dumprop

Results 74 issues of dumprop

![image](https://user-images.githubusercontent.com/34004367/130399636-5bb64ded-5912-4635-96ac-cb44fd84db7d.png) ![image](https://user-images.githubusercontent.com/34004367/130399860-9f0556f2-d7f2-4b44-a8c1-0b945a4b261d.png) Many tags have the same meaning, but have different spelling e.g. "64-bit" and "64bits" / "ddos_bot" and "ddosbot". Seems that it should be unified because it breaks export...

![image](https://user-images.githubusercontent.com/34004367/130399276-4fb289db-cb8e-4ffe-8ff4-c8d92e3ffeeb.png) In list seems ok ![image](https://user-images.githubusercontent.com/34004367/130399377-3aa92287-6de1-4cb6-8800-7b5637ad9b25.png) After 2 letters not ![image](https://user-images.githubusercontent.com/34004367/130399319-b2c5e16a-2ddb-4b11-8598-17fd584b1db7.png)

![image](https://user-images.githubusercontent.com/34004367/130398693-92757c46-3b22-40e6-bfb4-6603f206ad47.png) ![image](https://user-images.githubusercontent.com/34004367/130398796-e8e01add-e13f-4aa7-b472-8c6bafb3a7d0.png)

https://blocklist.greensnow.co/ Attacks / bruteforce that are monitored are: Scan Port, FTP, POP3, mod_security, IMAP, SMTP, SSH, cPanel ... Feed: https://blocklist.greensnow.co/greensnow.txt

http://charles.the-haleys.org/ "Many machines attack my personal server daily, doing a dictionary attack on the SSH port. A list of attacking machine IP addresses during the last 2 years sorted by...

https://www.spamhaus.org/drop/ The Spamhaus DROP (Don't Route Or Peer) lists are advisory "drop all traffic" lists, consisting of netblocks that are "hijacked" or leased by professional spam or cyber-crime operations (used...

https://iplists.firehol.org/?ipset=voipbl VoIPBL.org a distributed VoIP blacklist that is aimed to protects against VoIP Fraud and minimizing abuse for network that have publicly accessible PBX's. Several algorithms, external sources and manual...

In YETI already implemented feed for c2 servers from https://malwared.malwaremustdie.org/rss.php But they also have feed for binary (hash+malware name) on https://malwared.malwaremustdie.org/rss_bin.php and ssh honeypot on https://malwared.malwaremustdie.org/rss_ssh.php

http://security-research.dyndns.org/pub/malware-feeds/ http://security-research.dyndns.org/pub/malware-feeds/ponmocup-infected-domains-CIF-latest.txt

feed

BenkowTracker contains onion domains, which cant be added to yeti ![image](https://user-images.githubusercontent.com/34004367/98508059-d8dcdf00-226f-11eb-8fe7-3593825334ef.png) I found this issue on #558, but I still have this problem (installed from repo yeti 1.5.2, not docker),...