mirror of https://github.com/MISP/PyMISP
1.4 KiB
1.4 KiB
Explanation
-
treemap.py is a script that will generate an interactive svg (attribute_treemap.svg) containing a treepmap representing the distribution of attributes in a sample (data) fetched from the instance using "last" or "searchall" examples.
-
It will also generate a html document with a table (attribute_table.html) containing count for each type of attribute.
-
test_attribute_treemap.html is a quick page made to visualize both treemap and table at the same time.
-
tags_count.py is a script that count the number of occurences of every tags in a fetched sample of Events in a given period of time.
-
tag_search.py is a script that count the number of occurences of a given tag in a fetched sample of Events in a given period of time.
- Events will be fetched from days days ago to today.
- begindate is the beginning of the studied period. If it is later than today, an error will be raised.
- enddate is the end of the studied period. If it is earlier than begindate, an error will be raised.
- tag_search.py allows research for multiple tags is possible by separating each tag by the | symbol.
- Partial research is also possible with tag_search.py. For instance, search for "ransom" will also return tags containin "ransomware". ⚠️ These scripts are not time optimised