Overview
Every File, Analyzed at Enterprise Scale
Security teams face a growing volume of files and objects that keep getting larger and more complex. Spectra Detect analyzes files from web traffic, email, endpoints, file shares, Amazon S3, and ICAP-connected systems in real time, identifying malware without executing files or slowing down existing workflows.
Powered by ReversingLabs proprietary, AI-driven binary analysis, Spectra Detect unpacks each file, extracts its internal indicators and metadata, and adds global reputation context from Spectra Intelligence to deliver threat classification in seconds.
What You Can Analyze
- Broadest file coverage: Unpack more than 400 formats and identify more than 4,800 file types across Windows, macOS, Linux, iOS, and Android
- Common delivery vectors: Executables, documents, scripts, archives, installers, firmware images, mobile apps, and software packages
- Large, complex files: Recursively deconstruct nested archives and embedded objects to expose deeply hidden threats
Detect Known, Unknown, and Zero-Day Threats
- Beyond signatures: Combine binary analysis, machine learning, reputation, heuristics, certificate intelligence, and similarity analysis to catch new, obfuscated, and repacked malware
- Fewer false positives: Correlate multiple detection signals before issuing a verdict, with tunable risk scoring and policy controls
- Actionable context: Each result includes extracted indicators, threat classification, risk score, and MITRE ATT&CK context where applicable
Scale Without Compromise
- Flexible cluster architecture: Scale incrementally from 100,000 to 100 million files per day by adding Worker nodes
- Detection engineering with YARA: Import, develop, test, and deploy YARA rules at scale, with centralized rule synchronization across Worker nodes and targeted retro-hunts
- Deployment your way: Run Spectra Detect as a hosted SaaS service managed by ReversingLabs, or deploy it in your own AWS account using AMI, container, or Kubernetes options
- Redundancy and regional deployment: Architectures designed for high availability and regional data requirements
Integrate With Your Security Stack
- Automatic file ingestion through pre-built connectors for email, endpoints, cloud storage, and network shares
- Deliver verdicts, risk scores, and enrichment to SIEM, SOAR, EDR, TIP, and sandbox tools through REST APIs, webhooks, and Amazon S3-based output
Getting Started After subscribing, contact ReversingLabs to choose a hosted or self-deployed option and receive deployment guidance, licensing instructions, and help sizing the environment to your expected file volume. The ReversingLabs team works with you to configure your cluster, connect your file ingestion sources, and validate detection output. To discuss your use case or request a private offer, reach out through AWS Marketplace.
Highlights (311 to 394 characters each):
Detect Malware Without Execution: Deep static analysis, machine learning, and integrated threat intelligence deliver verdicts in real time through binary decomposition and classification, with no sandbox detonation required. Catch known, unknown, and zero-day threats, including obfuscated and repacked variants, and scale from 100,000 to 100 million files per day by adding Worker nodes. Analyze Large, Complex Files: Unpack more than 400 formats and identify more than 4,800 file types, including nested archives, installers, firmware images, and documents with embedded objects. Spectra Detect recursively inspects every component, extracting indicators, mapping to MITRE ATT&CK where applicable, and assigning risk scores so analysts can prioritize threats without manual triage. Automate Ingestion, Deploy Your Way: Ingest files from email gateways, endpoints, cloud storage, network shares, and custom sources via REST API and ICAP. Deliver verdicts and enrichment to SIEM, SOAR, EDR, TIP, and sandbox tools. Run as hosted SaaS or in your own AWS account via AMI, container, or Kubernetes.
Highlights
- Detect Malware Without Execution: Deep static analysis, machine learning, and integrated threat intelligence deliver verdicts in real time through binary decomposition and classification, with no sandbox detonation required. Catch known, unknown, and zero-day threats, including obfuscated and repacked variants, and scale from 100,000 to 100 million files per day by adding Worker nodes.
- Analyze Large, Complex Files: Unpack more than 400 formats and identify more than 4,800 file types, including nested archives, installers, firmware images, and documents with embedded objects. Spectra Detect recursively inspects every component, extracting indicators, mapping to MITRE ATT&CK where applicable, and assigning risk scores so analysts can prioritize threats without manual triage.
- Automate Ingestion, Deploy Your Way: Ingest files from email gateways, endpoints, cloud storage, network shares, and custom sources via REST API and ICAP. Deliver verdicts and enrichment to SIEM, SOAR, EDR, TIP, and sandbox tools. Run as hosted SaaS or in your own AWS account via AMI, container, or Kubernetes.
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Financing for AWS Marketplace purchases
Pricing
Custom pricing options
How can we make this page better?
Legal
Content disclaimer
Delivery details
Software as a Service (SaaS)
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
Resources
Vendor resources
Support
Vendor support
24/7/365 Technical Support ReversingLabs provides technical support around the clock, every day of the year, for all Spectra Detect customers.
Contact Support Existing customers requiring assistance with ReversingLabs products and services can reach the support team through any of the following channels:
- Phone: +1 617 250 7518, option 2
- Email: support@reversinglabs.com
- Support Portal: https://support.reversinglabs.com
The support team can assist with configuration, troubleshooting, integration questions, and general product usage.
Self-Service Resources
- Spectra Detect Documentation: https://docs.reversinglabs.com/SpectraDetect/
- Learning Lab: https://www.reversinglabs.com/learning-with-reversinglabs
Getting Started After Subscription After subscribing, contact ReversingLabs to choose a hosted or self-deployed option and receive deployment guidance, licensing instructions, and environment sizing. The team will help you configure your deployment, set up file ingestion connectors, and integrate with your existing security tools.
Sales and Licensing Inquiries For questions about pricing, licensing, or private offers, contact sales@reversinglabs.com .
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.