Detonate File - BitDam
Detonates one or more files using BitDam integration. Returns verdict to the War Room and file reputations to the context data. Supported file types are mainly PDF & microsoft office software/
- Pack
- BitDam
- Tasks
- 9
Inputs
- File — File object of the file to detonate. The File is taken from the context.
- Interval — Duration for executing the pooling (in minutes)
- Timeout — The duration after which to stop pooling and to resume the playbook (in minutes)
Outputs
- BitDam.Analysis.ID — Sample ID
- DBotScore.Vendor — The name of the vendor: BitDam
- BitDam.Analysis.Verdict — Analysis Verdict
- BitDam.Analysis.Status — Analysis Status
- DBotScore.Indicator — The name of the sample file or URL
- DBotScore.Type — 'file' for file samples
- DBotScore.Score — The actual score
Commands used
- bitdam-get-verdict
- bitdam-upload-file