- Products
- Learn
- Local User Groups
- Partners
- More
The State of Ransomware Q1 2026
Key Trends and Their Impact
Good, Better, Best:
Prioritizing Defenses Against Credential Abuse
AI Security Masters E7:
How CPR Broke ChatGPT's Isolation and What It Means for You
Blueprint Architecture for Securing
The AI Factory & AI Data Center
Call For Papers
Your Expertise. Our Stage
CheckMates Go:
CheckMates Fest
Hi there,
I'm using API with R77.30 Local Sandblast Appliances. After successfully uploading files I get 1004 NOT_FOUND when I try Query.
If I query with just sha1 hash the response includes all 3 file hashes (md5 sha1 & sha256) but but fails to return AV & Extraction results while TE can find file and returns a verdict.
I can see new file handled in ted.elg and stored in te_tmp_files and Emulation returning 'Benign' verdict. With debug I also see AV scan request and response in log for KavRpcScanFile (assume this is Kaspersky) and BdRpcSan (?) - both log Clean status but this result is never returned in API query. Can't find any logging related to Extraction...
I've attached API queries and responses.
Thanks
Alastair
Hi there,
I'm using API with R77.30 Local Sandblast Appliances. After successfully uploading files I get 1004 NOT_FOUND when I try Query.
If I query with just sha1 hash the response includes all 3 file hashes (md5 sha1 & sha256) but but fails to return AV & Extraction results while TE can find file and returns a verdict.
I can see new file handled in ted.elg and stored in te_tmp_files and Emulation returning 'Benign' verdict. With debug I also see AV scan request and response in log for KavRpcScanFile (assume this is Kaspersky) and BdRpcSan (?) - both log Clean status but this result is never returned in API query. Can't find any logging related to Extraction...
I've attached API queries and responses.
Thanks
Alastair
Hi there,
I'm using API with R77.30 Local Sandblast Appliances. After successfully uploading files I get 1004 NOT_FOUND when I try Query.
If I query with just sha1 hash the response includes all 3 file hashes (md5 sha1 & sha256) but but fails to return AV & Extraction results while TE can find file and returns a verdict.
I can see new file handled in ted.elg and stored in te_tmp_files and Emulation returning 'Benign' verdict. With debug I also see AV scan request and response in log for KavRpcScanFile (assume this is Kaspersky) and BdRpcSan (?) - both log Clean status but this result is never returned in API query. Can't find any logging related to Extraction...
I've attached API queries and responses.
Thanks
Alastair