Virustotal, worked by an AI employee
Not another app for your team to learn, and not a set of rules for you to build. You hire an AI employee, you give it access to your Virustotal account, and you ask it for things in Slack or Teams the way you would ask anyone else on the team. There is nothing to map and nothing to maintain.
- Security & Identity Tools
- Connects with a key
- 16 ready-made tools
- Asked in Slack or Teams
An illustration of how the conversation reads, not a transcript from a client account.
What Virustotal is
VirusTotal is a free online service that analyzes files and URLs for viruses, worms, trojans, and other kinds of malicious content using multiple antivirus engines and website scanners.
You paste in a key from your own Virustotal account. It is kept encrypted, and you can withdraw it from inside Virustotal whenever you like.
One message in, the work done in Virustotal.
- 01
You ask
You message your AI employee in the chat your team already has open, in one sentence, in your own words.
- 02
It works out the step
It decides what the job needs in Virustotal. You do not pick anything from a menu or wire anything together.
- 03
It does the work
Signed in to your own Virustotal account, inside the access you granted it, doing the thing you asked for.
- 04
It reports back
It tells you what it did, in the same thread. If it could not do something, it says so rather than guessing.
What it can do in Virustotal
These are the ready-made tools your AI employee already has in Virustotal. It is not limited to them, but it never has to be taught these.
- Add VirusTotal CommentTool to add a comment to a virustotal resource (file, url, domain, or ip address). use after analyzing a resource to leave contextual feedback. provide exactly one identifier per c
- Add VoteTool to add a vote (harmless/malicious) to a virustotal resource. use after reviewing analysis results to submit your verdict.
- Get Analysis ReportTool to retrieve the analysis report of a file or url submission. use after obtaining an analysis id to fetch its detailed report.
- Get commentsTool to retrieve the latest comments on a virustotal resource. use when you need to review user-generated comments for a file, url, domain, or ip after obtaining its identifier.
- Get Domain RelationshipsTool to retrieve relationship objects for a given domain. use when you have a domain and need to explore its related entities.
- Get Domain ReportTool to retrieve the analysis report of a domain. use when you need detailed insight on a domain's reputation and analysis stats.
- Get File ReportTool to retrieve the analysis report of a file. use when you have a file's hash and need detailed scan metadata.
- Get IP Address RelationshipsTool to retrieve objects related to a specific ip address by relationship type. use when you have an ip and need to explore connected files, urls, or other entities.
- Get IP Address ReportTool to retrieve the analysis report of an ip address. use when you need detailed insight on an ip's reputation, asn, country, and analysis stats.
- Get URL ReportTool to retrieve the analysis report of a url. use when you have a url identifier (base64-url without padding) and need detailed scan results, reputation, and metadata.
- Get VirusTotal MetadataTool to retrieve virustotal metadata. use when you need to list all available api endpoints with methods, summaries, and urls.
- Get VotesTool to retrieve votes on files, urls, domains, or ip addresses. use when you need to view community votes for a given object.
- Rescan FileTool to re-analyze a previously submitted file. use when you need updated analysis results after an initial scan.
- Scan URLTool to submit a url for scanning. use when you have a url and need to submit it to virustotal to obtain an analysis id for later retrieval.
- Search VirusTotalTool to search for objects in the virustotal database. use when locating files, urls, domains, ips, or comments matching a query. supports pagination with limit and cursor.
- Upload FileTool to upload a file for scanning. use when you have binary file content ready to submit for virustotal analysis.
You stay the boss of your Virustotal account.
Nothing connects until you approve it. You grant access one app at a time, you can take it back the same way, and everything your AI employee does in there is written down where you can see it.
How we handle your data- It signs in to your own Virustotal account. You are not moving anything into ours.
- You grant access one app at a time, and you can take it back the same way.
- Everything it does in Virustotal is written down, with what it did and when.
- Anything you tell it to check with you first, it checks with you first.
It works in Virustotal and the rest of your software in the same job
A real job rarely stays in one place. Reading a message in one app, checking a record in another and writing the result in a third is one request to your AI employee, not three.
Questions people ask about Virustotal
- Can an AI employee really work inside Virustotal?
- Yes. It signs in to your own Virustotal account and works in it the way a new hire would, from the chat your team already has open. Nobody installs anything, and nobody learns a new screen.
- Do I have to move anything out of Virustotal?
- No. Nothing moves and nothing is replaced. Your records stay in Virustotal, your team carries on in the same screens they used yesterday, and your AI employee works alongside them in there.
- How does it get into my Virustotal account?
- You paste in a key from your own Virustotal account. It is kept encrypted, and you can withdraw it from inside Virustotal whenever you like. You approve it before anything connects, and you can take the access back the same way you gave it.
- What can it actually do in Virustotal?
- It has 16 ready-made tools in Virustotal today, among them Add VirusTotal Comment, Add Vote and Get Analysis Report. The full list is on this page. It is not limited to those, but it never has to be taught them.
- Can it use Virustotal and the rest of my software in the same job?
- Yes, and that is usually the point. Reading a message in one app, checking a record in Virustotal and writing the result somewhere else is one request to your AI employee, not three separate ones you stitch together.
- Who decides what it is allowed to do in Virustotal?
- You do. You grant access one app at a time and can withdraw it at any time, anything you ask it to check with you first it checks with you first, and everything it does in Virustotal is written down with what it did and when.