Group FalconMalQuerySample - CrowdStrike/psfalcon GitHub Wiki
Schedule MalQuery samples for download
Requires 'MalQuery: Write'.
Name | Type | Description | Min | Max | Allowed | Pipeline | PipelineByName |
---|---|---|---|---|---|---|---|
Id | String[] | Sha256 hash value | X | X |
Group-FalconMalQuerySample [-Id] <String[]> [-WhatIf] [-Confirm] [<CommonParameters>]
POST /malquery/entities/samples-multidownload/v1
PostMalQueryEntitiesSamplesMultidownloadV1
$Request = Group-FalconMalQuerySample -Id <sha256>, <sha256>
Receive-FalconMalQuerySample -Id $Request.reqid -Path .\infected.zip
2023-04-25: PSFalcon v2.2.5