Skip to main content

Check Point Threat Emulation (SandBlast)

Download With Dependencies

Upload files using polling, the service supports Microsoft Office files, as well as PDF, SWF, archives and executables. Active content will be cleaned from any documents that you upload (Microsoft Office and PDF files only). Query on existing IOCs, file status, analysis, reports. Download files from the database. Supports both appliance and cloud. Supported Threat Emulation versions are any R80x.

Check Point Threat Emulation (SandBlast) Pack

What does this pack do?

  • Uses Threat Emulation to perform remote analysis on a sandbox.
  • Uploads files to a virtual sandbox.
  • Opens files and monitors them in multiple OS versions and Microsoft Office versions.
  • Saves malicious files in the ThreatCloud.
  • Provides a safe file without active content while the original file is inspected by Threat Emulation. If it is safe it can be downloaded.

Check Point Threat Emulation (SandBlast) Pack

What does this pack do?

  • Uses Threat Emulation to perform remote analysis on a sandbox.
  • Uploads files to a virtual sandbox.
  • Opens files and monitors them in multiple OS versions and Microsoft Office versions.
  • Saves malicious files in the ThreatCloud.
  • Provides a safe file without active content while the original file is inspected by Threat Emulation. If it is safe it can be downloaded.

PUBLISHER

PLATFORMS

Cortex XSOARCortex XSIAM

INFO

CertificationRead more
Supported ByCortex
CreatedAugust 16, 2022
Last ReleaseMarch 23, 2026
WORKS WITH THE FOLLOWING INTEGRATIONS:

DISCLAIMER
By downloading or using Marketplace content, you agree to the applicable Terms of Use and End User License Agreement. Third-party content is provided by its publisher, and Palo Alto Networks does not warrant, endorse, support, or assume responsibility for content not expressly identified as owned by Palo Alto Networks.