How it worksFeaturesDocsEarly accessGitHubDashboard

How to integrate MalShare using MCP

Inspect MalShare malware sample metadata. This guide creates an MCP server from Arthur's MalShare template — tools preconfigured against https://malshare.com — and finishes by sharing the server's MCP swagger documentation.

Steps

  1. Open the Secrets vault and create a secret named MALSHARE_API_KEY holding your API key. Register with MalShare and send your key in the api_key query parameter.

    Open the Secrets vault to store the MalShare credential before using the template

    Start the New secret wizard

    Name the secret MALSHAREAPIKEY — servers reference it by this name

  2. Go to the REST API Templates gallery and search for MalShare.

    Record what the credential is for so it stays recognizable

    Continue to the protected value step

  3. Click Use template on the MalShare card to open the server-creation dialog.

    Enter the credential value — a demo value here; use your real key when adopting the integration

    Review the generated secret reference syntax

  4. Review the server name and select MALSHARE_API_KEY in the credential field — the dialog only accepts vault secrets, and it lists every tool that will be created.

    Store the MALSHAREAPIKEY secret in the vault

    Open the REST API template gallery

    Search the gallery for the MalShare integration

  5. Click Create server. Arthur creates the server, applies the authentication, and generates all the tools.

    Open the MalShare template with its preconfigured tools

    Name the server after the integration it provides

    Pick the MALSHAREAPIKEY secret from the vault suggestions

    Select the stored credential

    Create the MalShare server with its preconfigured tools

  6. Open the server's Tools tab to review the generated tools.

    Review the tools generated from the MalShare template

  7. Open the server's Connect section and click Share the MCP swagger documentation — Arthur generates the public documentation link and QR code for this server.

    Open the server's Connect section, where the MCP endpoint and its documentation live

    Open the MCP swagger documentation share panel

    Show the generated swagger documentation link and QR code for this server

Confirm it worked

The server appears with 2 preconfigured tool(s): get_sample_details, get_daily_hashes. The Connect section offers the MCP swagger documentation — a shareable page with setup instructions for any AI client.

Good to know

  • Look up stored metadata for a malware sample by MD5, SHA-1, or SHA-256 hash.
  • This integration requires a credential (api-key). Get one at https://malshare.com/register.php.
  • Official API documentation: https://malshare.com/doc.php
  • Editing a tool later never changes the template — templates are starting points, and the server is fully yours after creation.

Related

Tutorial video