urlscan.io
Use urlscan.io integration to perform scans on suspected URLs and see their reputation.
- Category
- Data Enrichment & Threat Intelligence
- Pack
- UrlScan
Configuration parameters
- creds_apikey —
- scan_visibility — Scan Visibility (required)
- integrationReliability — Source Reliability (required)
- country — Scan Country
- url_threshold — URL Threshold. Minimum number of positive results from urlscan.io to consider the URL malicious.
- useragent — User Agent
- create_relationships — Create relationships
- insecure — Trust any certificate (not secure)
- proxy — Use system proxy settings
- is_public — Enable public submissions by default.
- apikey — API Key (only required for scanning URLs)
Commands (7)
- url — Submits a URL to scan.
- urlscan-get-http-transaction-list — Returns the HTTP transaction list for the specified URL. Do not use this command in conjunction with the urlscan-get-http-transactions script.
- urlscan-get-result-page — Returns the results page for the specified UUID.
- urlscan-poll-uri — Polls the urlscan service regarding the results of the specified URI.
- urlscan-search — Search for an indicator that is related to former urlscan.io scans.
- urlscan-submit — Deprecated. Use the url command instead.
- urlscan-submit-url-command — Submits a URL to retrieve its UUID.