dissect.cobaltstrike

View on PyPIReverse Dependencies (0)

1.2.0 dissect_cobaltstrike-1.2.0-py3-none-any.whl

Wheel Details

Project: dissect.cobaltstrike
Version: 1.2.0
Filename: dissect_cobaltstrike-1.2.0-py3-none-any.whl
Download: [link]
Size: 375854
MD5: f477591fef026350a9eb031c5b70316b
SHA256: 23eac6c9901978fcf85a7a00c6dc1f4dc731013d3382327b1f6c0ea76d4291ba
Uploaded: 2024-10-11 10:28:09 +0000

dist-info

METADATA

Metadata-Version: 2.3
Name: dissect.cobaltstrike
Version: 1.2.0
Summary: a Python library for dissecting Cobalt Strike related data
Author-Email: Yun Zheng Hu <hu[at]fox-it.com>
Project-Url: Homepage, https://github.com/fox-it/dissect.cobaltstrike
Project-Url: Documentation, https://dissect-cobaltstrike.readthedocs.io/
Project-Url: Source, https://github.com/fox-it/dissect.cobaltstrike
License: MIT License
Keywords: beacon,cobaltstrike,cstruct,dissect,lark,parser,parsing
Classifier: Development Status :: 5 - Production/Stable
Classifier: Environment :: Console
Classifier: Intended Audience :: Developers
Classifier: Intended Audience :: Information Technology
Classifier: Intended Audience :: Science/Research
Classifier: License :: OSI Approved :: MIT License
Classifier: Operating System :: MacOS :: MacOS X
Classifier: Operating System :: Microsoft :: Windows
Classifier: Operating System :: POSIX
Classifier: Programming Language :: Python :: 3 :: Only
Classifier: Programming Language :: Python :: 3.9
Classifier: Programming Language :: Python :: 3.10
Classifier: Programming Language :: Python :: 3.11
Classifier: Programming Language :: Python :: 3.12
Classifier: Programming Language :: Python :: 3.13
Classifier: Topic :: Scientific/Engineering :: Information Analysis
Classifier: Topic :: Security
Classifier: Topic :: Software Development :: Libraries :: Python Modules
Classifier: Topic :: Utilities
Requires-Python: >=3.9
Requires-Dist: dissect-cstruct (>=4.2)
Requires-Dist: lark
Requires-Dist: flow-record; extra == "c2"
Requires-Dist: httpx; extra == "c2"
Requires-Dist: pycryptodome; extra == "c2"
Requires-Dist: flow-record; extra == "docs"
Requires-Dist: httpx; extra == "docs"
Requires-Dist: ipython; extra == "docs"
Requires-Dist: pickleshare; extra == "docs"
Requires-Dist: pycryptodome; extra == "docs"
Requires-Dist: pyshark; extra == "docs"
Requires-Dist: rich; extra == "docs"
Requires-Dist: sphinx; extra == "docs"
Requires-Dist: sphinx-argparse-cli; extra == "docs"
Requires-Dist: sphinx-autoapi; extra == "docs"
Requires-Dist: sphinx-copybutton; extra == "docs"
Requires-Dist: sphinx-rtd-theme (>=2.0); extra == "docs"
Requires-Dist: flow-record; extra == "full"
Requires-Dist: httpx; extra == "full"
Requires-Dist: pycryptodome; extra == "full"
Requires-Dist: pyshark; extra == "full"
Requires-Dist: rich; extra == "full"
Requires-Dist: flow-record; extra == "pcap"
Requires-Dist: httpx; extra == "pcap"
Requires-Dist: pycryptodome; extra == "pcap"
Requires-Dist: pyshark; extra == "pcap"
Requires-Dist: flow-record; extra == "test"
Requires-Dist: httpx; extra == "test"
Requires-Dist: pycryptodome; extra == "test"
Requires-Dist: pyshark; extra == "test"
Requires-Dist: pytest; extra == "test"
Requires-Dist: pytest-cov; extra == "test"
Requires-Dist: pytest-httpserver; extra == "test"
Requires-Dist: rich; extra == "test"
Provides-Extra: c2
Provides-Extra: docs
Provides-Extra: full
Provides-Extra: pcap
Provides-Extra: test
Description-Content-Type: text/x-rst
License-File: LICENSE
[Description omitted; length: 5759 characters]

WHEEL

Wheel-Version: 1.0
Generator: hatchling 1.25.0
Root-Is-Purelib: true
Tag: py3-none-any

