chg: [objects] updated to the latest version

pull/8/head
Alexandre Dulaunoy 2019-01-03 15:23:52 +01:00
parent 9f0fd207f2
commit ff903823b3
No known key found for this signature in database
GPG Key ID: 09E2CD4944E6CBCD
2 changed files with 32900 additions and 30097 deletions

View File

@ -528,6 +528,7 @@ body.book #toc,body.book #preamble,body.book h1.sect0,body.book .sect1>h2{page-b
<li><a href="#_regripper_system_hive_network_information">regripper-system-hive-network-information.</a></li> <li><a href="#_regripper_system_hive_network_information">regripper-system-hive-network-information.</a></li>
<li><a href="#_regripper_system_hive_services_drivers">regripper-system-hive-services-drivers</a></li> <li><a href="#_regripper_system_hive_services_drivers">regripper-system-hive-services-drivers</a></li>
<li><a href="#_report">report</a></li> <li><a href="#_report">report</a></li>
<li><a href="#_research_scanner">research-scanner</a></li>
<li><a href="#_rtir">rtir</a></li> <li><a href="#_rtir">rtir</a></li>
<li><a href="#_sandbox_report">sandbox-report</a></li> <li><a href="#_sandbox_report">sandbox-report</a></li>
<li><a href="#_sb_signature">sb-signature</a></li> <li><a href="#_sb_signature">sb-signature</a></li>
@ -14775,6 +14776,163 @@ report is a MISP object available in JSON format at <a href="https://github.com/
</div> </div>
</div> </div>
<div class="sect1"> <div class="sect1">
<h2 id="_research_scanner"><a class="anchor" href="#_research_scanner"></a><a class="link" href="#_research_scanner">research-scanner</a></h2>
<div class="sectionbody">
<div class="paragraph">
<p>Information related to known scanning activity (e.g. from research projects).</p>
</div>
<div class="admonitionblock note">
<table>
<tr>
<td class="icon">
<i class="fa icon-note" title="Note"></i>
</td>
<td class="content">
research-scanner is a MISP object available in JSON format at <a href="https://github.com/MISP/misp-objects/blob/master/objects/research-scanner/definition.json"><strong>this location</strong></a> The JSON format can be freely reused in your application or automatically enabled in <a href="https://www.github.com/MISP/MISP">MISP</a>.
</td>
</tr>
</table>
</div>
<table class="tableblock frame-all grid-all stretch">
<colgroup>
<col style="width: 20%;">
<col style="width: 20%;">
<col style="width: 20%;">
<col style="width: 20%;">
<col style="width: 20%;">
</colgroup>
<thead>
<tr>
<th class="tableblock halign-left valign-top">Object attribute</th>
<th class="tableblock halign-left valign-top">MISP attribute type</th>
<th class="tableblock halign-left valign-top">Description</th>
<th class="tableblock halign-left valign-top">Disable correlation</th>
<th class="tableblock halign-left valign-top">Multiple</th>
</tr>
</thead>
<tbody>
<tr>
<td class="tableblock halign-left valign-top"><p class="tableblock">project</p></td>
<td class="tableblock halign-left valign-top"><p class="tableblock">text</p></td>
<td class="tableblock halign-left valign-top"><div class="content"><div class="paragraph">
<p>Description of scanning project</p>
</div></div></td>
<td class="tableblock halign-left valign-top"><div class="content"><div class="paragraph">
<p><span class="icon"><i class="fa fa-check"></i></span></p>
</div></div></td>
<td class="tableblock halign-left valign-top"><div class="content"><div class="paragraph">
<p><span class="icon"><i class="fa fa-minus"></i></span></p>
</div></div></td>
</tr>
<tr>
<td class="tableblock halign-left valign-top"><p class="tableblock">scanning_ip</p></td>
<td class="tableblock halign-left valign-top"><p class="tableblock">ip-src</p></td>
<td class="tableblock halign-left valign-top"><div class="content"><div class="paragraph">
<p>IP address used by project</p>
</div></div></td>
<td class="tableblock halign-left valign-top"><div class="content"><div class="paragraph">
<p><span class="icon"><i class="fa fa-minus"></i></span></p>
</div></div></td>
<td class="tableblock halign-left valign-top"><div class="content"><div class="paragraph">
<p><span class="icon"><i class="fa fa-check"></i></span></p>
</div></div></td>
</tr>
<tr>
<td class="tableblock halign-left valign-top"><p class="tableblock">domain</p></td>
<td class="tableblock halign-left valign-top"><p class="tableblock">domain</p></td>
<td class="tableblock halign-left valign-top"><div class="content"><div class="paragraph">
<p>Domain related to project</p>
</div></div></td>
<td class="tableblock halign-left valign-top"><div class="content"><div class="paragraph">
<p><span class="icon"><i class="fa fa-minus"></i></span></p>
</div></div></td>
<td class="tableblock halign-left valign-top"><div class="content"><div class="paragraph">
<p><span class="icon"><i class="fa fa-check"></i></span></p>
</div></div></td>
</tr>
<tr>
