Clear it in 3 steps
Start the environment
Investigate the target
Submit the flag

No executable malware, injection, or evasion capability is included. Analyze an inert configuration sample and recover the flag from the deobfuscated configuration record.
Inspect artifacts/malware/sample-config.txt
Find the deobfuscated_config_b64 line
Remove only the leading key and Base64-decode the remainder