
Jun 21, 2023
1.0.0
ThreatQ versions >= 4.45.0
VirusTotal Retrohunt CDF
Overview
The VirusTotal Retrohunt Feed fetches data related to signatures that have been pushed to VirusTotal Retrohunt via the Virtus Total Retrohunt operation.
The integration provides the following feeds:
- VirusTotal Retrohunt - fetches Retrohunt jobs pushed by the operation.
- VirusTotal Retrohunt Details (supplemental) - retrieves matching data for a Retrohunt job.
The integration ingests the following system objects:
- Signatures
- Signature Attributes
- Signature Tags
- Malware
- Malware Attributes
Note: This CDF must be used in together with the VirusTotal Retrohunt Operation. The operation will push YARA Signatures into VirusTotal Retrohunt and the feed will fetch data related to each pushed Signature.