Interpret the output report of a malware analysis tool such as AMP Threat Grid and Cuckoo SandboxImplementing Cisco Cybersecurity Operations (210-255)
Both Cisco AMP Threat Grid and Cuckoo Sandbox are malware analysis tools. They can both execute a piece of malware and report on what the malware tries to do. Cisco AMP Threat Grid can either be on-premises as an appliance or a cloud server. Cuckoo Sandbox is an open-source project that is available to run on Windows, Linux, and macOS.
For Threat Grid, I don’t have access to get screenshots, but there is a good video from Cisco. This video gives a good overview of the tool that should get one familiar enough for the objective.