# Best Malware Analysis Tools

## How Many Malware Analysis Tools Products Does G2 Track?

**Total Products under this Category:** 53

### Category Stats (Aug 2026)

- **Average Rating:** 4.51/5 The average rating of products in this category, based on all submitted ratings
- **Top Trending Product:** OPSWAT Filescan (+0.86%) - Among all products in this category, OPSWAT Filescan recorded the largest rating increase compared to last month

_Last updated: August 01, 2026_

## How Does G2 Rank Malware Analysis Tools Products?

**Why You Can Trust G2's Software Rankings:**

- 30 Analysts and Data Experts
- 2,100+ Authentic Reviews
- 53+ Products
- Unbiased Rankings

G2's software rankings are built on verified user reviews, rigorous moderation, and a consistent research methodology maintained by a team of analysts and data experts. Each product is measured using the same transparent criteria, with no paid placement or vendor influence. While reviews reflect real user experiences, which can be subjective, they offer valuable insight into how software performs in the hands of professionals. Together, these inputs power the G2 Score, a standardized way to compare tools within every category.

## G2 Grid® for Malware Analysis Tools
 ![G2 Grid® for Malware Analysis Tools plotting products by satisfaction and market presence](https://www.g2.com/categories/malware-analysis-tools/grids.png?focus%5B%5D=14988&focus%5B%5D=128445&focus%5B%5D=1386549&focus%5B%5D=96667&focus%5B%5D=85846&focus%5B%5D=1318206&focus%5B%5D=99935&focus%5B%5D=128448)

Highlighted products: ESET PROTECT, ANY.RUN Sandbox, Cloud-Delivered Security Services, Coro Cybersecurity, VirusTotal, Google VirusTotal, ReversingLabs, and Intezer.

Underlying data: [Grid® JSON](https://www.g2.com/categories/malware-analysis-tools/grids.json?focus%5B%5D=eset-protect&focus%5B%5D=any-run-sandbox&focus%5B%5D=cloud-delivered-security-services&focus%5B%5D=coro-cybersecurity&focus%5B%5D=virustotal&focus%5B%5D=google-virustotal&focus%5B%5D=reversinglabs&focus%5B%5D=intezer-intezer)

**Sponsored**

### DNSFilter

DNSFilter is a cybersecurity solution designed to enhance internet safety and workplace productivity by actively blocking malicious online threats. By leveraging advanced artificial intelligence, DNSFilter provides protective Domain Name System (DNS) services that effectively shield users from a wide range of cyber threats, including phishing attacks, malware, and other advanced security risks. With its robust infrastructure, DNSFilter processes an impressive volume of queries, resolving upwards of 130 billion queries daily while blocking an average of 12 million threat queries each day. The target audience for DNSFilter includes businesses of all sizes, educational institutions, and any organization that seeks to safeguard its network from cyber threats. As cyberattacks increasingly leverage DNS, DNSFilter serves as a critical line of defense for organizations looking to protect sensitive data and maintain operational integrity. By implementing DNSFilter, organizations can not only mitigate risks but also enhance overall productivity by reducing the potential for downtime caused by security incidents. One of the standout features of DNSFilter is its unique machine learning models which block threats an average of 10 days faster than traditional threat feeds. This rapid response is crucial in a landscape where cyber threats evolve quickly, and timely intervention can prevent significant damage. The AI-driven technology behind DNSFilter continuously analyzes and adapts to emerging threats, ensuring that users are protected with the most current security measures available. This proactive approach to threat detection and blocking is a key differentiator that sets DNSFilter apart from other cybersecurity solutions. In addition to its threat-blocking capabilities, DNSFilter offers a user-friendly interface that simplifies management and monitoring for IT administrators. The platform provides detailed reporting and analytics, allowing organizations to gain insights into their network's security posture and make informed decisions regarding their cybersecurity strategies. With over 35 million users placing their trust in DNSFilter, the solution not only enhances security but also fosters a more productive work environment by minimizing distractions and interruptions caused by cyber threats. Overall, DNSFilter represents a comprehensive and effective solution for organizations seeking to bolster their cybersecurity defenses while promoting a safer and more efficient online experience. Its speed, intelligence, and ease of use make it a valuable asset in the ongoing battle against cyber threats.

[Visit website](https://www.g2.com/external_clickthroughs/record?secure%5Bad_program%5D=ppc&secure%5Bad_slot%5D=category_product_list_llm&secure%5Bcategory_id%5D=2430&secure%5Bchosen_at%5D=2026-08-01T07%3A59%3A35Z&secure%5Bdisplayable_resource_id%5D=2430&secure%5Bdisplayable_resource_type%5D=Category&secure%5Bmedium%5D=sponsored&secure%5Bplacement_reason%5D=page_category&secure%5Bplacement_resource_ids%5D%5B%5D=2430&secure%5Bprioritized%5D=false&secure%5Bproduct_id%5D=23936&secure%5Bresource_id%5D=2430&secure%5Bresource_type%5D=Category&secure%5Bsource_type%5D=category_page&secure%5Bsource_url%5D=https%3A%2F%2Fwww.g2.com%2Fcategories%2Fmalware-analysis-tools%3Fopen_modal_url%3D%252Fproducts%252Fintezer-intezer%252Fwishlists%253Fhost_path%253D%25252Fcategories%25252Fmalware-analysis-tools%2526source%253Dcategory&secure%5Btoken%5D=0243dcebbc4c4e627ea4e3c6cf668d266451518a8289a833c9d2e92ee161760a&secure%5Burl%5D=https%3A%2F%2Fexplore.dnsfilter.com%2FG2-free-trial%3Futm_source%3DG2%26utm_medium%3Dpaid-social%26utm_campaign%3Ddnsf_dg_2026-07_All_G2_free-trial&secure%5Burl_type%5D=custom_url)

### [ESET PROTECT](https://www.g2.com/it/products/eset-protect/reviews)

Rimani un passo avanti rispetto alle minacce informatiche conosciute ed emergenti con il nostro approccio nativo all'IA, orientato alla prevenzione. ESET combina la potenza dell'IA con l'esperienza umana per rendere la protezione facile ed efficace. Sperimenta una protezione di classe superiore grazie alla nostra intelligence globale sulle minacce informatiche, compilata ed esaminata per oltre 30 anni, che alimenta la nostra vasta rete di ricerca e sviluppo guidata da ricercatori riconosciuti a livello industriale. ESET PROTECT, la nostra piattaforma di cybersecurity XDR orientata al cloud, combina capacità di prevenzione di nuova generazione, rilevamento e caccia proattiva alle minacce. Le soluzioni altamente personalizzabili di ESET includono supporto locale e hanno un impatto minimo sulle prestazioni, identificano e neutralizzano le minacce conosciute ed emergenti prima che possano essere eseguite, supportano la continuità aziendale e riducono i costi di implementazione e gestione. COME BENEFICERÀ LA TUA ORGANIZZAZIONE - Migliorata protezione contro ransomware e minacce zero-day tramite tecnologia di sandboxing basata su cloud. - Aiuta a rispettare le normative sui dati grazie alle capacità di crittografia completa del disco su Windows e macOS. - La console ESET PROTECT facilmente accessibile migliora il TCO della gestione della sicurezza. - Gestione remota da un'unica interfaccia per la visibilità delle minacce, degli utenti e degli elementi in quarantena. - Gli endpoint aziendali e i dispositivi mobili sono protetti tramite tecnologia avanzata a più livelli, ora con protezione contro attacchi brute-force.

**Average Rating:** 4.6/5.0

**Total Reviews:** 962

#### How Do G2 Users Rate ESET PROTECT?

- **Ritiene che the product sia stato un valido partner commerciale?:** 8.9/10 (Category avg: 8.8/10)
- **Valutazione del Malware:** 9.6/10 (Category avg: 9.0/10)
- **Rilevamento di malware:** 9.6/10 (Category avg: 9.1/10)
- **Analisi del file:** 9.5/10 (Category avg: 9.0/10)

#### Who Is the Company Behind ESET PROTECT?

- **Venditore:** [ESET](https://www.g2.com/it/sellers/eset)
- **Sito web dell'azienda:** www.eset.com
- **Anno di Fondazione:** 1992
- **Sede centrale:** Bratislava, Slovak Republic
- **Twitter:** @ESET  
275,702 follower su Twitter
- **Pagina LinkedIn®:** [www.linkedin.com](https://www.g2.com/it/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=121239711b8ff4e4d5fa037290b0a2932087a3883941870cac8d063051fecb3a&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F28967%2F&secure%5Burl_type%5D=linkedin_company_website)  
1,983 dipendenti su LinkedIn®

#### Who Uses This Product?

- **Who Uses This:** IT Manager, Network Administrator
- **Top Industries:** Tecnologia dell'informazione e servizi, Software per computer
- **Company Size:** 47% Medium, 45% Small

#### What Do G2 Reviewers Say About ESET PROTECT?

_AI-generated summary from verified user reviews_

##### Pros

- Gli utenti apprezzano la **installazione e configurazione semplice** di ESET PROTECT, rendendolo accessibile a tutti.
- Gli utenti apprezzano molto la **robusta protezione contro i ransomware** offerta da ESET PROTECT per tutti i dispositivi endpoint.
- Gli utenti elogiano la **robusta protezione contro il ransomware** fornita da ESET PROTECT su diverse piattaforme.
- Gli utenti apprezzano la **grande sicurezza** di ESET PROTECT, che protegge efficacemente i sistemi senza compromettere le prestazioni.
- Gli utenti apprezzano la **gestione centralizzata** di ESET PROTECT, migliorando la comodità e l'efficacia nel monitoraggio di tutti i dispositivi.

##### Cons

- Gli utenti trovano che ESET PROTECT abbia una significativa **curva di apprendimento** , rallentando il processo di onboarding e utilizzo.
- Gli utenti trovano la **difficile configurazione** di ESET PROTECT frustrante, poiché complica i processi di installazione e manutenzione.
- Gli utenti trovano ESET PROTECT **non facile da usare** , citando il numero eccessivo di clic necessari per accedere ai dati necessari e personalizzare i dashboard.
- Gli utenti segnalano una **mancanza di chiarezza** nella gestione delle policy di ESET PROTECT, ostacolando un monitoraggio e un'implementazione della sicurezza efficaci.
- Gli utenti trovano la **navigazione difficile** di ESET PROTECT frustrante, ostacolando un'implementazione efficiente e aumentando i ritardi.

#### What Are Recent G2 Reviews of ESET PROTECT?

**["Ottimo prodotto che colloca ESET in cima alla lista"](https://www.g2.com/it/survey_responses/eset-protect-review-10057911)**

**Rating:** 4.0/5.0 stars

_— Jonathan B._

[Read full review](https://www.g2.com/it/survey_responses/eset-protect-review-10057911)

**["Amministrazione della Sicurezza Centralizzata ed Efficiente"](https://www.g2.com/it/survey_responses/eset-protect-review-12627499)**

**Rating:** 5.0/5.0 stars

_— Oscar Humberto G._

[Read full review](https://www.g2.com/it/survey_responses/eset-protect-review-12627499)

#### What Are G2 Users Discussing About ESET PROTECT?

- [A cosa serve la piattaforma ESET PROTECT?](https://www.g2.com/it/discussions/what-is-eset-protect-platform-used-for)
- [A cosa serve ESET PROTECT Advanced?](https://www.g2.com/it/discussions/what-is-eset-protect-advanced-used-for)
- [How does ESET encryption work?](https://www.g2.com/it/discussions/eset-secure-authentication-how-does-eset-encryption-work)
- [Is ESET better than Sophos?](https://www.g2.com/it/discussions/is-eset-better-than-sophos)
- [Is ESET an antivirus?](https://www.g2.com/it/discussions/is-eset-an-antivirus) - 1 comment

### [ANY.RUN Sandbox](https://www.g2.com/products/any-run-sandbox/reviews)

ANY.RUN's Interactive Sandbox is a cloud-based service for in-depth malware analysis. It offers visibility into threat behavior based on interactivity that allows you to detonate threats, fine-tune analysis, and see the entire attack unfold with insights into related network activities, system processes, and TTPs in use. The environment is secure, configurable, and supports Windows, Linux, and Android. The sandbox provides SOC teams with a simple yet highly detailed way to break down cyber threats for fast decision making, investigation, and response.

**Average Rating:** 4.7/5.0

**Total Reviews:** 217

#### How Do G2 Users Rate ANY.RUN Sandbox?

- **Has the product been a good partner in doing business?:** 9.2/10 (Category avg: 8.8/10)
- **Malware Evaluation:** 9.3/10 (Category avg: 9.0/10)
- **Malware Detection:** 9.2/10 (Category avg: 9.1/10)
- **File Analysis:** 9.3/10 (Category avg: 9.0/10)

#### Who Is the Company Behind ANY.RUN Sandbox?

- **Seller:** [ANY.RUN](https://www.g2.com/sellers/any-run)
- **Company Website:** any.run
- **Year Founded:** 2016
- **HQ Location:** Dubai, United Arab Emirates
- **Twitter:** @anyrun\_app  
33,120 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=aeebcd1e60c38d84700c804e90761d90d028c9922a8e3005a20a20a248e65151&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F30692044&secure%5Burl_type%5D=linkedin_company_website)  
394 employees on LinkedIn®

#### Who Uses This Product?

- **Who Uses This:** Security Analyst, Cyber Security Analyst
- **Top Industries:** Computer & Network Security, Information Technology and Services
- **Company Size:** 32% Large, 30% Small

#### What Are Recent G2 Reviews of ANY.RUN Sandbox?

**["Safe, Isolated Environment for Testing Experimental Code"](https://www.g2.com/survey_responses/any-run-sandbox-review-12771445)**

**Rating:** 5.0/5.0 stars

_— Anurudh T._

[Read full review](https://www.g2.com/survey_responses/any-run-sandbox-review-12771445)

**["Extremely Valuable Malware Metadata for Large-Scale Threat Research"](https://www.g2.com/survey_responses/any-run-sandbox-review-12472660)**

**Rating:** 4.5/5.0 stars

_— Dave P._

[Read full review](https://www.g2.com/survey_responses/any-run-sandbox-review-12472660)

#### What Are G2 Users Discussing About ANY.RUN Sandbox?

- [What is Any.Run used for?](https://www.g2.com/discussions/what-is-any-run-used-for) - 1 comment

### [Cloud-Delivered Security Services](https://www.g2.com/products/cloud-delivered-security-services/reviews)

Overview Our Cloud-Delivered Security Services are natively integrated, offering consistent best-in-class protection everywhere. Backed by our world-renowned Unit 42® Threat Research team, this one-of-a-kind protection uses the network effect of 70,000+ global customers to share intelligence across all threat vectors to stop known, unknown and zero-day threats 180X faster than any other platform or point solution and prevent patient zero. What are Cloud-Delivered Security Services? A comprehensive suite of natively-integrated security services delivered from the cloud that provide protection for a customer’s entire network, securing all users, applications, devices, and data, regardless of the location. Our security services are powered by Precision AI™ and analyze real network traffic inline and stop threats in real time, including phishing, malware, command and control, ransomware, DNS-layered threats, and much more. These services include: Advanced Threat Prevention, the industry’s leading intrusion prevention system that addresses known and unknown command-and-control attacks from red team tools, as well as injection attacks and vulnerability exploits. Advanced WildFire, the industry’s largest malware analysis engine that stops the first instance of known, unknown and highly-evasive malware. Advanced URL Filtering, the industry’s first web security engine to stop unknown phishing attacks in real time. Advanced DNS Security, the industry’s most comprehensive DNS security solution that offers over 2x more threat coverage than the next leading security vendor and is also the industry’s first solution to stop network-based DNS hijacking attacks in real time. IoT/OT Security, the industry’s most comprehensive zero trust solution for IoT devices, helping you see and secure all connected devices in your network. NG-CASB, our SaaS application and data security solution that allows you to discover and control all of the SaaS consumption in your network. AI Access Security, our solution that ensures safe use of GenAI apps with access control, data protection and real-time visibility of over 600 applications, so that your employees can securely use AI to increase their productivity. With the power of AI and a robust global cloud infrastructure, Palo Alto Networks Cloud-Delivered Security Services can scale to stay ahead of today's threats and keep up with your organization's network security needs.

**Average Rating:** 4.4/5.0

**Total Reviews:** 101

#### How Do G2 Users Rate Cloud-Delivered Security Services?

- **Has the product been a good partner in doing business?:** 8.8/10 (Category avg: 8.8/10)
- **Malware Evaluation:** 8.8/10 (Category avg: 9.0/10)
- **Malware Detection:** 8.7/10 (Category avg: 9.1/10)
- **File Analysis:** 8.5/10 (Category avg: 9.0/10)

#### Who Is the Company Behind Cloud-Delivered Security Services?

- **Seller:** [Palo Alto Networks](https://www.g2.com/sellers/palo-alto-networks)
- **Year Founded:** 2005
- **HQ Location:** Santa Clara, CA
- **Twitter:** @PaloAltoNtwks  
128,951 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=283fa006a7b7db5565e608e4d1bc1dafae45bdf4b312f2cd5bb208ac9271f81d&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F30086%2F&secure%5Burl_type%5D=linkedin_company_website)  
22,313 employees on LinkedIn®
- **Ownership:** NYSE: PANW

#### Who Uses This Product?

- **Who Uses This:** Network Engineer
- **Top Industries:** Information Technology and Services, Computer & Network Security
- **Company Size:** 41% Medium, 34% Large

#### What Are Recent G2 Reviews of Cloud-Delivered Security Services?

**["Good Security Service with Strong Cloud Features"](https://www.g2.com/survey_responses/cloud-delivered-security-services-review-11484417)**

**Rating:** 4.5/5.0 stars

_— Komal P._

[Read full review](https://www.g2.com/survey_responses/cloud-delivered-security-services-review-11484417)

**["Simple and fast"](https://www.g2.com/survey_responses/cloud-delivered-security-services-review-11356080)**

**Rating:** 4.5/5.0 stars

_— Verified User in Pharmaceuticals_

[Read full review](https://www.g2.com/survey_responses/cloud-delivered-security-services-review-11356080)

