Dropzone AI Documentation
WebsiteTest Drive
  • Dropzone Documentation
  • Overview
    • Alert Sources
    • Data Sources
    • Communicators
    • On-prem Support - Dropzone Connector
    • Interactive Chat
    • Metrics Guide
  • Dropzone Administraton
    • Team Admin
      • Google Workspace SAML
      • Okta SAML
  • Dropzone Integrations
    • Alert + Data Source Integrations
      • Amazon Web Services (AWS)
        • Cross-Account Access via CloudFormation
        • Cross-Account Access via Console
      • CrowdStrike
      • Datadog
      • Elasticsearch
      • Google Workspace
      • Google GCP
      • Jira
      • Microsoft 365 / Microsoft Defender
      • Palo Alto Networks Firewall
      • Panther
      • SentinelOne
      • Splunk
      • Sumo Logic
    • Alert Integrations
      • Gem
    • Communicators
      • Slack Communicator
    • Data Source Integrations
      • AbuseIPDB
      • Active Directory (LDAP)
      • Archive Inspector
      • Blocklist.de
      • CAPA
      • Censys
      • Crowdstrike Falcon Intelligence
      • DNSResolver
      • File
      • GreyNoise
      • Hybrid Analysis
      • Host.io
      • IPInfo.io
      • IPQualityScore
      • MalwareBazaar
      • Nuclei
      • NVD
      • Okta
      • oletools
      • OpenSSL Sign Code
      • PDF Analysis
      • Perplexity AI
      • PhishTank
      • Shodan
      • TShark
      • QRadar
      • UnshortenMe
      • URLhaus
      • Urlscan.io
      • VirusTotal
      • Vision
      • WHOIS
      • YARAify
Powered by GitBook
On this page
  • Create an API Key
  • Enable VirusTotal

Was this helpful?

  1. Dropzone Integrations
  2. Data Source Integrations

VirusTotal

PreviousUrlscan.ioNextVision

Last updated 4 months ago

Was this helpful?

VirusTotal is a Threat Intelligence (TI) integration. TI Data Source integrations are used during investigations to improve analysis and in interactive chat to help answer questions. They are optional, but enabling more tooling integrations enhances Dropzone analysis.

The Dropzone AI platform supports , a threat intelligence service that can analyze suspicious files, domains, IPs and URLs. Their privacy policy is available at .

Create an API Key

VirusTotal requires an API key to enable.

To obtain an API Key, do the following:

  • Log into

  • From your profile in the upper right, select API Key

  • In the "API KEY" section of the top of your screen find the blurred-out section and click the eyeball icon next to it

  • The key will be de-blurred

  • Record this string for use later in the Dropzone UI where it is called "API key"

Enable VirusTotal

To enable the Data Source integration, do the following:

  • Navigate to your Dropzone AI tenant home page e.g. https://mycompany.dropzone.ai

  • Click System > Integrations

  • Click "Available"

  • In the Search bar, search VirusTotal, then click "Configure"

  • Input the API Key

  • Select which scan types you wish to enable

  • Click "Test & Save" to finish

If you have any errors engage your Dropzone AI support representative.

VirusTotal
https://docs.virustotal.com/docs/privacy-policy
https://www.virustotal.com
API Key Menu
API Key Menu
Integrations Dropdown
Click Available
The VirusTotal Data Tile
The VirusTotal Data Source Configuration