Install
openclaw skills install threatbook-skills集成微步在线威胁情报API,提供文件上传分析、文件信誉查询、多引擎检测、IP信誉查询和失陷检测能力;当用户需要分析可疑文件、查询文件威胁情报、检测IP安全状态或排查主机失陷风险时使用
openclaw skills install threatbook-skillsrequests==2.28.0
scripts/file_upload.pyfile_path:待分析的文件路径python scripts/file_upload.py --file_path /path/to/suspicious.exe
scripts/file_report.pyhash_value:文件的sha256/md5/sha1值python scripts/file_report.py --hash_value 5d41402abc4b2a76b9719d911017c592
scripts/file_multiengines.pyhash_value:文件的sha256/md5/sha1值python scripts/file_multiengines.py --hash_value 5d41402abc4b2a76b9719d911017c592
scripts/ip_reputation.pyip:待查询的IP地址python scripts/ip_reputation.py --ip 8.8.8.8
scripts/dns_compromise.pyresource:域名或IP地址python scripts/dns_compromise.py --resource example.com
# 上传文件进行分析
python scripts/file_upload.py --file_path ./malware.exe
# 根据返回的hash查询详细报告
python scripts/file_report.py --hash_value <returned_hash>
# 查询单个IP
python scripts/ip_reputation.py --ip 192.168.1.1
# 批量查询可编写脚本循环调用
# 检测可疑域名
python scripts/dns_compromise.py --resource suspicious-domain.com
# 检测可疑IP
python scripts/dns_compromise.py --resource 10.0.0.1