From d622fa0c433633bc927c766d96463aff5741817d Mon Sep 17 00:00:00 2001 From: Jerome Leonard Date: Tue, 11 Jul 2017 18:00:19 +0200 Subject: [PATCH] #50 #23 add long report for URL analysis + wording submitted by @garanews --- .../long.html | 6 +- .../CuckooSandbox_Url_Analysis_1_0/long.html | 148 ++++++++++++++++++ 2 files changed, 151 insertions(+), 3 deletions(-) create mode 100644 thehive-templates/CuckooSandbox_Url_Analysis_1_0/long.html diff --git a/thehive-templates/CuckooSandbox_File_Analysis_Inet_1_0/long.html b/thehive-templates/CuckooSandbox_File_Analysis_Inet_1_0/long.html index c981893a0..9852a13f4 100644 --- a/thehive-templates/CuckooSandbox_File_Analysis_Inet_1_0/long.html +++ b/thehive-templates/CuckooSandbox_File_Analysis_Inet_1_0/long.html @@ -21,7 +21,7 @@

File information

Malfamily
{{content.malfamily}}
-
+
Malscore
@@ -125,7 +125,7 @@

Yara

Suricata Alerts


-
+
{{ suri }}
@@ -145,4 +145,4 @@

Suricata Alerts

{{content.errorMessage}}
- \ No newline at end of file + diff --git a/thehive-templates/CuckooSandbox_Url_Analysis_1_0/long.html b/thehive-templates/CuckooSandbox_Url_Analysis_1_0/long.html new file mode 100644 index 000000000..9852a13f4 --- /dev/null +++ b/thehive-templates/CuckooSandbox_Url_Analysis_1_0/long.html @@ -0,0 +1,148 @@ +
+ + +
+
+ General Information +
+
+ +

File information

+
+
+
FileType
+
{{content.file_type}}
+
+ +
+
Malfamily
+
{{content.malfamily}}
+
+ +
+
Malscore
+
+ + {{content.malscore}} + +
+
+
+
+ +
+
+ Analysis +
+
+ +
+

Signatures

+
+
+
{{ signature }}
+
+
+
+ No suspicious signature reported +
+
+
+ +
+
+ Analysis +
+
+ +
+

Remote connections

+
+
+ + + + + + + + + + + +
DomainIPLocation
{{host[1]}}{{host[0]}}{{host[2]}}
+
+
+ +
+
+
+ +
+

URI

+
+
+
{{ uri }}
+
+
+
+ No suspicious uri reported +
+ +
+
+ +
+
+ Yara +
+
+ +
+

Yara

+
+
+
{{ yara }}
+
+
+
+ No suspicious activity reported +
+ +
+
+ +
+
+ Suricata +
+
+ +
+

Suricata Alerts

+
+
+
{{ suri }}
+
+
+
+ No suspicious suricata alerts reported +
+
+
+
+ + + +
+
+ {{(artifact.data || artifact.attachment.name) | fang}} +
+
+ {{content.errorMessage}} +
+