Get a collection

🚧

Special privileges required

Threat Actors, Campaigns, Country Profiles and Industry Profiles are only available to users with the Google Threat Intelligence (Google TI) Enterprise or Enterprise Plus licenses.

This endpoint returns a Threat Actor, Campaign, Malware Family, Software or Toolkit, IoC Collection, Country Profile or an Industry Profile object.

Examples

Get a threat actor report.

import requests
import urllib

object_id = "threat-actor--bcaaad6f-0597-4b89-b69b-84a6be2b7bc3"
url = f"https://www.virustotal.com/api/v3/collections/{object_id}"
headers = {"accept": "application/json","x-apikey": <api-key>}
response = requests.get(url, headers=headers)

Get a malware or toolkit report.

import requests
import urllib

object_id = "malware--350aa703-7750-5e07-997b-476375955828"
url = f"https://www.virustotal.com/api/v3/collections/{object_id}"
headers = {"accept": "application/json","x-apikey": <api-key>}
response = requests.get(url, headers=headers)

Get a campaign report.

import requests
import urllib

object_id = "campaign--24f96f40-b2fa-512c-b1da-2f22a949d12d"
url = f"https://www.virustotal.com/api/v3/collections/{object_id}"
headers = {"accept": "application/json","x-apikey": <api-key>}
response = requests.get(url, headers=headers)

Get a IoC collection report.

import requests
import urllib

object_id = "alienvault_64edfc5ab93abb1407070292"
url = f"https://www.virustotal.com/api/v3/collections/{object_id}"
headers = {"accept": "application/json","x-apikey": <api-key>}
response = requests.get(url, headers=headers)

Get a Country Profile.

import requests
import urllib

object_id = "country-profile--canada"
url = f"https://www.virustotal.com/api/v3/collections/{object_id}"
headers = {"accept": "application/json","x-apikey": <api-key>}
response = requests.get(url, headers=headers)
Path Params
string
required

Collection's ID

Headers
string
required

Your API key

Responses

Language
LoadingLoading…
Response
Click Try It! to start a request and see the response here! Or choose an example:
application/json