February 03, 2012, 09:13:08 pm
Maltego Forum

Username
Password

Pages: [1]
Print
Author Topic: Integrating with MALTAS  (Read 10099 times)
AndrewMacPherson
Administrator
Full Member
*****
Posts: 132


« on: December 01, 2008, 06:31:38 am »

Hi

The MALTAS is a public (and free) Transform Application Server that integrates with the MalwareDomainList.com DB. This allows for you to quickly and easily identify relationships between Malware related domains featured on the MalwareDomainList.com website.

You can view all of the available transforms here:
http://www.paterva.com/maltego/maltego-server/modules/maltas-module/

To integrate with this Transform Application Server go to Tools -> Manage transforms and click on Discover Transforms.You can now add a new discovery server with name "MALTAS" and URL http://ctas.paterva.com/MALTAS.xml From there - just click on Next->Next->Next..etc

When you are done you should see 15 transforms discovered. These should be ready to rock and roll. The transforms do SQL queries to the Malwaredomainlist.com database. Most of them are built using ''''like'''' SQL statements. So if you want to see all domains listed on the database in the co.uk domain you can just drag a domain over from the palette to the main graph, edit it to say ''''co.uk'''', right click, find the relevant MALTAS transform and fire away. Same goes for registrant info, etc.

-AM and RT
« Last Edit: December 01, 2008, 06:31:58 am by AndrewMohawk » Logged
AndrewMacPherson
Administrator
Full Member
*****
Posts: 132


« Reply #1 on: December 01, 2008, 06:45:37 am »

For some sample graphs and other you can also check out the original post on the MalwareDomainList forums:

http://www.malwaredomainlist.com/forums/index.php?topic=1938.0

-AM
Logged
Pages: [1]
Print
Jump to: