TrustRadius: an HG Insights company

VirusTotal

Score9.6 out of 10

17 Reviews and Ratings

What is VirusTotal?

Chronicle, a security company supported by Alphabet (Google), offers VirusTotal, a malware scanning and threat intelligence service.

Categories & Use Cases

VirusTotal is a must have in this day and age of constant attack

Use Cases and Deployment Scope

VirusTotal is our go-to provider of file and URL analysis. The user interface is fantastic, the community is great, and the data is second to none that virus total can provide. With the current world of constant attack, having VirusTotal as a provider to assist us in investigations is absolutely needed.

Pros

  • File Analysis
  • URL Analysis
  • User Interface
  • Community Participation

Cons

  • File scanning can be very slow sometimes

Most Important Features

  • File Scanning
  • URL Scanning
  • Community Feedback

Return on Investment

  • Indepth analysis of security events
  • Helps find risks and false positives

Other Software Used

Microsoft Defender for Endpoint (formerly Microsoft Defender ATP), Malwarebytes, Microsoft Defender for Cloud Apps (formerly Microsoft Cloud App Security)

VirusTotal

Use Cases and Deployment Scope

VirusTotal is used to analyze any suspicious files that come into the business via multiple methods - from suspected malware that may be blocked by our email filters but claimed as a false positive by users, to files that may have a suspicious name or suspicious activity. VirusTotal is an excellent additional point of defense.

Pros

  • Fast file scanning
  • No agent required
  • Available from anywhere

Cons

  • Integration with common AV clients for a second opinion would be good

Most Important Features

  • Ad-Hoc file checking
  • Confirming or denying suspicious files

Return on Investment

  • Extremely useful to confirm if a file is suspicious or not

Other Software Used

SentinelOne, OpenVPN Access Server

Add VirusTotal to Your IT Security Toolbox!

Use Cases and Deployment Scope

I have been casually using and suggesting VirusTotal for years but my company [has] now formally [started to] integrate it into our anti-phishing software which utilizes the VirusTotal API to scan potentially malicious links and attachments.

Pros

  • Provides high confidence scan results by utilizing a large number of resources in their network.
  • It's easy for non-technical users!
  • Their API functionality made it easy to integrate with our anti-phishing system.

Cons

  • I'm not sure VirusTotal can improve this themselves but just keeping up with the evolving "known" threat landscape is tough so even though VirusTotal is very good, nothing is 100% effective in this space.

Most Important Features

  • The API functionality is a key part of our e-mail hygiene system.
  • VirusTotal's multiple scan engines provides more trustworthy results over a single source scan.

Return on Investment

  • Teaching users to use VirusTotal allows for some self service and quicker turnaround for users with questions about whether links or files are "safe".
  • The API integration with our anti-phishing system provides an extra degree of confidence in results vs. a single detection engine technology.

Other Software Used

Sophos Intercept X, KnowBe4 PhishER, Tenable.io