Skip to main content

Cyware Orchestrate

Comodo Valkyrie Verdict

App Vendor: Comodo Valkyrie Verdict

App Category: Data Enrichment & Threat Intelligence, Forensics & Malware Analysis

Connector Version: 1.0.1

API Version: 1.0.0

About App

The Comodo Valkyrie Verdict app allows security teams to integrate with the Comodo Valkyrie Verdict enterprise application to perform static, dynamic, expert human analysis for submitted files and a wide array of techniques used to determine trust verdicts for every file running on the endpoint.

The Comodo Valkyrie Verdict app is configured with the Orchestrate application to perform the following actions:

Action Name

Description

URL query

This action queries URL verdicts on the Valkyrie Verdict application.

Domain query

This action queries domain verdicts on the Valkyrie Verdict application.

IP address query

This action queries IP address verdicts on the Valkyrie Verdict application.

Download feeds

This action downloads the plain text latest feeds from the Valkyrie Verdict application.

Trigger kill chain result

This action triggers the kill chain results API in the Valkyrie Verdict application.

Get kill chain results

This action retrieves the kill chain results from the Valkyrie Verdict application.

Download a file

This action downloads a file from the Valkyrie Verdict application.

File rescan

This action rescans a previously scanned file with the Valkyrie Verdict application.

Submit a file for scan

This action submits a file to be scanned with the Valkyrie Verdict application.

URL category query

This action queries URL category verdicts on the Valkyrie Verdict application.

Query Hash

This action queries the file hash verdicts on the Valkyrie Verdict application.

Configuration Parameters

The following configuration parameters are required for the Comodo Valkyrie Verdict app to communicate with the Comodo Valkyrie Verdict enterprise application. The parameters can be configured by creating instances in the app.

Parameter

Description

Field Type

Required/Optional

Comments

API Key

Enter the Comodo Valkyrie Verdict API key.

Text

Required

Action: URL query

This action queries URL verdicts on the Valkyrie Verdict application.

Action Input Parameters

Parameter

Description

Field Type

Required/Optional

Comments

URL

Enter the URL.

Example:

"Sample URL"

Text

Required

Type of analyze

Enter the type of analyze to perform.

Text

Optional

Allowed values:

  • True

  • False

Default value:

  • False

Use cache

Specify if you want to use the results from cache.

Text

Optional

Allowed values:

  • True

  • False

Default value:

  • False

Action: Domain query

This action queries domain verdicts on the Valkyrie Verdict application.

Action Input Parameters

Parameter

Description

Field Type

Required/Optional

Comments

Domain

Enter the domain.

Example:

"Sample Domain"

Text

Required

Type of analysis

Enter the type of analysis to perform.

Text

Optional

Allowed values:

  • True

  • False

Default value:

  • False

Use cache

Specify if you want to include the result from cache.

Text

Optional

Allowed values:

  • True

  • False

Default value:

  • False

Action: IP address query

This action queries IP address verdicts on the Valkyrie Verdict application.

Action Input Parameters

Parameter

Description

Field Type

Required/Optional

Comments

IP address

Enter the IP address.

Example:

"Sample IP Address"

Text

Required

Use cache

Enter the result from cache.

Text

Optional

Allowed values:

  • True

  • False

Action: Download feeds

This action downloads the plain text latest feeds from the Valkyrie Verdict application.

Action Input Parameters

Parameter

Description

Field Type

Required/Optional

Comments

Feed ID

Enter valkyrie verdict feed ID.

Example:

"Sample Feed ID"

Text

Required

File name

Enter a file name.

Example:

"Sample File Name"

Text

Required

Action: Trigger kill chain result

This action triggers the kill chain results API in the Valkyrie Verdict application.

Action Input Parameters

Parameter

Description

Field Type

Required/Optional

Comments

Sha1 hash

Enter SHA1 hash.

Example:

"Sample Hash"

Text

Required

Action: Get kill chain results

This action retrieves the kill chain results from the Valkyrie Verdict application.

Action Input Parameters

Parameter

Description

Field Type

Required/Optional

Comments

SHA1 hash

Enter the SHA1 hash.

Example:

"Sample SHA Hash"

Text

Required

Action: Download a file

This action downloads a file from the Valkyrie Verdict application.

Action Input Parameters

Parameter

Description

Field Type

Required/Optional

Comments

SHA1 hash

Enter the sha1 hash.

Example:

"Sample Hash"

Text

Required

Action: File rescan

This action rescans a previously scanned file with the Valkyrie Verdict application.

Action Input Parameters

Parameter

Description

Field Type

Required/Optional

Comments

SHA1 hash

Enter the sha1 hash.

Example:

"Sample Hash"

Text

Required

Action: Submit a file for scan

This action submits a file to be scanned with the Valkyrie Verdict application.

Action Input Parameters

Parameter

Description

Field Type

Required/Optional

Comments

File path

Enter the file path.

Example:

"Sample File Path"

Text

Required

Action: URL category query

This action queries URL category verdicts on the Valkyrie Verdict application.

Action Input Parameters

Parameter

Description

Field Type

Required/Optional

Comments

URL

Enter the URL.

Example:

"Sample URL"

Text

Required

Action: Query Hash

This action queries the file hash verdicts on the Valkyrie Verdict application.

Action Input Parameters

Parameter

Description

Field Type

Required/Optional

Comments

Sha1 hash

Enter the SHA1 hash.

Example:

"Sample Hash"

Text

Required

Use cache

Enter the results from cache.

Text

Optional

Allowed values:

  • True

  • False

Default value:

  • False