Hybrid Analysis

Categories

Categories: ,

Tags

Vendor

Overview

Mindflow and Hybrid Analysis have partnered to enable users to automate their incident management and better protect their information systems.

Hybrid Analysis Overview

Hybrid Analysis is a free and independent service powered by Falcon Sandbox. It provides a subset of Falcon Sandbox capabilities for free via its website.

About Falcon Sandbox

CrowdStrike Falcon Sandbox is an automated malware analysis solution. Falcon Sandbox performs deep analysis of evasive and unknown threats. Then it enriches the analysis results with threat intelligence and delivers actionable IOCs to your analysts.

Hybrid Analysis

The web-based solution is a file analysis approach combining runtime data with memory dump analysis. This way, it works by extracting all possible execution pathways, even for the most evasive malware. All data extracted from the engine is then processed automatically. The results from all the executions are gathered and integrated into a malware analysis report that users can pull.

hybrid analysis

Benefits

  • Submit files/URLs for analysis
  • Pull the report generated by the analysis
  • Perform advanced search queries: search for a virus family name, find all reports that contacted a specific IP address, domain, URL, have a particular type of file, fuzzy hash, #hashtag, shared artifact, and so on

Automation Through Mindflow

Automation Use Case

Related Integrations