lookup_malware_family
Identify malware families by analyzing IOCs (IPs, domains, URLs, or hashes) against ThreatFox to determine threat classification and confidence levels.
Instructions
Look up an IOC (IP, domain, URL, or hash) against ThreatFox for malware family attribution. Returns confidence level, IOC type, and threat classification.
Args: ioc: Indicator of Compromise — IP address, domain, URL, MD5/SHA256 hash
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| ioc | Yes |
Output Schema
| Name | Required | Description | Default |
|---|---|---|---|
| result | Yes |