Use the MalQuery Integration to query the contents of clean and malicious binary files, which forms part of Falcon's search engine.
CrowdStrike Malquery
- Details
- Content
- Dependencies
- Version History
Use the MalQuery Pack to query the contents of over a half-billion binary files, both clean and malicious, that are part of Falcon MalQuery's corpus.
| Name | Description |
|---|---|
| CrowdStrike Malquery |
| Name | Description |
|---|---|
CrowdStrikeMalquery - Multidownload and Fetch | Schedule samples for download. Using samples-multidownload is a |
CrowdStrikeMalquery - Search | Use this playbook as a sub-playbook to query the contents of binary files.
|
| Pack Name | Pack By |
|---|---|
| Base | By: Cortex XSOAR |
| Common Playbooks | By: Cortex XSOAR |
| Pack Name | Pack By |
|---|
| Pack Name | Pack By |
|---|---|
| Rasterize | By: Cortex XSOAR |
| Base | By: Cortex XSOAR |
| Common Playbooks | By: Cortex XSOAR |
| Filters And Transformers | By: Cortex XSOAR |
| Cortex REST API | By: Cortex XSOAR |
PUBLISHER
PLATFORMS
INFO
| Certification | Certified | Read more |
| Supported By | Cortex | |
| Created | November 9, 2020 | |
| Last Release | July 8, 2025 |
WORKS WITH THE FOLLOWING INTEGRATIONS:

