This service performs hash lookups against the CCIRC Malware Database.
NOTE: This service requires you to have access to the CCIRC Malware database. It is not preinstalled during a default installation
This service works by querying the CCIRC Malware database via API or with direct database access to see if the file that you are submitting has already been seen by the CCIRC Malware analysis team. It will then pull dynamic analysis information about the malware as well as AV results and domains.
Because this service only uses the hash to query for information, installing this service also enables it as a datasource in the hash_search API (
Access to CCIRC Malware Database
The CCIRC Malware database is not available for public consumption. It is currently restricted to government of Canada departments only. If your organization does not fit this profile, this service will be unavailable.