MetaDefender Sandbox v1.7.3 is now enterprise ready, utilizing OPSWAT’s powerful MetaDefender threat intelligence platform. This release adds behavior-based fuzzy hashes to improve unknown malware detection, enriching detection results. This feature is especially valuable for high-security critical infrastructure.
This is another step forward in making MetaDefender Sandbox the leading solution for fast, accurate malware analysis and actionable threat intelligence.
MetaDefender Sandbox’s unique Adaptive Threat Analysis detects and analyzes even the most evasive, targeted malware. Download our whitepaper for more information.

Enhancements and New Features:
- Integrates more than 40 billion hashes from the MetaDefender Cloud Reputation service, which improves incident response times and enriches results
- Includes enterprise features, such as a global, configurable retention policy
- Enhanced support for air-gapped environments
- Improved the false positive/false negative (FP/FN) ratio, specifically for Portable Executable (PE) installers
- Adds dozens of new threat indicators, improving the quality and quantity of Indicators of Compromise (IOCs) provided with each analysis
- Improved emulation engine
- Offline Reputation: This unique feature identifies malware samples based on known malicious behavior as seen on our cloud services, but without requiring an internet connection and is specifically suited for air-gapped systems
MetaDefender Sandbox Adaptive Threat Analysis
MetaDefender Sandbox leverages application emulation for our unique Adaptive Threat Analysis, unlike traditional sandboxes that use entire virtual machines for each analysis. This provides major advantages in speed and ability to detect targeted threats.

MetaDefender Sandbox community version is also available as a free service to users worldwide, including malware analysts and security professionals. We encourage our community to contribute files and vote on the results. We share this information with every user.
OPSWAT MetaDefender Threat Intelligence Platform
MetaDefender threat intelligence platform provides enterprise malware researchers, incident response teams, and technology providers with comprehensive threat detection and prevention technologies.
MetaDefender Core combines more than 20 industry-leading anti-malware engines to improve detection. Security professionals have access to rich metadata that exposes potential file irregularities and malicious capabilities.
The platform has collected file reputation data since 2012. The multiscanning results and file metadata are classified by MD5, SHA1, and SHA256 hashes to build a comprehensive file lookup service for our users. We currently have over 40 billion hashes in our database.
Talk to one of our experts today