VirusTotal

Download 29
Last updated Apr 3, 2024

virustotal-file-report-batch

Retrieve file reputation information from VirusTotal for the hash value passed as the input record.

virustotal-file-report-batch [profile=PROFILE]
profile=PROFILE
Comma seperated VirusTotal profile names

Input Field

  • hash: MD5, SHA1, or SHA256 value

Output Fields

FieldTypeNameDescription
file_nameStringFile namefile_name
file_sizeLongFile sizeSize in bytes
threat_labelStringThreat labele.g. trojan.kelios/malcert
malicious_reportsIntegerMalicious reportsNumber of reports saying that is malicious.
suspicious_reportsIntegerSuspicious reportsNumber of reports saying that is suspicious.
harmless_reportsIntegerHarmless reportsNumber of reports saying that is suspicious.
undetected_reportsIntegerUndetected reportsNumber of reports saying that is undetected.
type_unsupported_reportsIntegerType unsupported reportsNumber of AV engines that don't support that type of file.
confirmed_timeout_reportsIntegerConfirmed timeout reportsNumber of AV engines that reach a timeout when analysing that file.
timeout_reportsIntegerTimeout reportsNumber of timeouts when analysing this file.
failure_reportsIntegerFailure reportsNumber of AV engines that fail when analysing that file.
reputationIntegerReputationFile's score by community votes
harmless_votesIntegerHarmless votesNumber of positive votes.
malicious_votesIntegerMalicious votesNumber of negative votes.
type_tagStringType tage.g. peexe, pedll, elf, doc
type_extensionStringType extensione.g. exe, dll, doc
type_descriptionStringType descriptione.g. Win32 EXE, ELF, MS Word Document
tagsListTagse.g. executable, windows, pe, pedll
md5StringMD5sum
sha1StringSHA1 hash
sha256StringSHA256 hash
ssdeepStringSSDEEPFuzzy hash of the file content.
vhashStringVHashSimilarity clustering value
first_submissionDateFirst submission time
last_submissionDateLast submission time
last_analysisDateLast analysis time
unique_sourcesIntegerUnique sourcesHow many different sources the file has been posted from.
file_namesListFile names
last_analysis_resultsListAnalysis resultsengine_name, engine_version, engine_update, method, category, result properties.