A decoder for the SUNBURST DGA malware DNS traffic
3e0413f9f7
Tries all permutations of chunks in Esab32, until it gets only printable characters. This decodes all but one line of the data I currently have: that GUID is successfully decoded later after another chunk is added. So this is 100% successful. |
||
---|---|---|
.gitignore | ||
Makefile | ||
NOTES.md | ||
sunburst.py |