Use the MalQuery Integration to query the contents of clean and malicious binary files, which forms part of Falcon's search engine.
CrowdStrike Malquery
- Details
- Content
- Dependencies
- Version History
Use the MalQuery Pack to query the contents of over a half-billion binary files, both clean and malicious, that are part of Falcon MalQuery's corpus.
| Name | Description | 
|---|---|
| CrowdStrike Malquery | 
| Name | Description | 
|---|---|
| CrowdStrikeMalquery - Multidownload and Fetch | Schedule samples for download. Using samples-multidownload is a  | 
| CrowdStrikeMalquery - Search | Use this playbook as a sub-playbook to query the contents of binary files. 
 | 
| Pack Name | Pack By | 
|---|---|
| Base | By: Cortex XSOAR | 
| Common Playbooks | By: Cortex XSOAR | 
| Pack Name | Pack By | 
|---|
| Pack Name | Pack By | 
|---|---|
| Base | By: Cortex XSOAR | 
| Rasterize | By: Cortex XSOAR | 
| Filters And Transformers | By: Cortex XSOAR | 
| Cortex REST API | By: Cortex XSOAR | 
| Common Playbooks | By: Cortex XSOAR | 
PUBLISHER
PLATFORMS
INFO
| Certification | Certified | Read more | 
| Supported By | Cortex | |
| Created | November 9, 2020 | |
| Last Release | July 8, 2025 | 
WORKS WITH THE FOLLOWING INTEGRATIONS:

