Client and Library for Intel Owl
Project description
pyintelowl
Simple Client for the Intel Owl Project
2 ways to use it:
- as a library
- as a command line script
You can select which analyzers you want to run for every analysis you perform.
Note: To use this, you need a valid API token to interact with the IntelOwl server. Token should be created from the admin interface of IntelOwl and paste it into api_token.txt.
Library
pip3 install pyintelowl
from pyintelowl.pyintelowl import IntelOwl
Endpoints
ask_analysis_availability
-> search for already available analysis
send_file_analysis_request
-> send a file to be analyzed
send_observable_analysis_request
-> send an observable to be analyzed
ask_analysis_result
-> request analysis result by job ID
get_analyzer_configs
-> get the analyzers configuration
Command line Client
Help
python3 intel_owl_client.py -h
Analyze
2 Submodules: file
and observable
Sample
Example:
python3 intel_owl_client.py -k <api_token_file> -i <url> -a PE_Info -a File_Info file -f <path_to_file>
Run all available analyzers (some of them could fail if you did not implemented the required configuration in the IntelOwl server):
python3 intel_owl_client.py -k <api_token_file> -i <url> -aa file -f <path_to_file>
Observable
Example:
python3 intel_owl_client.py -k <api_token_file> -i <url> -a AbuseIPDB -a OTXQuery observable -v google.com
Get Analyzers Configuration
python3 intel_owl_client.py -k <api_token_file> -i <url> -gc
Project details
Release history Release notifications | RSS feed
Download files
Download the file for your platform. If you're not sure which to choose, learn more about installing packages.
Source Distribution
Built Distribution
Hashes for pyintelowl-1.3.1-py3-none-any.whl
Algorithm | Hash digest | |
---|---|---|
SHA256 | 7717265ee630a5b5453e413686eb8276567073f986c267d3ec9d1de178007a4c |
|
MD5 | 53feab5ded244b61edf08ec649ffc52e |
|
BLAKE2b-256 | 3698501ae70670189983f505e896eb88a9d9f42a7c4334a0c5fb0f30a5980ceb |