RECORD

Path Digest Size
docs/Makefile sha256=i2WHuFlgfyAPEW4ssEP8NY4cOibDJrVjvzSEU8_Ggwc 634
docs/c2profile-grammar.rst sha256=D98uLO6x88EaNBph0dBOU5Ot6zcTJQjzIj-r0PKT948 671
docs/codespell-ignore-words.txt sha256=R-rpUcpRDSYatkyoNGLtCBjB6jsZ2OQED-aDBtwUDUI 8
docs/conf.py sha256=4cvQFqoFxAhMVcWsOfnYURVoR9EtJRLcqb8XlW23G0g 3079
docs/examples.rst sha256=Qw58xLGIaAeUfvexKzriU_KZH1UJkrLEW3SGLlSS4ZM 17947
docs/index.rst sha256=bbw8Jl5RHV2qi10MKKzzbgJ_a0x2nvLT3o52mlzKzls 1419
docs/installation.rst sha256=NNYaH7K_85riJH2NQaCCfApSpRFZXz0-BF66GQYYTFw 2424
docs/license.rst sha256=vqdBO50raQicLlpFkAOTiBXFGOS9Pqa5i1m0O0Hjrxw 51
docs/images/beacon-client.png sha256=zWGE7pqVWkanQL-InqVhtTJfTspYj5lejyJqe161T0o 125032
docs/images/teamserver-echoclient.png sha256=XjmQeAPDdBbfIx9hED0muuxhtFtz2JJ7cbuayK_yX4c 32382
docs/images/teamserver_ls.png sha256=6zpDN-YP7ZAVmZkAusRKRKvtgq9Q8EzqhLqwjU_-4gU 8451
docs/images/vt-cobaltstrike-43-zip.png sha256=ungWNSIEEbT59VHyVIQZYkjT5IgVDc7b_He9Ns1nyOM 133551
docs/scripts/checksum8-accesslogs.rst sha256=zDb4wSGWnLvqDoQfYKBVbmr6jbkbJyRyM2Pv0d6xMLc 133
docs/scripts/dump_beacon_keys.rst sha256=GTv1Um-SZZXkQFsOo58UXetpZAu_cN0AqPIygwgDeJk 121
docs/scripts/example_client.rst sha256=cz7peC6SzlHlzd9z5uFqMwUPtTFsOf1jpSkVFPmAn8M 330
docs/scripts/index.rst sha256=z2aqL1CLpKPogb26wU1pJzNm-Mf8repujqCAwD22IhQ 628
docs/structures/c2_def.rst sha256=A-484c4sn8ZEsSIaP0tZ5UUi4zSh1MDelymcxheWIGQ 435
docs/structures/cs_def.rst sha256=6PWHnM5LDo5cxJkQlsmcsPzACNYWZ2ZtFDLvM_NSlxs 291
docs/structures/index.rst sha256=tv0jAomJ2ONz0ED3VYYziCv77vlP5FpFWPYgN4eGX3U 278
docs/structures/pe_def.rst sha256=3Eo2nsljC2BdxbNPD8tJkEKW0QCTBNwhkXc1A_iDM4E 242
docs/tools/beacon-artifact.rst sha256=9X9q5fu78ul9HZFL8sYvGm0jgCK-Eaz8x8hJVD4UZLI 1017
docs/tools/beacon-client.rst sha256=8pDwxh0x_VAPEaKfYehQRe01HWHFvPLl2Ap2HVA7BXo 3090
docs/tools/beacon-dump.rst sha256=IbFxmKdeedqFxDBqBohbEZ-9CQwrKM8T5hvEz9akjrk 1482
docs/tools/beacon-pcap.rst sha256=0K45eJ6SZP52NFzK2nidKs30G0L1Ln1niUTmTIZiUW8 2268
docs/tools/beacon-xordecode.rst sha256=3XzvUa6Nk_KMzf4P90-zB3uQKKQvorCnXRRpAyp-r6g 1872
docs/tools/c2profile-dump.rst sha256=DbT8mKeB5pTO4tNoeDJlx-ptUXlKNm3_sjVcweNPaSw 740
docs/tutorials/decrypt_cobaltstrike_pcaps.rst sha256=1aPYZE1xjgF_pUyVbZeVbPkdnjmgdSPnV8OSomHIhUY 15480
docs/tutorials/index.rst sha256=Pf7J869qAYdDcwGqpwmrvPxyygrFe0S13lr2yKrnw7c 185
docs/tutorials/minimal_beacon_client.rst sha256=5zIENi8ECWFXOMPwqjZGixox9wBcw--ZUU5PlfHVaEc 15997
tests/conftest.py sha256=S2XbrQA-Cy1r6AgPDpJwuqVf1-kS_wLau-pqRHwnRIM 3287
tests/test_beacon.py sha256=OPJxrmSooT8Dxns9R80PoHOyuWZUXnsN71YDY8njjc8 11634
