Recorded Future Domain Reputation
Domain reputation using Recorded Future SOAR enrichment
- Pack
- RecordedFuture
- Tasks
- 7
Inputs
- Domain — The domain name to get reputation of.
Outputs
- DBotScore.Indicator — The indicator that was tested
- DBotScore.Type — Indicator type
- DBotScore.Vendor — Vendor used to calculate the score
- DBotScore.Score — The actual score
- Domain.Malicious.Vendor — For malicious domains, the vendor that made the decision
- Domain.Malicious.Description — For malicious domains, the reason that the vendor made the decision
- Domain.Name — Domain name
- RecordedFuture.Domain.riskScore — Recorded Future Domain Risk Score
- RecordedFuture.Domain.riskLevel — Recorded Future Domain Risk Level
- RecordedFuture.Domain.Evidence.rule — Recorded Future Risk Rule Name
- RecordedFuture.Domain.Evidence.mitigation — Recorded Future Risk Rule Mitigation
- RecordedFuture.Domain.Evidence.description — Recorded Future Risk Rule description
- RecordedFuture.Domain.Evidence.timestamp — Recorded Future Risk Rule timestamp
- RecordedFuture.Domain.Evidence.level — Recorded Future Risk Rule Level
- RecordedFuture.Domain.Evidence.ruleid — Recorded Future Risk Rule ID
- RecordedFuture.Domain.name — Domain name
- RecordedFuture.Domain.maxRules — Maximum count of Recorded Future Domain Risk Rules
- RecordedFuture.Domain.ruleCount — Number of triggered Recorded Future Domain Risk Rules
Commands used
- domain
- setIndicator