### [Coro Cybersecurity](https://www.g2.com/it/products/coro-cybersecurity/reviews)

Coro è l'azienda di cybersecurity facile. Abbiamo progettato una piattaforma all-in-one che ogni team IT snello padroneggerà. Mentre altre soluzioni spaventano le persone inducendole ad acquistare prodotti complicati e confusi, noi ci distinguiamo per l'elegante semplicità. Coro è veloce da implementare, facile da usare e progettato per non farti perdere tempo. Una volta installato Coro, difficilmente penserai a noi. Questo è il punto. Coro rileva e risolve automaticamente i problemi di sicurezza, così i team IT non devono perdere tempo a investigare o risolvere problemi. Siamo anche una delle aziende tecnologiche in più rapida crescita in Nord America, chiedi a Deloitte. Progettata principalmente per team IT snelli, la piattaforma di Coro è particolarmente vantaggiosa per le organizzazioni che potrebbero non disporre di risorse IT estese o team di cybersecurity dedicati. Con la crescente complessità delle minacce informatiche, queste aziende spesso trovano difficile mantenere misure di sicurezza adeguate. Coro colma questa lacuna automatizzando il rilevamento e la risoluzione delle minacce alla sicurezza, consentendo alle aziende di concentrarsi sulle loro operazioni principali senza la costante preoccupazione di potenziali violazioni o incidenti di sicurezza. Uno dei principali vantaggi di Coro è la sua interfaccia intuitiva e facile da usare, che semplifica la gestione dei protocolli di cybersecurity. Questa facilità d'uso è particolarmente vantaggiosa per le organizzazioni con competenze IT limitate, poiché riduce al minimo la necessità di formazione estesa o conoscenze tecniche. Inoltre, le funzionalità di monitoraggio e reporting continuo di Coro forniscono alle aziende preziose informazioni sulla loro postura di sicurezza, consentendo loro di prendere decisioni informate sulle loro strategie di cybersecurity. Un'altra caratteristica impressionante è quanto sia completa, ma potente, la sua piattaforma all-in-one. Utilizzando la tecnologia AI avanzata, rileva e risolve automaticamente oltre il 92% delle minacce, garantendo che le potenziali vulnerabilità siano identificate e affrontate in tempo reale, riducendo significativamente il rischio di violazioni dei dati e altri incidenti informatici. La loro impressionante performance è stata riconosciuta da G2 con un tasso di approvazione del 94% dagli utenti e da SE Labs, che li ha premiati con tre valutazioni AAA per i loro moduli EDR, Email e Cloud. Nel complesso, la piattaforma di cybersecurity di Coro rappresenta un significativo avanzamento nel campo della cybersecurity. Automatizzando il rilevamento e la risoluzione delle minacce, offrendo soluzioni personalizzabili e fornendo un'esperienza user-friendly, Coro consente alle organizzazioni di difendersi efficacemente contro il panorama in evoluzione delle minacce informatiche. Il suo riconoscimento come una delle aziende di cybersecurity in più rapida crescita in Nord America sottolinea ulteriormente il suo impegno a fornire soluzioni di sicurezza innovative ed efficaci.

**Average Rating:** 4.7/5.0

**Total Reviews:** 232

#### How Do G2 Users Rate Coro Cybersecurity?

- **Ritiene che the product sia stato un valido partner commerciale?:** 9.6/10 (Category avg: 8.8/10)
- **Valutazione del Malware:** 9.3/10 (Category avg: 9.0/10)
- **Rilevamento di malware:** 9.6/10 (Category avg: 9.1/10)
- **Analisi del file:** 9.4/10 (Category avg: 9.0/10)

#### Who Is the Company Behind Coro Cybersecurity?

- **Venditore:** [Coronet](https://www.g2.com/it/sellers/coronet)
- **Sito web dell'azienda:** www.coro.net
- **Anno di Fondazione:** 2014
- **Sede centrale:** Chicago, IL
- **Twitter:** @coro\_cyber  
1,876 follower su Twitter
- **Pagina LinkedIn®:** [www.linkedin.com](https://www.g2.com/it/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=ca9633d1b65a51dd09dc2284c4940d107c5da9f1a2465caf5fb051ba092bb0c0&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fcoronet&secure%5Burl_type%5D=linkedin_company_website)  
283 dipendenti su LinkedIn®

#### Who Uses This Product?

- **Who Uses This:** IT Manager, IT Director
- **Top Industries:** Gestione delle organizzazioni non profit, Servizi finanziari
- **Company Size:** 56% Medium, 36% Small

#### What Do G2 Reviewers Say About Coro Cybersecurity?

_AI-generated summary from verified user reviews_

##### Pros

- Gli utenti apprezzano la **facilità d'uso** di Coro Cybersecurity, sottolineando la sua semplicità e l'interfaccia intuitiva per una protezione efficace.
- Gli utenti apprezzano la **tranquillità derivante dalle robuste funzionalità di sicurezza** offerte da Coro Cybersecurity, insieme alla facile installazione.
- Gli utenti apprezzano il **fantastico supporto clienti** e il facile processo di installazione, apprezzando la tranquillità che offre.
- Gli utenti apprezzano la **sicurezza conveniente e completa** di Coro, migliorando efficacemente la protezione per gli utenti e gli endpoint.
- Gli utenti apprezzano la **facile configurazione** di Coro Cybersecurity, che consente un'implementazione senza problemi e un supporto continuo.

##### Cons

- Gli utenti riscontrano **problemi di prestazioni** con Coro, notando ritardi nel supporto e limitazioni nella funzionalità di filtraggio dello spam.
- Gli utenti suggeriscono miglioramenti nella **segnalazione di malware e nei dettagli del cruscotto** per un'esperienza complessiva migliore con Coro Cybersecurity.
- Gli utenti notano un aumento dei **falsi positivi** che può ritardare la risoluzione delle email segnalate, influenzando la loro esperienza.
- Gli utenti sperimentano **inesattezza** nell'addestramento antispam, portando a confusione e inefficienza a causa di falsi positivi e negativi.
- Gli utenti esprimono frustrazione per le **funzionalità limitate** in Coro Cybersecurity, specialmente per quanto riguarda i rapporti di phishing e i moduli di base.

#### What Are Recent G2 Reviews of Coro Cybersecurity?

**["Suite di sicurezza tutto-in-uno che rende facile l'onboarding degli MSP"](https://www.g2.com/it/survey_responses/coro-cybersecurity-review-13102469)**

**Rating:** 5.0/5.0 stars

_— Utente verificato in Sicurezza informatica e di rete_

[Read full review](https://www.g2.com/it/survey_responses/coro-cybersecurity-review-13102469)

**["Coro è un fantastico sistema EDR (Endpoint Detection & Response) gestito"](https://www.g2.com/it/survey_responses/coro-cybersecurity-review-10772267)**

**Rating:** 5.0/5.0 stars

_— Lonnie S._

[Read full review](https://www.g2.com/it/survey_responses/coro-cybersecurity-review-10772267)

#### What Are G2 Users Discussing About Coro Cybersecurity?

- [A cosa serve Coro Cybersecurity?](https://www.g2.com/it/discussions/what-is-coro-cybersecurity-used-for) - 1 comment
- [What software do you need for cyber security?](https://www.g2.com/it/discussions/what-software-do-you-need-for-cyber-security)
- [Quali sono i cinque attributi chiave della sicurezza informatica?](https://www.g2.com/it/discussions/what-are-the-five-key-attributes-of-cybersecurity) - 1 comment
- [Cosa fa il software di sicurezza informatica?](https://www.g2.com/it/discussions/what-does-cybersecurity-software-do) - 1 comment
- [Che cos'è il software Coronet?](https://www.g2.com/it/discussions/what-is-coronet-software) - 1 comment

### [VirusTotal](https://www.g2.com/products/virustotal/reviews)

VirusTotal is a free online service that analyzes files and URLs to detect malware and other malicious content. By aggregating results from over 70 antivirus scanners and URL/domain blocklisting services, it provides a comprehensive assessment of potential threats. Users can submit files up to 650 MB or URLs for scanning, receiving detailed reports that include detection rates from various security vendors, behavioral analysis, and metadata extraction. This collaborative approach enhances the detection of threats that individual antivirus solutions might miss. Key Features: - Multi-Engine Scanning: Utilizes over 70 antivirus engines to analyze files and URLs, offering a broad detection capability. - File and URL Analysis: Supports scanning of files up to 650 MB and URLs, providing flexibility in threat assessment. - API Integration: Offers an API for automated submissions and integration with other security tools, facilitating streamlined workflows. - Dynamic Analysis: Employs the Cuckoo sandbox for dynamic malware analysis, enabling in-depth examination of suspicious files. - Statistical Insights: Provides real-time statistics on scanned files and detected threats, aiding in trend analysis and threat intelligence. Primary Value: VirusTotal enhances cybersecurity by offering a centralized platform for comprehensive malware detection and analysis. It addresses the limitations of individual antivirus solutions by aggregating multiple detection engines, thereby reducing false negatives and improving threat identification. This service is invaluable for security professionals, researchers, and organizations seeking to bolster their threat intelligence, validate suspicious files or URLs, and respond swiftly to potential security incidents.

**Average Rating:** 4.7/5.0

**Total Reviews:** 33

#### How Do G2 Users Rate VirusTotal?

- **Has the product been a good partner in doing business?:** 10.0/10 (Category avg: 8.8/10)
- **Malware Evaluation:** 8.9/10 (Category avg: 9.0/10)
- **Malware Detection:** 9.3/10 (Category avg: 9.1/10)
- **File Analysis:** 9.3/10 (Category avg: 9.0/10)

#### Who Is the Company Behind VirusTotal?

- **Seller:** [VirusTotal](https://www.g2.com/sellers/virustotal)
- **Year Founded:** 2004
- **HQ Location:** Spain
- **Twitter:** @virustotal  
32,650 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=06a41ec555b2e91137034a4630a7230d1d9f9952d0f41378b68ca9efdce27c7d&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F3847700%2F&secure%5Burl_type%5D=linkedin_company_website)  
70 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Information Technology and Services
- **Company Size:** 40% Small, 31% Medium

#### What Are Recent G2 Reviews of VirusTotal?

**["Confidence-Boosting File Security with VirusTotal"](https://www.g2.com/survey_responses/virustotal-review-12084323)**

**Rating:** 5.0/5.0 stars

_— Vikas V._

[Read full review](https://www.g2.com/survey_responses/virustotal-review-12084323)

**["Quick and reliable analysis of suspicious files and URLs"](https://www.g2.com/survey_responses/virustotal-review-11468321)**

**Rating:** 4.5/5.0 stars

_— Seatiel Y._

[Read full review](https://www.g2.com/survey_responses/virustotal-review-11468321)

#### What Are G2 Users Discussing About VirusTotal?

- [Is VirusTotal open source?](https://www.g2.com/discussions/is-virustotal-open-source)
- [Is VirusTotal a sandbox?](https://www.g2.com/discussions/is-virustotal-a-sandbox)
- [What should I look for in VirusTotal?](https://www.g2.com/discussions/what-should-i-look-for-in-virustotal)
- [Is VirusTotal trustworthy?](https://www.g2.com/discussions/is-virustotal-trustworthy)

### [Google VirusTotal](https://www.g2.com/products/google-virustotal/reviews)

VirusTotal is a comprehensive online service that analyzes files and URLs to detect viruses, worms, trojans, and other malicious content. By aggregating results from over 70 antivirus scanners and URL/domain blacklisting services, it provides a thorough assessment of potential threats. Users can upload files up to 650 MB or submit URLs for scanning, receiving detailed reports on the safety of the content. This collaborative approach enhances the detection of malware and helps in identifying false positives. Key Features and Functionality: - Multi-Engine Scanning: Utilizes a vast array of antivirus engines to provide comprehensive threat detection. - Dynamic and Static Analysis: Employs both dynamic (behavioral) and static (code) analysis techniques to identify malicious behavior. - URL and Domain Analysis: Assesses the safety of URLs and domains, identifying potential phishing sites or malicious content. - API Access: Offers API integration for automated submissions and retrieval of analysis reports, facilitating seamless incorporation into security workflows. - Community Collaboration: Enables users to share insights, comments, and ratings, fostering a collaborative environment for threat intelligence. Primary Value and User Solutions: VirusTotal serves as a vital tool for individuals and organizations aiming to bolster their cybersecurity defenses. By providing a centralized platform for malware detection and analysis, it aids in the early identification of threats, reducing the risk of infection and data breaches. Security professionals leverage VirusTotal for incident response, threat hunting, and research, while developers use it to ensure their software is free from malicious code. The service's extensive database and collaborative features enhance situational awareness and contribute to a more secure digital environment.

**Average Rating:** 4.6/5.0

**Total Reviews:** 13

#### How Do G2 Users Rate Google VirusTotal?

- **Has the product been a good partner in doing business?:** 6.7/10 (Category avg: 8.8/10)
- **Malware Evaluation:** 9.2/10 (Category avg: 9.0/10)
- **Malware Detection:** 8.8/10 (Category avg: 9.1/10)
- **File Analysis:** 9.4/10 (Category avg: 9.0/10)

#### Who Is the Company Behind Google VirusTotal?

- **Seller:** [Google](https://www.g2.com/sellers/google)
- **Year Founded:** 1998
- **HQ Location:** Mountain View, CA
- **Twitter:** @google  
31,899,995 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=fe4a5936665c9702418dd53c477fef5a7baea08078bb117ed67e966fc581b9ec&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F1441%2F&secure%5Burl_type%5D=linkedin_company_website)  
341,888 employees on LinkedIn®
- **Ownership:** NASDAQ:GOOG

#### Who Uses This Product?

- **Company Size:** 38% Small, 31% Medium

#### What Are Recent G2 Reviews of Google VirusTotal?

**["Handy Virus Detector"](https://www.g2.com/survey_responses/google-virustotal-review-9500117)**

**Rating:** 4.0/5.0 stars

_— Sattie M._

[Read full review](https://www.g2.com/survey_responses/google-virustotal-review-9500117)

**["Google's Swiss Army Knife for Malware Analysis"](https://www.g2.com/survey_responses/google-virustotal-review-11661388)**

**Rating:** 5.0/5.0 stars

_— Verified User in Financial Services_

[Read full review](https://www.g2.com/survey_responses/google-virustotal-review-11661388)

### [ReversingLabs](https://www.g2.com/products/reversinglabs/reviews)

ReversingLabs is the trusted name in file and software security. We provide the modern cybersecurity platform to verify and deliver safe binaries. Trusted by the Fortune 500 and leading cybersecurity vendors, RL Spectra Core powers the software supply chain and file security insights, tracking over 422 billion searchable files with the ability to deconstruct full software binaries in seconds to minutes. Only ReversingLabs provides that final exam to determine whether a single file or full software binary presents a risk to your organization and your customers.

**Average Rating:** 4.7/5.0

**Total Reviews:** 10

#### How Do G2 Users Rate ReversingLabs?

- **Has the product been a good partner in doing business?:** 8.9/10 (Category avg: 8.8/10)
- **Malware Evaluation:** 9.4/10 (Category avg: 9.0/10)
- **Malware Detection:** 9.0/10 (Category avg: 9.1/10)
- **File Analysis:** 8.8/10 (Category avg: 9.0/10)

#### Who Is the Company Behind ReversingLabs?

- **Seller:** [ReversingLabs](https://www.g2.com/sellers/reversinglabs)
- **Year Founded:** 2009
- **HQ Location:** Cambridge, US
- **Twitter:** @ReversingLabs  
7,022 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=a0adaa8657020403414851b990a81c3a6a6e60c4899834e4a7ca68c7abd667e5&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Freversinglabs%2F&secure%5Burl_type%5D=linkedin_company_website)  
321 employees on LinkedIn®

#### Who Uses This Product?

- **Company Size:** 80% Small, 10% Medium

#### What Do G2 Reviewers Say About ReversingLabs?

_AI-generated summary from verified user reviews_

##### Pros

- Users appreciate the **accuracy of information** provided by ReversingLabs, ensuring effective risk management and resource utilization.
- Users appreciate the **excellent customer support** at ReversingLabs, highlighting their involvement and effectiveness in the onboarding process.
- Users praise ReversingLabs for its **efficiency** in onboarding and risk management, leading to a seamless user experience.
- Users commend the **effective prioritization** of risk management in ReversingLabs, enhancing their overall satisfaction and security.
- Users value the **high reliability** of ReversingLabs, appreciating its seamless onboarding and extensive file repository.

##### Cons

- Users find the **complex querying** for usage endpoints confusing, which can hinder their overall experience.
- Users find the **interface confusing** , particularly when it comes to checking usage endpoints.
- Users find the **navigation issues** of ReversingLabs challenging, leading to confusion in checking usage endpoints.
- Users feel the **UI could be improved** , although it doesn’t significantly block their overall experience.

#### What Are Recent G2 Reviews of ReversingLabs?

**["Deep File Reputation Intelligence with Excellent Format Coverage"](https://www.g2.com/survey_responses/reversinglabs-review-12547875)**

**Rating:** 5.0/5.0 stars

_— Verified User in Computer Software_

[Read full review](https://www.g2.com/survey_responses/reversinglabs-review-12547875)

**["Very good, with small drawbacks in the interface"](https://www.g2.com/survey_responses/reversinglabs-review-12310983)**

**Rating:** 4.5/5.0 stars

_— Verified User in Computer Software_

[Read full review](https://www.g2.com/survey_responses/reversinglabs-review-12310983)

### [Intezer](https://www.g2.com/products/intezer-intezer/reviews)

Intezer automates the entire alert triage process, like an extension of your team handling Tier 1 SOC tasks for every alert at machine-speed. Intezer monitors incoming incidents from endpoint, reported phishing pipelines, or SIEM tools, then autonomously collects evidence, investigates, makes triage decisions, and escalates only the serious threats to your team for human intervention. Power your SOC with artificial intelligence that makes sure every alert is deeply analyzed (including every single artifact like files, URLs, endpoint memory, etc.), detecting malicious code in memory and other evasive threats. Fast set up and integrations with your SOC team's workflows (EDR, SOAR, SIEM, etc.) means Intezer's AI can immediately start filtering out false positives, giving you detailed analysis about every threat, and speeding up your incident response time. With Intezer: • Reduce Tier 1 escalation, sending only 4% of alerts on average to your team for immediate action. • Identify up to 97% of false positive alerts without taking any time from your analysts. • Reduce average triage time to 5 minutes or less, while giving your analysts deep context about every alert to prioritize critical treats and respond faster.

**Average Rating:** 4.5/5.0

**Total Reviews:** 187

#### How Do G2 Users Rate Intezer?

- **Has the product been a good partner in doing business?:** 8.6/10 (Category avg: 8.8/10)
- **Malware Evaluation:** 9.3/10 (Category avg: 9.0/10)
- **Malware Detection:** 9.6/10 (Category avg: 9.1/10)
- **File Analysis:** 9.4/10 (Category avg: 9.0/10)

#### Who Is the Company Behind Intezer?

- **Seller:** [Intezer](https://www.g2.com/sellers/intezer)
- **Year Founded:** 2015
- **HQ Location:** New York
- **Twitter:** @IntezerLabs  
10,170 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=2bb3f434ddd03b2eadc1dca940a470eceb4074073fc162fe6fda3c58b709625e&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F10656303%2F&secure%5Burl_type%5D=linkedin_company_website)  
88 employees on LinkedIn®

#### Who Uses This Product?

- **Who Uses This:** Software Engineer, Student
- **Top Industries:** Computer & Network Security, Information Technology and Services
- **Company Size:** 54% Small, 23% Medium

#### What Do G2 Reviewers Say About Intezer?

_AI-generated summary from verified user reviews_

##### Pros

- Users appreciate the **strong security features** of Intezer, ensuring timely detection and blocking of malware.
- Users value Intezer for its **effective malware detection and security features** that enhance overall system protection.
- Users value the **ease of malware detection and blocking** with Intezer, enhancing overall cybersecurity effectiveness.
- Users value the **high detection accuracy** of Intezer, ensuring timely malware detection and enhanced system security.
- Users appreciate the **ease of use** of Intezer, making malware detection and security integration straightforward and efficient.

##### Cons

- Users find the **lack of access control** to file visibility a downside, though it facilitates peer review benefits.
- Users express frustration with the **complex interface** of Intezer, finding it difficult to navigate and use effectively.
- Users find the **lack of control over file visibility** a downside, despite potential benefits for peer review.
- Users find the **difficult navigation** in Intezer frustrating due to a poorly designed UI and small text size.
- Users find the **expensive pricing** of Intezer limiting, particularly due to the capping of the free tier.

#### What Are Recent G2 Reviews of Intezer?

**["CTI coordinator"](https://www.g2.com/survey_responses/intezer-review-5353729)**

**Rating:** 4.0/5.0 stars

_— Verified User in Banking_

[Read full review](https://www.g2.com/survey_responses/intezer-review-5353729)

**["Effortless Malware Detection and Robust Endpoint Security With Intezer"](https://www.g2.com/survey_responses/intezer-review-12060113)**

**Rating:** 4.5/5.0 stars

_— Franck P._

[Read full review](https://www.g2.com/survey_responses/intezer-review-12060113)

#### What Are G2 Users Discussing About Intezer?

- [What is genetic malware analysis?](https://www.g2.com/discussions/what-is-genetic-malware-analysis) - 1 comment
- [Is Intezer good?](https://www.g2.com/discussions/is-intezer-good) - 1 comment
- [What does Intezer do?](https://www.g2.com/discussions/what-does-intezer-do) - 1 comment
- [What is Intezer analyze?](https://www.g2.com/discussions/what-is-intezer-analyze) - 2 comments

### [Trend Micro Deep Discovery](https://www.g2.com/it/products/trend-micro-trend-micro-deep-discovery/reviews)

Deep Discovery Inspector è disponibile come appliance di rete fisica o virtuale. È progettato per rilevare rapidamente malware avanzati che solitamente eludono le difese di sicurezza tradizionali ed esfiltrano dati sensibili. Motori di rilevamento specializzati e analisi sandbox personalizzate rilevano e prevengono le violazioni.

**Average Rating:** 4.3/5.0

**Total Reviews:** 16

#### How Do G2 Users Rate Trend Micro Deep Discovery?

- **Ritiene che the product sia stato un valido partner commerciale?:** 9.2/10 (Category avg: 8.8/10)
- **Valutazione del Malware:** 8.8/10 (Category avg: 9.0/10)
- **Rilevamento di malware:** 9.4/10 (Category avg: 9.1/10)
- **Analisi del file:** 9.0/10 (Category avg: 9.0/10)

#### Who Is the Company Behind Trend Micro Deep Discovery?

- **Venditore:** [TrendAI](https://www.g2.com/it/sellers/trendai)
- **Anno di Fondazione:** 1988
- **Sede centrale:** Tokyo
- **Pagina LinkedIn®:** [www.linkedin.com](https://www.g2.com/it/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=454c2fb5d9ffdec950c31f62cc45f1b76a4b9ce72ef5e5a91b06fad1ee8584b7&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F4312%2F&secure%5Burl_type%5D=linkedin_company_website)  
8,040 dipendenti su LinkedIn®
- **Proprietà:** OTCMKTS:TMICY
- **Ricavi Totali (USD mln):** $1,515

#### Who Uses This Product?

- **Top Industries:** Tecnologia dell'informazione e servizi
- **Company Size:** 41% Medium, 35% Large

#### What Are Recent G2 Reviews of Trend Micro Deep Discovery?

**["Protezione degli Endpoint Messa alla Prova"](https://www.g2.com/it/survey_responses/trend-micro-deep-discovery-review-9157492)**

**Rating:** 4.5/5.0 stars

_— Utente verificato in Software per computer_

[Read full review](https://www.g2.com/it/survey_responses/trend-micro-deep-discovery-review-9157492)

**["Esperienza utente"](https://www.g2.com/it/survey_responses/trend-micro-deep-discovery-review-9149041)**

**Rating:** 5.0/5.0 stars

_— Avinash P._

[Read full review](https://www.g2.com/it/survey_responses/trend-micro-deep-discovery-review-9149041)

### [FileWall for Microsoft 365](https://www.g2.com/it/products/filewall-for-microsoft-365/reviews)

FileWall è una soluzione di sicurezza nativa indispensabile per Microsoft 365 e fornisce la protezione definitiva contro gli attacchi informatici basati su file per le applicazioni aziendali di Microsoft 365. Sfruttando la tecnologia brevettata Deep File Analysis (DFA) di odix, che contiene algoritmi proprietari di Disarmo e Ricostruzione del Contenuto (TrueCDR™). Il processo DFA considera un file come un iceberg, spesso apparentemente innocuo in superficie ma che guarda in profondità a ciò che si nasconde sotto la superficie, eliminando il malware incorporato nei file dove le soluzioni tradizionali legacy non riescono a rilevare. FileWall integra i prodotti di sicurezza di Microsoft come Exchange Online Protection (EOP) e Defender (precedentemente Advanced Threat Protection - ATP), fornendo una protezione efficace e in tempo reale contro qualsiasi minaccia sconosciuta nascosta in file dall'aspetto innocuo provenienti sia da fonti esterne che interne.

**Average Rating:** 4.9/5.0

**Total Reviews:** 15

#### How Do G2 Users Rate FileWall for Microsoft 365?

- **Ritiene che the product sia stato un valido partner commerciale?:** 10.0/10 (Category avg: 8.8/10)
- **Rilevamento di malware:** 10.0/10 (Category avg: 9.1/10)
- **Analisi del file:** 10.0/10 (Category avg: 9.0/10)

#### Who Is the Company Behind FileWall for Microsoft 365?

- **Venditore:** [odix](https://www.g2.com/it/sellers/odix)
- **Anno di Fondazione:** 2012
- **Sede centrale:** Rosh Haain, Israel
- **Twitter:** @odix  
6 follower su Twitter
- **Pagina LinkedIn®:** [www.linkedin.com](https://www.g2.com/it/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=f9a91914fa815e7c8145eacde01cae1d8169e219cad075e1b5a9dddc86061faf&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fodixcdr%2Fabout&secure%5Burl_type%5D=linkedin_company_website)  
19 dipendenti su LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Tecnologia dell'informazione e servizi
- **Company Size:** 90% Small, 10% Medium

#### What Are Recent G2 Reviews of FileWall for Microsoft 365?

**["FileWall - Proteggi le tue email facilmente"](https://www.g2.com/it/survey_responses/filewall-for-microsoft-365-review-4391491)**

**Rating:** 5.0/5.0 stars

_— Edward v._

[Read full review](https://www.g2.com/it/survey_responses/filewall-for-microsoft-365-review-4391491)

**["Servizio efficace ed efficiente che aggiunge un livello di protezione per gli allegati dell'organizzazione"](https://www.g2.com/it/survey_responses/filewall-for-microsoft-365-review-4430998)**

**Rating:** 4.0/5.0 stars

_— Mohamad E._

[Read full review](https://www.g2.com/it/survey_responses/filewall-for-microsoft-365-review-4430998)

### [Symantec Content Analysis and Sandboxing](https://www.g2.com/it/products/symantec-content-analysis-and-sandboxing/reviews)

Rileva e blocca le minacce avanzate che sfuggono all'analisi tradizionale con ispezione a più livelli e sandboxing personalizzabile

**Average Rating:** 4.6/5.0

**Total Reviews:** 29

#### How Do G2 Users Rate Symantec Content Analysis and Sandboxing?

- **Ritiene che the product sia stato un valido partner commerciale?:** 10.0/10 (Category avg: 8.8/10)
- **Valutazione del Malware:** 9.7/10 (Category avg: 9.0/10)
- **Rilevamento di malware:** 9.7/10 (Category avg: 9.1/10)
- **Analisi del file:** 9.3/10 (Category avg: 9.0/10)

#### Who Is the Company Behind Symantec Content Analysis and Sandboxing?

- **Venditore:** [Broadcom](https://www.g2.com/it/sellers/broadcom-ab3091cd-4724-46a8-ac89-219d6bc8e166)
- **Anno di Fondazione:** 1991
- **Sede centrale:** San Jose, CA
- **Twitter:** @broadcom  
63,909 follower su Twitter
- **Pagina LinkedIn®:** [www.linkedin.com](https://www.g2.com/it/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=093adce8015fea9ef126312884b465dc8e3c20e17dcb12fbb77a7bd82577e7a5&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fbroadcom%2F&secure%5Burl_type%5D=linkedin_company_website)  
55,094 dipendenti su LinkedIn®
- **Proprietà:** NASDAQ: CA

#### Who Uses This Product?

- **Top Industries:** Sicurezza informatica e di rete, Tecnologia dell'informazione e servizi
- **Company Size:** 37% Large, 37% Medium

#### What Are Recent G2 Reviews of Symantec Content Analysis and Sandboxing?

**["Semplice, sicuro e indistruttibile"](https://www.g2.com/it/survey_responses/symantec-content-analysis-and-sandboxing-review-8121197)**

**Rating:** 5.0/5.0 stars

_— Satyaprakash S._

[Read full review](https://www.g2.com/it/survey_responses/symantec-content-analysis-and-sandboxing-review-8121197)

**["Protezione contro le minacce informatiche: Navigare nell'analisi dei contenuti e nel sandboxing di Symantec"](https://www.g2.com/it/survey_responses/symantec-content-analysis-and-sandboxing-review-8870412)**

**Rating:** 5.0/5.0 stars

_— Joshua Victor A._

[Read full review](https://www.g2.com/it/survey_responses/symantec-content-analysis-and-sandboxing-review-8870412)

### [Threat Zone](https://www.g2.com/it/products/threat-zone/reviews)

Threat.Zone è una piattaforma malware olistica basata su hypervisor, uno strumento automatizzato e interattivo per l'analisi del malware, così puoi combattere le nuove generazioni di malware conducendo: Analisi comportamentale in tempo reale, Simulazione di potenziali minacce in un ambiente controllato per identificare attività dannose, Sandbox multi-OS Esecuzione del codice, Tecniche di evasione E molte altre funzionalità.

**Average Rating:** 4.4/5.0

**Total Reviews:** 19

#### How Do G2 Users Rate Threat Zone?

- **Ritiene che the product sia stato un valido partner commerciale?:** 9.6/10 (Category avg: 8.8/10)
- **Valutazione del Malware:** 9.0/10 (Category avg: 9.0/10)
- **Rilevamento di malware:** 9.0/10 (Category avg: 9.1/10)
- **Analisi del file:** 9.2/10 (Category avg: 9.0/10)

#### Who Is the Company Behind Threat Zone?

- **Venditore:** [Malwation](https://www.g2.com/it/sellers/malwation)
- **Anno di Fondazione:** 2020
- **Sede centrale:** Delaware, US
- **Twitter:** @malwation  
1,026 follower su Twitter
- **Pagina LinkedIn®:** [www.linkedin.com](https://www.g2.com/it/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=afae3a211dfcc53581e5fed08d2c2b8a822e9d0ea3c11c9a39ce2dd4fb661660&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fmalwation%2F&secure%5Burl_type%5D=linkedin_company_website)  
10 dipendenti su LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Sicurezza informatica e di rete
- **Company Size:** 50% Medium, 35% Large

#### What Are Recent G2 Reviews of Threat Zone?

**["Sandbox potente, pratico per i SOC e i team di IR"](https://www.g2.com/it/survey_responses/threat-zone-review-11724069)**

**Rating:** 5.0/5.0 stars

_— Utente verificato in Bancario_

[Read full review](https://www.g2.com/it/survey_responses/threat-zone-review-11724069)

**["Migliorare l'Intelligenza della Piattaforma e l'Automazione per le Analisi di Sicurezza Guidate dall'IA"](https://www.g2.com/it/survey_responses/threat-zone-review-11802969)**

**Rating:** 5.0/5.0 stars

_— Utente verificato in Sicurezza e investigazioni_

[Read full review](https://www.g2.com/it/survey_responses/threat-zone-review-11802969)

### [Trellix Intelligent Virtual Execution (IVX)](https://www.g2.com/products/trellix-intelligent-virtual-execution-ivx/reviews)

IVX is a signature-less, dynamic analysis engine that captures and confirms zero-day, and targeted APT attacks. IVX identifies attacks that evade traditional signature-based defenses by detonating suspicious files, web objects, URLs, and email attachments within a proprietary hypervisor instrumented for over 200 potential simultaneous executions. IVX accelerates incident response by enabling analysts to visualize how malware is behaving within the virtual image and securely interact with malware to test effectiveness of countermeasures. Available on prem or as a cloud-native service Trellix IVX delivers proven, flexible analysis capabilities wherever you need to quickly inspect and verdict potentially malicious content. SOC analysts can manually submit objects for inspection and insight. Or seamlessly integrate IVX with enterprise applications— built or bought—for continuous and frictionless protection.

**Average Rating:** 3.8/5.0

**Total Reviews:** 29

#### How Do G2 Users Rate Trellix Intelligent Virtual Execution (IVX)?

- **Has the product been a good partner in doing business?:** 7.5/10 (Category avg: 8.8/10)
- **Malware Evaluation:** 6.7/10 (Category avg: 9.0/10)
- **Malware Detection:** 7.9/10 (Category avg: 9.1/10)
- **File Analysis:** 6.7/10 (Category avg: 9.0/10)

#### Who Is the Company Behind Trellix Intelligent Virtual Execution (IVX)?

- **Seller:** [Trellix](https://www.g2.com/sellers/trellix)
- **Year Founded:** 2004
- **HQ Location:** Plano, TX
- **Twitter:** @Trellix  
241,168 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=2a20995935f09ce70fd0458482e13ea06f9d2c9b21705f1247b0f08ca591dcf9&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Ftrellixsecurity%2Fabout%2F&secure%5Burl_type%5D=linkedin_company_website)  
751 employees on LinkedIn®

#### Who Uses This Product?

- **Company Size:** 43% Medium, 37% Small

#### What Do G2 Reviewers Say About Trellix Intelligent Virtual Execution (IVX)?

_AI-generated summary from verified user reviews_

##### Pros

- Users value the **automated threat detection** feature of Trellix IVX, enhancing security and streamlining malware mitigation.
- Users commend the **high detection efficiency** of Trellix IVX, effectively mitigating malware and ensuring robust security.
- Users find the **ease of use** of Trellix IVX beneficial for efficient threat detection and management.
- Users value the **robust security features** of Trellix IVX, ensuring protection against unauthorized access and automated threat detection.
- Users value the **flexible cloud integration** of Trellix IVX, enhancing security across various applications and platforms.

##### Cons

- Users find the product **expensive** to purchase and maintain, affecting its accessibility for some customers.
- Users find the **pricing structure restrictive** , making it challenging for budget-conscious organizations to adopt the solution.
- Users find the **learning curve steep** , as the advanced features can be overwhelming and not user-friendly.
- Users express concern over the **cloud dependency** of FireEye Detection On Demand, impacting organizations with strict data privacy needs.
- Users note **compatibility issues** for On-Prem customers, affecting functionality and experience with Trellix IVX.

#### What Are Recent G2 Reviews of Trellix Intelligent Virtual Execution (IVX)?

**["Best tool for malware analysis"](https://www.g2.com/survey_responses/trellix-intelligent-virtual-execution-ivx-review-9503164)**

**Rating:** 5.0/5.0 stars

_— Gunavant S._

[Read full review](https://www.g2.com/survey_responses/trellix-intelligent-virtual-execution-ivx-review-9503164)

**[""Fireeye" - Enhanced email security solution for anti spam and malware analysis"](https://www.g2.com/survey_responses/trellix-intelligent-virtual-execution-ivx-review-8986087)**

**Rating:** 4.0/5.0 stars

_— Verified User in Pharmaceuticals_

[Read full review](https://www.g2.com/survey_responses/trellix-intelligent-virtual-execution-ivx-review-8986087)

### [PT MultiScanner](https://www.g2.com/it/products/pt-multiscanner/reviews)

PT MultiScanner è un sistema di rilevamento malware multithread progettato per individuare le minacce con precisione e velocità combinando più motori antivirus e integrandoli con altri metodi di rilevamento, inclusa l'analisi retrospettiva dei file dannosi e i servizi di reputazione.

