IRP Playbooks
  • Initial page
  • Output Types
    • Number (Num)
    • Arrays
    • Objects
    • HR (Human Readable)
  • Components
    • Notifications
      • Send SMS
    • Start Playbook (Required)
      • Incident
    • Investigation
      • SearchEvents
      • SearchLogs
      • SearchWatchList
      • SearchIncidentData
    • Incident Response
      • AbuseEmail
    • Mange Incident
      • AddNote
      • Resolve
      • Escalate
      • AddToWatchList
    • Enrichements
      • Virustotal
      • ThreatIntel
      • WhoisURL
      • GeoIP
      • DomainAvailability
    • Filters
      • Each
    • Controls
      • PublicIp
  • Version
    • Changelog
Powered by GitBook
On this page
  • Inputs
  • Outputs
  1. Components
  2. Investigation

SearchWatchList

PreviousSearchLogsNextSearchIncidentData

Last updated 4 years ago

Inputs

  • query

Outputs

Total Results

The total number of results that match with the query

Watch List Results

[
    {
        "id": "vEIhynABwNtBtRIXXfQJ",
        "watch_list_value": "afalegkos",
        "watch_list_field": "username",
        "watch_list_score": 484,
        "watch_list_last_score": 481,
        "user_id": "2",
        "user_name": null,
        "status": true,
        "status_stamp": "2020-03-11T15:05:48.000+00:00",
        "created_at": "2020-03-11T15:05:48.000+00:00",
        "updated_at": "2020-10-13T14:04:41.000+00:00"
    },
    {
        "id": "Pg74r3ABwNtBtRIXTW_W",
        "watch_list_value": "odoo",
        "watch_list_field": "username",
        "watch_list_score": 483,
        "watch_list_last_score": 480,
        "user_id": "1",
        "user_name": null,
        "status": true,
        "status_stamp": "2020-03-06T13:10:50.000+00:00",
        "created_at": "2020-03-06T13:10:50.000+00:00",
        "updated_at": "2020-10-13T14:04:41.000+00:00"
    }
]

Total Score

The accumulated score from the results. * The score number indicates the frequency of the value (watch_list_value) that appeared in the logs/events.

Total Results
Watch List Results (Array)
Total Score