Skip to content

Commit 79a08bd

Browse files
committed
added new nerd and dshield analyzers
1 parent f6ddc19 commit 79a08bd

File tree

1 file changed

+2
-0
lines changed

1 file changed

+2
-0
lines changed

docs/IntelOwl/usage.md

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -173,6 +173,7 @@ The following is the list of the available analyzers you can run out-of-the-box.
173173
- `DNS0_EU`: Retrieve current domain resolution with DNS0.eu DoH (DNS over HTTPS)
174174
- `DNS0_EU_Malicious_Detector`: Check if a domain or an url is marked as malicious in DNS0.eu database ([Zero](https://www.dns0.eu/zero) service)
175175
- `DocGuard_Get`: check if an hash was analyzed on DocGuard. [DocGuard](https://www.docguard.io)
176+
- `DShield`: Service Provided by [DShield](https://www.dshield.org/) to get useful information about IP addresses
176177
- `Feodo_Tracker`: [Feodo Tracker](https://feodotracker.abuse.ch/) offers various blocklists, helping network owners to protect their users from Dridex and Emotet/Heodo.
177178
- `FileScan_Search`: Finds reports and uploaded files by various tokens, like hash, filename, verdict, IOCs etc via [FileScan.io API](https://www.filescan.io/api/docs).
178179
- `FireHol_IPList`: check if an IP is in [FireHol's IPList](https://iplists.firehol.org/)
@@ -208,6 +209,7 @@ The following is the list of the available analyzers you can run out-of-the-box.
208209
- `Mnemonic_PassiveDNS` : Look up a domain or IP using the [Mnemonic PassiveDNS public API](https://docs.mnemonic.no/display/public/API/Passive+DNS+Overview).
209210
- `MWDB_Get`: [mwdblib](https://mwdb.readthedocs.io/en/latest/) Retrieve malware file analysis by hash from repository maintained by CERT Polska MWDB.
210211
- `Netlas`: search an IP against [Netlas](https://netlas.io/api)
212+
- `NERD_analyzer`: scan an IP address against [NERD](https://nerd.cesnet.cz/) database
211213
- `ONYPHE`: search an observable in [ONYPHE](https://www.onyphe.io/)
212214
- `OpenCTI`: scan an observable on an [OpenCTI](https://github.com/OpenCTI-Platform/opencti) instance
213215
- `OTXQuery`: scan an observable on [Alienvault OTX](https://otx.alienvault.com/)

0 commit comments

Comments
 (0)