Malware Analysis Mystic Stealer Bypassing Sandboxes

I've got a guy from Xcitium who just clicks "Yes or No".

I also have a guy who right clicks... Clicks Advanced Options... Then... Wait for it...

Max Settings... Then thinks he's secure.
💩🤣
Definitely sounds like security there is well understood and top priority as well. Just like Xcitium understands malware. Let me link malware analysis from them here.
Error: the requested resource doesn't exist.
 
On their new Analysis Platform Sophos Intelix it's flagged as malicious. Static and Dynamic.
I see only static features and file attributes. On the report nothing looks like the true behaviour of the file was reached. But nevertheless, it is detected.
 
  • Like
Reactions: Kongo
Never doubt us. But it's flagged by static and genome analysis, it has evaded the true sandbox.
Wow. What the hell is with sandboxes today. This is why I run ChromeOS enterprise. I don't believe a SOC or vSOC should ever use Windows. Seems like those who really "know" agree with that .
 
  • Like
Reactions: Kongo and Trident
This is all static analysis.
1687284127632.png
1687284178354.png