Getting Data In

Support for Custom Data Model

ez-secops-awn
Engager

I would greatly appreciate support for customer model as a correlation search option in the VT4splunk app.

Labels (1)
0 Karma

PrewinThomas
Motivator

@ez-secops-awn 

If you'd like to see native support for this feature, I recommend reaching out to VirusTotal directly by emailing contact@virustotal.com
You can also submit a feature request through their contact form to ensure it's considered through all available channels:
#https://www.virustotal.com/gui/contact-us/premium-services
Support contact details #https://docs.virustotal.com/docs/vt4splunk-guide

Regards,
Prewin
Splunk Enthusiast | Always happy to help! If this answer helped you, please consider marking it as the solution or giving a Karma. Thanks!

0 Karma

livehybrid
SplunkTrust
SplunkTrust

Hi @ez-secops-awn 

I would suggest reaching out directly to VirusTotal who created this app as they may be able to add it as a future feature request. Their contact details are contact@virustotal.com

🌟 Did this answer help you? If so, please consider:

  • Adding karma to show it was useful
  • Marking it as the solution if it resolved your issue
  • Commenting if you need any clarification

Your feedback encourages the volunteers in this community to continue contributing

ez-secops-awn
Engager

Thanks, that's helpful! I was hoping they would be watching here for their app being tagged.

0 Karma

PickleRick
SplunkTrust
SplunkTrust

What do you mean by that?

1. This is a third-party provided app so it's the creators who are capable of adding anything to its code.

2. As far as I can see, the app provides some custom search commands. What does it have to do (or what it should have to do) with data models?

3. What does it all have to do with correlation searches? You can use the app-provided commands in correlation searches. What more do you expect?

Tags (4)
0 Karma

ez-secops-awn
Engager

You are probably not aware but the flow from using the app to discussing issues leads here, to this forum. This is the workflow according to the prompts and ui.

You also might not have noticed that that app is the tagged association. Perhaps the creator watches the forums for their own app? I would if I was them.

I hope you never reply to one of my questions again. You're as helpful and as welcome as a rotten egg.

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Modernize your Splunk Apps – Introducing Python 3.13 in Splunk

We are excited to announce that the upcoming releases of Splunk Enterprise 10.2.x and Splunk Cloud Platform ...

Step into “Hunt the Insider: An Splunk ES Premier Mystery” to catch a cybercriminal ...

After a whole week of being on call, you fell asleep on your keyboard, and you hit a sequence of buttons that ...

SplunkTrust Application Period is Officially OPEN!

It's that time, folks! The application/nomination period for the 2026-2027 SplunkTrust is officially open. If ...