Total View consolidates comprehensive Domain and IP intelligence into a single screen, empowering security teams to detect, analyze, and mitigate threats proactively. This guide explains what Total View is, why it’s essential for modern cybersecurity, and how its Highlights section delivers actionable insights.
Total View is our centralized platform for analyzing domains and IPv4 addresses, integrating over 100 pivotable data points, including DNS records, web content, and Threat intelligence, into a single interface. Available in the free Community Edition and paid subscriptions, it eliminates the need for multiple queries, saving time for security operations centers (SOCs) and researchers.
Total View
Total View provides:
Proactive Defense: Utilizes Silent Push’s Indicators of Future Attack (IOFA™) to identify malicious observables before full deployment.
Comprehensive Insights: Provides real-time and historical data, including subdomains and certificates, to identify and uncover threat patterns.
Efficiency: Streamlines analysis with a unified view, reducing manual effort.
Brand Protection: Detects impersonation attempts like Typosquatting or fake certificates.
Access all domain-related information in one place by navigating to the Total View screen. This screen is divided into three key sections: Highlights, Expanded, and Domain-Wide View.
Highlights
Use the Highlights section to quickly review general domain details. Refer to the table below for an overview of each highlight.
Use the following table to understand the highlights of Total View:
Highlight Section | Domain description | IP description | Why it matters | Access | |
---|---|---|---|---|---|
1 | Domain | Name of the domain. | IPV4 address | Identifies the Observable | All users |
2 | Proprietary score based on threat feed presence (for paid users) and secondary metrics. | Same as the domain | Quantifies malicious potential. | All users | |
3 | Flags that indicate if the domain is:
| ||||
3 | Scores | Age, Score, NS Reputation Score, NS Entropy Score. | IP Reputation, ASN Reputation, Subnet Reputation | Assess infrastructure trustworthiness | All users |
4 | PADNS Infrastructure | Counts of A, AAAA, CNAME, NS, MX, SOA, TXT records | Same as the domain | Flags DNS anomalies | All users |
5 | Infrastructure Variance | ASN Diversity, IP Diversity, NS Changes. | ASN, Subnet data | Detects suspicious infrastructure shifts. | All users |
6 | Whois Information | Registrar name, Created date. | Not applicable | Verifies domain legitimacy | All users |
7 | Web Search Highlights | Response code, Scan Date, Header Server, favicon, HTML Title. | Same as the domain | Identifies phishing site traits. | All users |
8 | Indicates IOFA feed presence (paid users) or other classifiers. | Same as the domain | Flags high-risk observables. | All users |
Note: Some advanced metrics (e.g., Threat Feeds data in Risk Score and Flags) are unavailable for Community Users, but enhance analysis for paid subscribers by linking to real-time threat intelligence.
Access Total View
From the Silent Push homepage, enter a domain (e.g., example.com) or IPv4 address in the search bar.
Click on an indicator, and you will be presented with the Standard Pivot Control; then, select Total View.
Use the Quick Search bar (located at the top right), enter a domain.