diff --git a/results/46173adc26721fb54f6e1a1091a892d4_depth_3_201907171121.json b/results/46173adc26721fb54f6e1a1091a892d4_depth_3_201907171121.json new file mode 100644 index 0000000..66773b3 --- /dev/null +++ b/results/46173adc26721fb54f6e1a1091a892d4_depth_3_201907171121.json @@ -0,0 +1,172 @@ +{ + "id": "46173adc26721fb54f6e1a1091a892d4", + "type": "file", + "children": [ + { + "id": "79.124.60.40", + "type": "ip_address", + "relation": "QAX: file to contacted ip" + }, + { + "id": "smartweb9.com", + "type": "domain", + "relation": "QAX: file to contacted domain", + "children": [ + { + "id": "79.124.60.40", + "type": "ip_address", + "relation": "QAX: domain to resolution ip" + }, + { + "id": "198.54.117.244", + "type": "ip_address", + "relation": "QAX: domain to resolution ip" + }, + { + "id": "7f283bb7679949d2bdacd6e1d582ddd0.protect@whoisguard.com", + "type": "email", + "relation": "QAX: domain to whois email", + "children": [ + { + "id": "smartweb9.com", + "type": "domain", + "relation": "QAX: Whois email to domain" + } + ] + }, + { + "id": "79.124.60.40", + "type": "ip_address", + "relation": "VT: domain to resolution ip" + }, + { + "id": "198.54.117.244", + "type": "ip_address", + "relation": "VT: domain to resolution ip" + } + ] + }, + { + "id": "198.54.117.244", + "type": "ip_address", + "relation": "VT: file to contacted ip", + "children": [ + { + "id": "7921a6035cc8a0981a5dee737dd3d29b150ddd48407717d3fca4b6376f2b0e70", + "type": "file", + "relation": "VT: IP to downloaded file", + "children": [ + { + "id": "be8b49e1cd6d568e4fea1df4b9ad6e99d83d8ac47cfd07b5855735e9a283e94e", + "type": "file", + "relation": "VT: file to execution parent" + } + ] + }, + { + "id": "e0e9d15d594c80f0f0a76a38953ce2d3cb140155825a648f3aa2d30f25ec61bf", + "type": "file", + "relation": "VT: IP to downloaded file", + "children": [ + { + "id": "134.170.185.211", + "type": "ip_address", + "relation": "VT: file to contacted ip" + } + ] + }, + { + "id": "c3d584acd99412018465495a621887e4d607c624a64495e63ec88017105788ff", + "type": "file", + "relation": "VT: IP to downloaded file" + }, + { + "id": "9d04c80599f014cb52b9809e7b98f03878f256e306d1b26b5ae8347f55678c0f", + "type": "file", + "relation": "VT: IP to downloaded file" + }, + { + "id": "dd78bafb88a959c38416d8361048c3805bad6d07b340a25d2836c384b26c0a26", + "type": "file", + "relation": "VT: IP to downloaded file" + }, + { + "id": "d465172175d35d493fb1633e237700022bd849fa123164790b168b8318acb090", + "type": "file", + "relation": "VT: IP to downloaded file", + "children": [ + { + "id": "7db3588024f268116114ad53801cb41daaa4c22c984dc1ed93ad054f349e0550", + "type": "file", + "relation": "VT: file to execution parent" + }, + { + "id": "bca8f55d2b82962767c0ba2eeb55bc3d5706b427aa63718a033b8c604230c84c", + "type": "file", + "relation": "VT: file to execution parent" + }, + { + "id": "bb93442c20c387e4d235d705d5b7a2850a67cae86df451a603fa9c1bd3a30366", + "type": "file", + "relation": "VT: file to execution parent" + } + ] + }, + { + "id": "cab538fd1647961eb35348c1bd84e1fde389ad89672587d2fe3c007a0bc9e67f", + "type": "file", + "relation": "VT: IP to downloaded file", + "children": [ + { + "id": "6466726e1ffe0d52ec2c532937919fc2d367b531e732f22ab9d4007746410d0e", + "type": "file", + "relation": "VT: file to execution parent" + }, + { + "id": "41f0bd37e78641d5fe7a19f4d3b071ee5cbd4776ae413034c6bc02bb5063f3c6", + "type": "file", + "relation": "VT: file to execution parent" + } + ] + }, + { + "id": "92b80355721d862bbefa5692c656cc6dafc518651524dc9a68875f9b91effa8f", + "type": "file", + "relation": "VT: IP to downloaded file", + "children": [ + { + "id": "7c55fe9268d3cfa8ab57c4ac65c90bcef6c8d2baa75ac91a7208f3af4a40dd38", + "type": "file", + "relation": "VT: file to execution parent" + }, + { + "id": "460f4112083c5738e3a8e089afb99f54659c58c8794686cd566051bd2e91c0d9", + "type": "file", + "relation": "VT: file to execution parent" + } + ] + }, + { + "id": "41c7189d602cedc31b61c5aab0a8a5fab40bdd35770dc1b9fd8ec09f719e5298", + "type": "file", + "relation": "VT: IP to downloaded file" + }, + { + "id": "8f30c9591ebcc91228a3e9885e91617f8fd06c43be6cda5220553575e02f8732", + "type": "file", + "relation": "VT: IP to downloaded