
CAPE-Kern- und Community-Parser
CAPE-Kern- und Community-Parser
CNCs: []
campaign: str
botnet: str
dga_seed: hex str
version: str
mutex: str
user_agent: str
build: str
cryptokey: str
cryptokey_type: str (algorithm). Ex: RC4, RSA public key. salsa20, (x)chacha20
raw: {any other data goes here}
<schema>://<hostname>:<port>/<uri>
tcp://, ftp://, udp://, http(s), usw.tldextract oder urlparse.