Hybrid Analysis

Updated 1 month ago by TruSTAR

This document describes how to set up and use the Hybrid Analysis premium intelligence source with the TruSTAR Web App.

Hybrid Analysis is an innovative technology integrated into the flagship product VxStream Sandbox. Hybrid Analysis is a unique technology that saves fine-grained memory dump snapshots of the monitored runtime processes as well as symbol information to perform a deep static analysis at the report generator stage.

  • Source Type: Premium Intel
  • Update Type: Query-based
  • Time to Install: 10 minutes

Data Types

The integration queries the following Observables from Hybrid Analysis:

  • URL
  • MD5
  • SHA1
  • SHA256
  • Malware

Requirements

  • A subscription to Hybrid Analysis
  • Hybrid Analysis API Key
  • Hybrid Analysis API Secret
TruSTAR Admin rights are required to activate this Premium Intelligence feed.

Getting Started

  1. Log into the TruSTAR Web App.
  2. Click the Marketplace icon on the left side icon list.
  3. Choose Premium intel.
  4. Click Subscribe on the Hybrid Analysis box.
  5. Enter your Hybrid Analysis information and click Save Credentials & Request Subscription.

TruSTAR will validate the integration within 48 hours and send an email when the integration has been enabled.

Known Issues

No reported issues.

Please reach out to support@trustar.co if you have issues with this integration.


How Did We Do?