tests/test_c2.py sha256=6d4YyjSGdIZuVx77Uo3zln-l6H9ZNL4dLr-gfJOS7Nk 16498
tests/test_c2profile.py sha256=yZDMmgKWKJHkL7LZMK7YCGbDTOVIVBgkA4XZbh1bQBM 9706
tests/test_client.py sha256=FrUKF1VJ5MZUWJwosbLsorncOTEHfMTxUp0FfDulBQc 9597
tests/test_pe.py sha256=RKpNAyI5EgkeCdpJN1fCj5KdW1AFacN7dSTqwpix0dc 1525
tests/test_utils.py sha256=eW6q0_H4FbhpEwWeZo-VPkXe-yVRA-dqUZ1WVN8ioEo 3338
tests/test_version.py sha256=tTFOOeC-sIMOrAFpwgvneXQIWw3PdADv4X1kVzelmNM 3020
tests/test_xordecode.py sha256=0Bl86caRm56_Du7JZnCLLV1voev7xto4JKBfeWGVavI 1749
dissect/cobaltstrike/__init__.py sha256=47DEQpj8HBSa-_TImW-5JCeuQeRkm5NMpJWZG3hSuFU 0
dissect/cobaltstrike/_version.py sha256=zMnMemknXglcJs59xkicNzeEJTVgYd1omSfLWj76yWw 411
dissect/cobaltstrike/artifact.py sha256=NPeDMWh8wToae6h3MhZqFIq3QT4zXIZn5xWzeKFQPdk 4087
dissect/cobaltstrike/beacon.py sha256=2-XVOH7KaW8tSqyK04OLMEHMX1f0DFJBzr3GRFEEJI4 39181
dissect/cobaltstrike/c2.py sha256=gQbwAjZYwd1GdX6Tb1pz807c9ykD-DlNjC1_lWATo50 25285
dissect/cobaltstrike/c2profile.lark sha256=REgjQX3_B_zYlinEC6Vgz9Z-DaGAxchwBpUcs_14TVQ 10078
dissect/cobaltstrike/c2profile.py sha256=uktEP0Mpv1UIkgJs5xmnG-LfMjJZCmyjOoe_naK0vLQ 30296
dissect/cobaltstrike/c_c2.py sha256=1Z791qjUEqgSNyZHmxtNQz78S7FG3VGwWXfshE7kalc 5284
dissect/cobaltstrike/client.py sha256=McxoKHwbSp5V-OD5o6lySna6sYzUPM5F10npJdL_6X8 28327
dissect/cobaltstrike/pcap.py sha256=758qJVJveUaVgedjU8A4APLUh4HNKugGFxC5Ct1qmyM 15311
dissect/cobaltstrike/pe.py sha256=bEdasnP5BIOEjoFKebtbpvl5Zd6NlwkbqoBsyOesHhI 13968
dissect/cobaltstrike/utils.py sha256=cCYUJrdnWsE6Gb3sJpBYE_OBO8p_3mIS3qICiYuUKkM 8718
dissect/cobaltstrike/version.py sha256=bxDZ3uoVktwHnoAPX3uYNU1wRSTjo_ZO2WgTKGuzjA4 5968
dissect/cobaltstrike/xordecode.py sha256=A_1wTiYYc6DEVrKwfiBJZuQkCZS_FyzMPMfApzxXgCQ 8838
dissect_cobaltstrike-1.2.0.dist-info/METADATA sha256=cvUW6GJXlfRvtACD6d1dePflTNiFqrx7Pf5SADt_Tqc 8776
dissect_cobaltstrike-1.2.0.dist-info/WHEEL sha256=1yFddiXMmvYK7QYTqtRNtX66WJ0Mz8PYEiEUoOUUxRY 87
dissect_cobaltstrike-1.2.0.dist-info/entry_points.txt sha256=xf-wJSa9XS2vurnI0aGRFLdUY3qwXD7iWWFBxKp6Lx4 320
dissect_cobaltstrike-1.2.0.dist-info/licenses/LICENSE sha256=HwS45y5toEVmu15ev5771OiuMXCittB6HXO6BZXNBLA 1074
dissect_cobaltstrike-1.2.0.dist-info/RECORD

entry_points.txt

beacon-artifact = dissect.cobaltstrike.artifact:main
beacon-client = dissect.cobaltstrike.client:main
beacon-dump = dissect.cobaltstrike.beacon:main
beacon-pcap = dissect.cobaltstrike.pcap:main
beacon-xordecode = dissect.cobaltstrike.xordecode:main
c2profile-dump = dissect.cobaltstrike.c2profile:main