<td class="tableblock halign-left valign-top"><p class="tableblock">asn</p></td>
<td class="tableblock halign-left valign-top"><p class="tableblock">AS</p></td>
<td class="tableblock halign-left valign-top"><div class="content"><div class="paragraph">
<p>Autonomous System Number related to project</p>
</div></div></td>
<td class="tableblock halign-left valign-top"><div class="content"><div class="paragraph">
<p><span class="icon"><i class="fa fa-check"></i></span></p>
</div></div></td>
<td class="tableblock halign-left valign-top"><div class="content"><div class="paragraph">
<p><span class="icon"><i class="fa fa-minus"></i></span></p>
</div></div></td>
</tr>
<tr>
<td class="tableblock halign-left valign-top"><p class="tableblock">scheduled_start</p></td>
<td class="tableblock halign-left valign-top"><p class="tableblock">datetime</p></td>
<td class="tableblock halign-left valign-top"><div class="content"><div class="paragraph">
<p>Scheduled start of scanning activity</p>
</div></div></td>
<td class="tableblock halign-left valign-top"><div class="content"><div class="paragraph">
<p><span class="icon"><i class="fa fa-check"></i></span></p>
</div></div></td>
<td class="tableblock halign-left valign-top"><div class="content"><div class="paragraph">
<p><span class="icon"><i class="fa fa-check"></i></span></p>
</div></div></td>
</tr>
<tr>
<td class="tableblock halign-left valign-top"><p class="tableblock">scheduled_end</p></td>
<td class="tableblock halign-left valign-top"><p class="tableblock">datetime</p></td>
<td class="tableblock halign-left valign-top"><div class="content"><div class="paragraph">
<p>Scheduled end of scanning activity</p>
</div></div></td>
<td class="tableblock halign-left valign-top"><div class="content"><div class="paragraph">
<p><span class="icon"><i class="fa fa-check"></i></span></p>
</div></div></td>
<td class="tableblock halign-left valign-top"><div class="content"><div class="paragraph">
<p><span class="icon"><i class="fa fa-check"></i></span></p>
</div></div></td>
</tr>
<tr>
<td class="tableblock halign-left valign-top"><p class="tableblock">contact_email</p></td>
<td class="tableblock halign-left valign-top"><p class="tableblock">email-dst</p></td>
<td class="tableblock halign-left valign-top"><div class="content"><div class="paragraph">
<p>Project contact information</p>
</div></div></td>
<td class="tableblock halign-left valign-top"><div class="content"><div class="paragraph">
<p><span class="icon"><i class="fa fa-check"></i></span></p>
</div></div></td>
<td class="tableblock halign-left valign-top"><div class="content"><div class="paragraph">
<p><span class="icon"><i class="fa fa-check"></i></span></p>
</div></div></td>
</tr>
<tr>
<td class="tableblock halign-left valign-top"><p class="tableblock">contact_phone</p></td>
<td class="tableblock halign-left valign-top"><p class="tableblock">phone-number</p></td>
<td class="tableblock halign-left valign-top"><div class="content"><div class="paragraph">
<p>Phone number related to project</p>
</div></div></td>
<td class="tableblock halign-left valign-top"><div class="content"><div class="paragraph">
<p><span class="icon"><i class="fa fa-check"></i></span></p>
</div></div></td>
<td class="tableblock halign-left valign-top"><div class="content"><div class="paragraph">
<p><span class="icon"><i class="fa fa-check"></i></span></p>
</div></div></td>
</tr>
<tr>
<td class="tableblock halign-left valign-top"><p class="tableblock">project_url</p></td>
<td class="tableblock halign-left valign-top"><p class="tableblock">link</p></td>
<td class="tableblock halign-left valign-top"><div class="content"><div class="paragraph">
<p>URL related to project</p>
</div></div></td>
<td class="tableblock halign-left valign-top"><div class="content"><div class="paragraph">
<p><span class="icon"><i class="fa fa-check"></i></span></p>
</div></div></td>
<td class="tableblock halign-left valign-top"><div class="content"><div class="paragraph">
<p><span class="icon"><i class="fa fa-check"></i></span></p>
</div></div></td>
</tr>
</tbody>
</table>
</div>
</div>
<div class="sect1">
<h2 id="_rtir"><a class="anchor" href="#_rtir"></a><a class="link" href="#_rtir">rtir</a></h2> <h2 id="_rtir"><a class="anchor" href="#_rtir"></a><a class="link" href="#_rtir">rtir</a></h2>
<div class="sectionbody"> <div class="sectionbody">
<div class="paragraph"> <div class="paragraph">
@ -19392,7 +19550,7 @@ yara is a MISP object available in JSON format at <a href="https://github.com/MI
</div> </div>
<div id="footer"> <div id="footer">
<div id="footer-text"> <div id="footer-text">
Last updated 2018-12-30 13:18:14 CET Last updated 2019-01-03 15:22:51 CET
</div> </div>
</div> </div>
</body> </body>

62837
objects.pdf

File diff suppressed because it is too large Load Diff