file" + } + ] + }, + { + "id": "79.124.60.40", + "type": "ip_address", + "relation": "VT: file to contacted ip" + }, + { + "id": "smartweb9.com", + "type": "domain", + "relation": "VT: file to contacted domain" + } + ] +} \ No newline at end of file diff --git a/results/46173adc26721fb54f6e1a1091a892d4_depth_3_201907171121.txt b/results/46173adc26721fb54f6e1a1091a892d4_depth_3_201907171121.txt new file mode 100644 index 0000000..182ad24 --- /dev/null +++ b/results/46173adc26721fb54f6e1a1091a892d4_depth_3_201907171121.txt @@ -0,0 +1,31 @@ +AnyNode(id='46173adc26721fb54f6e1a1091a892d4', type='file') +├── AnyNode(id='79.124.60.40', relation='QAX: file to contacted ip', type='ip_address') +├── AnyNode(id='smartweb9.com', relation='QAX: file to contacted domain', type='domain') +│ ├── AnyNode(id='79.124.60.40', relation='QAX: domain to resolution ip', type='ip_address') +│ ├── AnyNode(id='198.54.117.244', relation='QAX: domain to resolution ip', type='ip_address') +│ ├── AnyNode(id='7f283bb7679949d2bdacd6e1d582ddd0.protect@whoisguard.com', relation='QAX: domain to whois email', type='email') +│ │ └── AnyNode(id='smartweb9.com', relation='QAX: Whois email to domain', type='domain') +│ ├── AnyNode(id='79.124.60.40', relation='VT: domain to resolution ip', type='ip_address') +│ └── AnyNode(id='198.54.117.244', relation='VT: domain to resolution ip', type='ip_address') +├── AnyNode(id='198.54.117.244', relation='VT: file to contacted ip', type='ip_address') +│ ├── AnyNode(id='7921a6035cc8a0981a5dee737dd3d29b150ddd48407717d3fca4b6376f2b0e70', relation='VT: IP to downloaded file', type='file') +│ │ └── AnyNode(id='be8b49e1cd6d568e4fea1df4b9ad6e99d83d8ac47cfd07b5855735e9a283e94e', relation='VT: file to execution parent', type='file') +│ ├── AnyNode(id='e0e9d15d594c80f0f0a76a38953ce2d3cb140155825a648f3aa2d30f25ec61bf', relation='VT: IP to downloaded file', type='file') +│ │ └── AnyNode(id='134.170.185.211', relation='VT: file to contacted ip', type='ip_address') +│ ├── AnyNode(id='c3d584acd99412018465495a621887e4d607c624a64495e63ec88017105788ff', relation='VT: IP to downloaded file', type='file') +│ ├── AnyNode(id='9d04c80599f014cb52b9809e7b98f03878f256e306d1b26b5ae8347f55678c0f', relation='VT: IP to downloaded file', type='file') +│ ├── AnyNode(id='dd78bafb88a959c38416d8361048c3805bad6d07b340a25d2836c384b26c0a26', relation='VT: IP to downloaded file', type='file') +│ ├── AnyNode(id='d465172175d35d493fb1633e237700022bd849fa123164790b168b8318acb090', relation='VT: IP to downloaded file', type='file') +│ │ ├── AnyNode(id='7db3588024f268116114ad53801cb41daaa4c22c984dc1ed93ad054f349e0550', relation='VT: file to execution parent', type='file') +│ │ ├── AnyNode(id='bca8f55d2b82962767c0ba2eeb55bc3d5706b427aa63718a033b8c604230c84c', relation='VT: file to execution parent', type='file') +│ │ └── AnyNode(id='bb93442c20c387e4d235d705d5b7a2850a67cae86df451a603fa9c1bd3a30366', relation='VT: file to execution parent', type='file') +│ ├── AnyNode(id='cab538fd1647961eb35348c1bd84e1fde389ad89672587d2fe3c007a0bc9e67f', relation='VT: IP to downloaded file', type='file') +│ │ ├── AnyNode(id='6466726e1ffe0d52ec2c532937919fc2d367b531e732f22ab9d4007746410d0e', relation='VT: file to execution parent', type='file') +│ │ └── AnyNode(id='41f0bd37e78641d5fe7a19f4d3b071ee5cbd4776ae413034c6bc02bb5063f3c6', relation='VT: file to execution parent', type='file') +│ ├── AnyNode(id='92b80355721d862bbefa5692c656cc6dafc518651524dc9a68875f9b91effa8f', relation='VT: IP to downloaded file', type='file') +│ │ ├── AnyNode(id='7c55fe9268d3cfa8ab57c4ac65c90bcef6c8d2baa75ac91a7208f3af4a40dd38', relation='VT: file to execution parent', type='file') +│ │ └── AnyNode(id='460f4112083c5738e3a8e089afb99f54659c58c8794686cd566051bd2e91c0d9', relation='VT: file to execution parent', type='file') +│ ├── AnyNode(id='41c7189d602cedc31b61c5aab0a8a5fab40bdd35770dc1b9fd8ec09f719e5298', relation='VT: IP to downloaded file', type='file') +│ └── AnyNode(id='8f30c9591ebcc91228a3e9885e91617f8fd06c43be6cda5220553575e02f8732', relation='VT: IP to downloaded file', type='file') +├── AnyNode(id='79.124.60.40', relation='VT: file to contacted ip', type='ip_address') +└── AnyNode(id='smartweb9.com', relation='VT: file to contacted domain', type='domain') \ No newline at end of file