CTX

Download 1
Last updated Jul 3, 2024

ctx-get-file-relations

Get file relations from CTX service.

ctx-get-file-relations [profile=PROFILE] hash=HASH
profile=PROFILE
Profile name of CTX
hash=HASH
MD5, SHA1 or SHA256

Output Fields

FieldTypeNameDescription
profileStringConnect profileThe identifier of CTX connect profile
ioc_typeStringIoC typee.g. hash, ip, domain, url
relationStringRelatione.g. execute_processes, reverse_execute_processes, downloaded_files, reverse_downloaded_files, dropped_files, contacted_ips, contacted_domains, contacted_urls
verdictStringVerdicte.g. MALICIOUS, BENIGN
md5StringMD5e.g. bd96e11f157a19d969bf585811e434cf
sha1StringSHA1e.g. 603be792ab700278a278d3388cb124b6349b1fa4
sha256StringSHA256e.g. a7e31abe10be6bca44f0a846d631e578efe78c14f6bf1cf834cfb15469fc1d3a
file_typeStringFile typee.g. txt, hlp, exe_32bit, exe_64bit
file_sizeLongFile sizee.g. 439808
signatureStringSignaturee.g. exe.trojan.apost
ipIP addressIP addresse.g. 192.124.249.24
first_seenDateFirst seen
last_seenDateLast seen
domainStringDomain
urlStringURL