- --------------------------------------------------------
  130. --
  131. -- Table structure for table `regexp`
  132. --
  133. CREATE TABLE `regexp` (
  134. `id` int(11) NOT NULL AUTO_INCREMENT,
  135. `regexp` varchar(255) COLLATE utf8_bin NOT NULL,
  136. `replacement` varchar(255) COLLATE utf8_bin NOT NULL,
  137. PRIMARY KEY (`id`)
  138. ) ENGINE=MyISAM AUTO_INCREMENT=16 DEFAULT CHARSET=utf8 COLLATE=utf8_bin;
  139. -- --------------------------------------------------------
  140. --
  141. -- Table structure for table `servers`
  142. --
  143. CREATE TABLE `servers` (
  144. `id` int(11) NOT NULL AUTO_INCREMENT,
  145. `url` varchar(255) COLLATE utf8_bin NOT NULL,
  146. `authkey` varchar(40) COLLATE utf8_bin NOT NULL,
  147. `org` varchar(255) COLLATE utf8_bin NOT NULL,
  148. `organization` varchar(10) COLLATE utf8_bin NOT NULL,
  149. `push` tinyint(1) NOT NULL,
  150. `pull` tinyint(1) NOT NULL,
  151. `lastpushedid` int(11) NOT NULL,
  152. `lastpulledid` int(11) NOT NULL,
  153. PRIMARY KEY (`id`)
  154. ) ENGINE=MyISAM DEFAULT CHARSET=utf8 COLLATE=utf8_bin AUTO_INCREMENT=1 ;
  155. -- --------------------------------------------------------
  156. --
  157. -- Table structure for table `users`
  158. --
  159. CREATE TABLE `users` (
  160. `id` int(11) NOT NULL AUTO_INCREMENT,
  161. `password` varchar(40) COLLATE utf8_bin NOT NULL,
  162. `org` varchar(255) COLLATE utf8_bin NOT NULL,
  163. `email` varchar(255) COLLATE utf8_bin NOT NULL,
  164. `autoalert` tinyint(1) NOT NULL,
  165. `authkey` varchar(40) COLLATE utf8_bin NOT NULL,
  166. `invited_by` int(11) NOT NULL,
  167. `gpgkey` longtext COLLATE utf8_bin NOT NULL,
  168. `nids_sid` int(15) NOT NULL,
  169. `termsaccepted` tinyint(1) NOT NULL,
  170. `change_pw` tinyint(1) NOT NULL,
  171. `newsread` date NOT NULL,
  172. `role_id` int(11) NOT NULL,
  173. PRIMARY KEY (`id`),
  174. KEY `email` (`email`)
  175. ) ENGINE=MyISAM DEFAULT CHARSET=utf8 COLLATE=utf8_bin AUTO_INCREMENT=2 ;
  176. -- --------------------------------------------------------
  177. --
  178. -- Table structure for table `whitelist`
  179. --
  180. CREATE TABLE `whitelist` (
  181. `id` int(11) NOT NULL AUTO_INCREMENT,
  182. `name` varchar(254) NOT NULL,
  183. PRIMARY KEY (`id`)
  184. ) ENGINE=MyISAM DEFAULT CHARSET=utf8 COLLATE=utf8_bin AUTO_INCREMENT=1 ;
  185. --
  186. -- Dumping data for table `attributes`
  187. --
  188. -- Dumping data for table `users`
  189. --
  190. INSERT INTO `users` (`id`, `password`, `org`, `email`, `autoalert`, `authkey`, `invited_by`, `gpgkey`, `nids_sid`, `termsaccepted`, `newsread`, `role_id`) VALUES(1, 'babc86e0869015b3f0b4d48ca48700d3a9d1b9d7', 'ADMIN', 'admin@admin.test', 0, 'vlf4o42bYSVVWLm28jLB85my4HBZWXTri8vGdySb', 1, '', 4000000, 0, '2012-03-13', '');
  191. INSERT INTO `regexp` (`id`, `regexp`, `replacement`) VALUES (1,'/C:.Users.(\\w+).AppData.Local.Temp./','%TEMP%\\\\'),(3,'/C:.Users.(\\w+).AppData.Local./','%LOCALAPPDATA%\\\\'),(4,'/C:.Users.(\\w+).AppData.Roaming./','%APPDATA%\\\\'),(5,'/C:.Users.(\\w+)./','%UserProfile%\\\\'),(6,'/C:.Documents and Settings.(\\w+) (\\w+)./','%UserProfile%\\\\'),(7,'/C:.DOCUME~1.(\\w+)./','%UserProfile%\\\\'),(8,'/C:.Documents and Settings.All Users/','%AllUsersProfile%'),(9,'/.REGISTRY.USER.S(-[0-9]{1}){2}-[0-9]{2}(-[0-9]{9}){1}(-[0-9]{10}){1}-[0-9]{9}-[0-9]{4}/','HKCU'),(10,'@.REGISTRY.USER.S(-[0-9]{1}){2}-[0-9]{2}(-[0-9]{10}){2}-[0-9]{9}-[0-9]{4}@','HKCU'),(11,'@.REGISTRY.USER.S(-[0-9]{1}){2}-[0-9]{2}(-[0-9]{10}){3}-[0-9]{4}@','HKCU'),(13,'@.REGISTRY.MACHINE.@','HKLM\\\\'),(14,'@.Registry.Machine.@','HKLM\\\\'),(15,'','not allowed'),(16,'/not allowed/',''),(26,'/%AppData\\\\\\\\/','%AppData%'),(27,'/%APPDATA%/','%AppData%'),(20,'','replacements to uniform the data'),(25,'/%allusers%/','%AllUsers%'),(28,'/%APPDATA%/','%AppData%'),(29,'/%LocalSettings&\\\\\\\\/','%LocalSettings%'),(30,'/%Programfiles%/','%ProgramFiles%'),(31,'/%systemroot%/','%SystemRoot%'),(32,'/%Temp\\\\\\\\/','%TEMP%'),(33,'/%Temp%/','%TEMP%'),(34,'/%temp%/','%TEMP%'),(35,'/%UserProfile\\\\\\\\/','%UserProfile%'),(36,'/%userprofile%/','%UserProfile%'),(37,'/%Windir%/','%windir%'),(38,'/%WINDIR%/','%windir%');