**Average Rating:** 4.5/5.0

**Total Reviews:** 17

#### How Do G2 Users Rate PT MultiScanner?

- **Ritiene che the product sia stato un valido partner commerciale?:** 8.3/10 (Category avg: 8.8/10)
- **Valutazione del Malware:** 9.2/10 (Category avg: 9.0/10)
- **Rilevamento di malware:** 9.6/10 (Category avg: 9.1/10)
- **Analisi del file:** 8.8/10 (Category avg: 9.0/10)

#### Who Is the Company Behind PT MultiScanner?

- **Venditore:** [Positive Technologies](https://www.g2.com/it/sellers/positive-technologies)
- **Sede centrale:** N/A
- **Twitter:** @PTsecurity\_UK  
6 follower su Twitter
- **Pagina LinkedIn®:** [www.linkedin.com](https://www.g2.com/it/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=72d1f72f1158c4fa727ba2e5c23b6cdf81412fcdbe1d7abe21c044b6641c9991&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fpositivetechnologies%2F&secure%5Burl_type%5D=linkedin_company_website)  
776 dipendenti su LinkedIn®

#### Who Uses This Product?

- **Company Size:** 61% Small, 22% Medium

#### What Are Recent G2 Reviews of PT MultiScanner?

**["PT MultiscannerReview"](https://www.g2.com/it/survey_responses/pt-multiscanner-review-7315730)**

**Rating:** 4.0/5.0 stars

_— Vikas R._

[Read full review](https://www.g2.com/it/survey_responses/pt-multiscanner-review-7315730)

**["Protezione più completa e multistrato per l'azienda"](https://www.g2.com/it/survey_responses/pt-multiscanner-review-7163329)**

**Rating:** 5.0/5.0 stars

_— Alok K._

[Read full review](https://www.g2.com/it/survey_responses/pt-multiscanner-review-7163329)

### [OPSWAT Filescan](https://www.g2.com/it/products/opswat-filescan/reviews)

OPSWAT Filescan è una soluzione completa di scansione dei file progettata per rilevare e prevenire le minacce nei file prima che raggiungano la tua rete. Utilizza una tecnologia avanzata di multi-scansione, combinando più motori anti-malware per fornire alti tassi di rilevamento e minimizzare i falsi positivi. Questo assicura che sia le minacce conosciute che quelle sconosciute siano identificate efficacemente. Caratteristiche e Funzionalità Principali: - Tecnologia di Multi-Scansione: Integra più motori anti-malware per migliorare le capacità di rilevamento e ridurre i falsi positivi. - Scansione in Tempo Reale: Fornisce un'analisi immediata dei file per rilevare le minacce prima che possano causare danni. - Distribuzione Flessibile: Offre opzioni di distribuzione basate su cloud e on-premises per soddisfare le diverse esigenze organizzative. - Supporto Completo dei File: Supporta un'ampia gamma di tipi di file, garantendo una scansione approfondita attraverso diversi formati. - Scalabilità: Progettato per gestire alti volumi di file, rendendolo adatto per organizzazioni di tutte le dimensioni. Valore Primario e Problema Risolto: OPSWAT Filescan affronta la necessità critica di rilevamento proattivo delle minacce nei file, prevenendo che malware e altri contenuti dannosi infiltrino le reti. Sfruttando più motori anti-malware, migliora significativamente i tassi di rilevamento e riduce il rischio di falsi positivi. Questa soluzione è particolarmente preziosa per le organizzazioni che cercano di rafforzare la loro postura di cybersecurity assicurando che tutti i file che entrano nei loro sistemi siano accuratamente scansionati e verificati come sicuri.

**Average Rating:** 4.6/5.0

**Total Reviews:** 52

#### How Do G2 Users Rate OPSWAT Filescan?

- **Ritiene che the product sia stato un valido partner commerciale?:** 8.8/10 (Category avg: 8.8/10)
- **Valutazione del Malware:** 9.1/10 (Category avg: 9.0/10)
- **Rilevamento di malware:** 9.6/10 (Category avg: 9.1/10)
- **Analisi del file:** 9.3/10 (Category avg: 9.0/10)

#### Who Is the Company Behind OPSWAT Filescan?

- **Venditore:** [OPSWAT](https://www.g2.com/it/sellers/opswat)
- **Sito web dell'azienda:** www.opswat.com
- **Anno di Fondazione:** 2002
- **Sede centrale:** Tampa, Florida
- **Twitter:** @OPSWAT  
7,257 follower su Twitter
- **Pagina LinkedIn®:** [www.linkedin.com](https://www.g2.com/it/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=b70c5793fe56e39c452b966bc6a3d070036072808df0abc1aa604cf65920edde&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fopswat%2F&secure%5Burl_type%5D=linkedin_company_website)  
1,160 dipendenti su LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Tecnologia dell'informazione e servizi, Marketing e pubblicità
- **Company Size:** 49% Small, 34% Medium

#### What Do G2 Reviewers Say About OPSWAT Filescan?

_AI-generated summary from verified user reviews_

##### Pros

- Gli utenti apprezzano la **velocità migliorata** di OPSWAT Filescan, migliorando l'efficienza e l'affidabilità per l'analisi quotidiana dei malware.
- Gli utenti apprezzano l' **integrazione cloud ad alta velocità** di OPSWAT Filescan, migliorando l'efficienza e l'efficacia dell'analisi dei malware.
- Gli utenti apprezzano la **capacità di scansione multi-motore** di OPSWAT Filescan, migliorando il rilevamento delle minacce e la sicurezza complessiva dei file.
- Gli utenti ammirano l' **affidabilità** di OPSWAT Filescan, beneficiando della sua scansione multi-motore per una maggiore sicurezza dei file.
- Gli utenti apprezzano la **scansione malware multi-motore** di OPSWAT Filescan, aumentando la fiducia nella sicurezza dei file e nell'accuratezza del rilevamento.

##### Cons

- Gli utenti trovano che la **configurazione complessa** di OPSWAT Filescan richiede uno sforzo tecnico, specialmente per formati di file poco conosciuti.
- Gli utenti trovano l'interfaccia **opprimente a volte** , in particolare quando sono nuovi o stanno navigando tra le sue funzionalità.
- Gli utenti trovano la **curva di apprendimento difficile** di OPSWAT Filescan opprimente per i nuovi arrivati e le sfide di navigazione.
- Gli utenti affrontano sfide con la **configurazione iniziale e il supporto limitato ai tipi di file** , spesso necessitando di regolazioni manuali per formati oscuri.
- Gli utenti notano **problemi di integrazione** con OPSWAT FileScan, limitando la sua funzionalità in ambienti più complessi.

#### What Are Recent G2 Reviews of OPSWAT Filescan?

**["miglior software per garantire che stai utilizzando file sicuri"](https://www.g2.com/it/survey_responses/opswat-filescan-review-7951395)**

**Rating:** 5.0/5.0 stars

_— Shubham S._

[Read full review](https://www.g2.com/it/survey_responses/opswat-filescan-review-7951395)

**["Trascina e rilascia facilmente per scansionare (Aggiornato)"](https://www.g2.com/it/survey_responses/opswat-filescan-review-7306972)**

**Rating:** 5.0/5.0 stars

_— Hiro M._

[Read full review](https://www.g2.com/it/survey_responses/opswat-filescan-review-7306972)

- &lsaquo; Prev‹ Prev
- 1
- [2](/categories/malware-analysis-tools?open_modal_url=%2Fproducts%2Fintezer-intezer%2Fwishlists%3Fhost_path%3D%252Fcategories%252Fmalware-analysis-tools%26source%3Dcategory&order=g2_score&page=2#product-list)
- [3](/categories/malware-analysis-tools?open_modal_url=%2Fproducts%2Fintezer-intezer%2Fwishlists%3Fhost_path%3D%252Fcategories%252Fmalware-analysis-tools%26source%3Dcategory&order=g2_score&page=3#product-list)
- [4](/categories/malware-analysis-tools?open_modal_url=%2Fproducts%2Fintezer-intezer%2Fwishlists%3Fhost_path%3D%252Fcategories%252Fmalware-analysis-tools%26source%3Dcategory&order=g2_score&page=4#product-list)
- [Next &rsaquo;Next ›](/categories/malware-analysis-tools?open_modal_url=%2Fproducts%2Fintezer-intezer%2Fwishlists%3Fhost_path%3D%252Fcategories%252Fmalware-analysis-tools%26source%3Dcategory&order=g2_score&page=2#product-list)

Spotlight Categories

[Sales Enablement Software](https://www.g2.com/categories/sales-enablement)

[Help Desk Software](https://www.g2.com/categories/help-desk)

[Operational Risk Management Software](https://www.g2.com/categories/operational-risk-management)

[Quality Management Systems (QMS)](https://www.g2.com/categories/quality-management-qms)

[SMS Marketing Software](https://www.g2.com/categories/sms-marketing)

