NetWitness
  • Home
  • Integrations
    • Netwitness Platform Integrations
    • Third Party Integrations
  • Knowledge Center
  • Community
    • Blogs
    • Discussions
  • Customers
    • Manage Products and Licenses
    • Downloads
  • Partners
    • Partner Program
    • Partner Resources
    • Submit a New Deal Registration
    • Become a Partner
    • Update Your Partner Locator Profile
    • NetWitness LinkedIn Partner Hub
  • Education
    • Instructor Led Training Schedule
    • NetWitness Training Catalog
    • Security Awareness Training
    • New Product Readiness
    • On-Demand Virtual Labs
    • Additional Training Information
    • Frequently Asked Questions
    • Contact NetWitness Education Team
  • Support
    • Contact Support
    • Create a New Case
    • View My Cases
    • Product Version Life Cycle
    • Warranty & Replacement Parts
    • Community Support Forum
    • Technical Support Guide

EricPartington

  • Home
  • /
  • Netwitness blogs
  • /
  • Ericpartington

Script - Sinkhole communication feed

April 17, 2017
This script grabs the sinkhole_*.txt files from the Maltrail GitHub page and creates a single csv...
Read More

Log your Bash history ?

April 12, 2017
Based on some recent events related to Equation Group, logging commandline history became a more...
Read More

Reporting on IMDB

April 6, 2017
Recently RSA NetWitness (NW) added the ability to report on the IMDB component of the platform....
Read More

Script - NwConsole whatiswrong

February 3, 2017
One of my favorite troubleshooting commands as well as a method to archive and export configuration...
Read More

Logs - Collecting Windows Events with WEC

January 30, 2017
A customer had asked me if it was possible to collect logs centrally using WEC (Windows Event...
Read More

Logs - New Windows Security Event ID's

January 27, 2017
Looks like Windows 10 has introduced some new Security event ID's as well as modified the content...
Read More

Context Menu - VirusTotal Hash Lookup

January 16, 2017
Lets say you have NetWitness packet capture and you are at the point where you have located a...
Read More

How to upload a .feed file with NwConsole

January 9, 2017
Some threat data vendors provide a compiled .feed file as a potential output for use with RSA...
Read More

Context Menu - Investigate IP from DNS

January 3, 2017
This context menu allows a right click pivot from DNS traffic (alias.ip) to any equivalent HTTP...
Read More

Malware - Spectrum - What's involved...

December 23, 2016
This might help illustrate all the components and levers in place to make Malware/Spectrum function...
Read More
1 2 3 4
Looking for a 100% quality and affordable constructor for your project?
Get A Quote
NetWitness Platform
Acceptable Use Policy Privacy Statement
NetWitness Logo
LinkedIn YouTube
© 2026 NetWitness LLC. All rights reserved.