Get File Sample By Hash - Cylance Protect v2
This playbook returns a file sample to the War Room given the file's SHA256 hash, using Cylance Protect v2 integration.
- Pack
- Cylance_Protect
- Tasks
- 5
Inputs
- SHA256 — SHA256 hash of the file.
- unzip — Specifies whether the downloaded file will be unzipped. The command default is 'no'. Yes - unzip automatically No - will not unzip
Outputs
- File.SHA256 — SHA256 hash of the file.
- File.Name — File name.
- File.Size — File size.
- File.Safelisted — Whether the file is on the safe list.
- File.Timestamp — Timestamp.
- File.MD5 — MD5 hash of the file.
Commands used
- cylance-protect-download-threat