What it does well
- Interactive real-time malware analysis with manual execution controls
- Supports multiple platforms including Windows, Linux, and mobile samples
- Community-driven threat intelligence sharing and sample repository
- Integration with major security tools and MISP for threat data sharing
Where it falls short
- May be detectable by advanced malware with anti-sandbox evasion techniques
- Limited environment customization compared to enterprise sandbox solutions
- Dependent on cloud availability and potential rate limits for bulk submissions
Core Features
| Interactive Malware Analysis | Yes |
| Supported File Types | 50+ |
| Video Report Generation | Yes |
Security
| Sandboxed Environment | Yes |
Analytics
| Real-time Process Monitoring | Yes |
| Network Activity Tracking | Yes |
| TTP Mapping (MITRE ATT&CK) | Yes |
| Detonation History | Yes |
Integrations
| API Access | Yes |
| Threat Intelligence Integration | Yes |
Collaboration
| Community Sharing | Yes |
Automation
| Automated Analysis | Yes |
Support
| Enterprise Plans | Yes |
Free
Free
- Interactive malware analysis
- Behavioral analysis
- 30-day sample retention
- Public submissions
- API access limited to 50 requests/month
- Community support
Pro
$99/mo
$990/yr billed annually
- Everything in Free
- 1-year sample retention
- Private submissions
- API access up to 5000 requests/month
- Priority support
- Advanced filters and reporting
- Export results in multiple formats
Enterprise
Custom
- Everything in Pro
- Custom retention policies
- Unlimited API access
- Dedicated support
- Custom integrations
- On-premise deployment options
- SLA guarantees
Comparisons with Any.run
ToolAudit may earn a commission when you visit a tool through our links. This never affects our scores or rankings. How we make money