Skip to main content

Search Endpoints By Hash - Carbon Black Response V2

This Playbook is part of the Carbon Black Enterprise Response Pack.#

Hunt for malicious indicators using Carbon Black

Dependencies#

This playbook uses the following sub-playbooks, integrations, and scripts.

Sub-playbooks#

This playbook does not use any sub-playbooks.

Integrations#

  • integration-Carbon_Black_Enterprise_Response

Scripts#

This playbook does not use any scripts.

Commands#

  • cb-get-processes

Playbook Inputs#


NameDescriptionDefault ValueRequired
HashMD5 HashFile.MD5Optional

Playbook Outputs#


PathDescriptionType
Endpoint.HostnameThe device hostnamestring
EndpointThe endpointunknown