Similar Categories

- [Incident Response](/categories/incident-response)
- [Security Information and Event Management (SIEM)](/categories/security-information-and-event-management-siem)
- [Threat Intelligence](/categories/threat-intelligence)
- [AI SOC Agents](/categories/ai-soc-agents)
- [Breach and Attack Simulation (BAS)](/categories/breach-and-attack-simulation-bas)

- [Deception Technology](/categories/deception-technology)
- [Digital Forensics](/categories/digital-forensics)
- [Digital Risk Protection (DRP) Platforms](/categories/digital-risk-protection-drp-platforms)
- [IoT Security Solutions](/categories/iot-security-solutions)
- [Managed Detection and Response (MDR)](/categories/managed-detection-and-response-mdr)

- [OT Secure Remote Access](/categories/ot-secure-remote-access)
- [OT Security Tools](/categories/ot-security-tools)
- [Red Teaming Tools](/categories/red-teaming-tools)
- [Security Orchestration, Automation, and Response (SOAR)](/categories/security-orchestration-automation-and-response-soar)

[Browse Malware Analysis Tools Themes](/categories/malware-analysis-tools/themes)

 ![Brandon Summers-Miller](/assets/transparent-ad5be28fbcd25b7b08d2cebe1d957125437fb5407d75ee717965ad22c8808791.gif "Brandon Summers-Miller")
BS

Researched and written by [Brandon Summers-Miller](https://research.g2.com/insights/author/brandon-summers-miller)

Updated October 3, 2024

Malware analysis tools that are used to isolate and investigate malware as it is detected on a company’s IT resources, endpoints, and applications. They typically work by detecting malware and then moving infected resources to an isolated environment. In this secure, sandboxed environment, security professionals examine the malware’s code and behaviors to learn more about how it works, what it has done, and how to protect against it in the future.

Security teams and other IT staff involved in incident response, risk analysis, and security operations may all use these tools. They collect data from malware that is detected and use it to bolster security and prevent similar malware from compromising their system by integrating it with their existing threat intelligence systems. They may also use the information gathered to examine larger portions of their IT systems to ensure the malware is not present elsewhere.

Many malware analysis solutions provide features of [network sandboxing software](https://www.g2.com/categories/network-sandboxing) for secure analysis. Not all network sandboxing tools have the same ability to automatically detect malware nor the tools necessary for in-depth forensic investigation.

To qualify for inclusion in the Malware Analysis category, a product must:

- Detect zero-day threats and other unknown malware using contextual threat data
- Isolate threats in a secure environment
- Provide tools for forensic investigation and risk analysis

Show More

* * *

## How Do You Choose the Right Malware Analysis Tools?

### What You Should Know About Malware Analysis Tools

### What are Malware Analysis Tools?

Malware analysis tools help organizations detect and mitigate potential cyber threats. Malware is a malicious software that attacks and causes damage to programmable devices, servers, networks, and host systems. It can be of different varieties, such as ransomware, virus, spyware, and more. Malware analysis is the process that allows for easy identification of malware emergence, its purpose, and its impact on the organization’s IT assets, endpoints, and applications. It helps in tackling vulnerabilities on time and reduces threats to applications, websites, and servers.

Once a malware is detected in the system, cybersecurity experts typically collect a sample and analyze it in a sandboxed environment to understand its functionalities and the impact it can have on the company’s security infrastructure. The team then devises how the malware can be reverse engineered by testing its response to various countermeasures such as antivirus programs.

#### What Types of Malware Analysis Tools Exist?

Malware analysis tools can be categorized based on how the analysis is conducted. They will fall under one of the following types:

**Static malware analysis tools**

This type of tool examines a file without executing the code. Static analysis can easily be performed and helps derive static information associated with the files being examined, such as metadata, embedded resources, headers, and more. Certain technical parameters are used to identify if the file is harmful. Static analysis is not instrumental in detecting sophisticated malware as it does not run the program. It can, however, provide insights to identify where the security team should conduct their subsequent investigation. If the results of static malware analysis reveal no malicious intent, the code is usually discarded, and no further analysis is conducted to detect malware.

**Dynamic malware analysis tools**

Tools for conducting dynamic analysis execute suspicious codes in a secure environment known as a sandbox. They search through the codes of executable files to pull out specific suspicious actions. The sandbox helps simulate an entire host environment (memory, CPU, operating systems), allowing the security experts to constantly monitor the malware's capabilities without posing any threat to the organization’s security. It provides high-level insights to understand the nature of the malware and its impact. It also expedites the process of rediscovering a malicious file.&nbsp;

**Hybrid malware analysis tools**

Static analysis does not help in detecting sophisticated malicious code. Sophisticated malware can sometimes go undetected, even with the application of sandbox technology. Hybrid tools offer a combination of both techniques. Hybrid analysis identifies risks even from the most sophisticated malware. It detects files hiding malicious codes and derives more indicators of compromise for more informed analysis.

**Forensic malware analysis tools**

Digital forensic analysts use these tools to examine a system post-compromise to identify malicious files, log changes, and suspicious activity. These tools are typically used after a malware attack for security teams to analyze the capability and effects of the malware and deal with it in the future. **&nbsp;**

### What are the Common Features of Malware Analysis Tools?

The following are some core features within malware analysis tools that can help users in detecting potential cybersecurity threats:

**Malware identification:** Malware analysis tools have built-in capabilities to identify good and malicious code. They assist in the effective detection of vulnerabilities and threats. Threat actors are resorting to highly advanced techniques that make detecting an anomaly more difficult. Malware analysis tools provide behavioral analysis to identify malicious codes and suspicious activities. This includes analysis of activity logs, process monitoring, file system tracking, and more to assist in responding to threats efficiently. Additionally, malware analysis offers extraction of indicators of compromise (IoCs), which helps to identify future threats of the same nature.

**Threat alerts and triage:** These tools help security teams understand the pattern of malware threats and enable them to take corrective actions on time. They conduct an initial triage of malware samples and help malware analysts to discover suspicious artifacts for debugging and reverse engineering the malware. Malware analysis tools emphasize sending high-fidelity alerts that users can trust and act on. Therefore, security professionals can prevent time wastage and take prompt actions based on these alerts.

**Network activity monitoring:** Organizations can benefit from malware analysis tools that monitor endpoints and networks to detect suspicious files. The tools can record, filter, and analyze network traffic to help security operations teams understand the behavioral indicators of malware and how the malware impacts network traffic.

### What are the Benefits of Malware Analysis Tools?

Organizations can benefit from malware analysis tools in the following ways:

**Effective response to incidents:** Malware analysis tools allow security experts to efficiently respond to and contain incidents. By correctly analyzing with the help of these tools, responders can prevent the malicious code from causing massive damage to the organization and its sensitive data.

**In-depth analysis of suspicious activities:** The tools provide real-time insights into processes and file systems. They help incident responders and security analysts to collect, analyze and gain an in-depth understanding of the information from events and log files. This threat intelligence data can be gathered from firewalls, routers, network detection systems, and domain controllers. After performing deep analysis, these tools generate detailed reports in various formats to guide the team in determining the attacker’s motive and devise strategies for the containment and eradication of malware.

**Increased security:** Tools for malware analysis facilitate quick identification of threats in their systems and take corrective actions on time. This ensures the security of sensitive data and intellectual property from threat actors. Security teams also ensure safety by analyzing compiled code on different platforms such as Windows, macOS, and Linux using these tools.

### Who Uses Malware Analysis Tools?

**Incident response teams:** Cyber security incident response teams conduct digital forensics and malware analysis. Incident response teams conduct root cause analysis to understand how the malware can affect the organization. The team uses malware analysis tools for reverse engineering malware samples and extracting actionable threat intelligence that can be used as reference to identify suspicious files in the future.

**Malware researchers:** Industry or academic malware researchers use malware analysis solutions to enhance their knowledge of the latest techniques, maneuvers, and tools used by cyber attackers to disrupt the security thread of organizations.

### What are the Alternatives to Malware Analysis Tools?

Alternatives to malware analysis tools can replace this type of software, either partially or completely:

[Website security software](https://www.g2.com/categories/website-security): Website security software safeguards websites from cyber attacks, online threats, and adversaries. These tools offer attributes of [distributed denial of service (DDoS) protection software](https://www.g2.com/categories/ddos-protection), [content delivery networks (CDN)](https://www.g2.com/categories/content-delivery-network-cdn), and [web application firewalls (WAF)](https://www.g2.com/categories/web-application-firewall-waf) to provide all-around website protection.&nbsp;

[Antivirus software](https://www.g2.com/categories/antivirus): It is a software that searches for, detects, debugs, and prevents malicious software from infecting the networks, virtual machines, systems, and devices. Malware detected by an antivirus includes viruses, worms, trojans, adware, etc.

#### Software Related to Malware Analysis Tools

Related solutions that can be used together with malware analysis tools include:

[Network sandboxing software](https://www.g2.com/categories/network-sandboxing): A network sandboxing software provides a secure and isolated environment for security analysts to monitor, analyze, identify, and eradicate suspicious files on the company’s network.

### Challenges with Malware Analysis Tools

While malware analysis tools provide numerous advantages to businesses across the globe, they pose certain challenges, as listed below, which organizations must take into account.

**Lack of integration, accuracy, and automation:** One of the core challenges with malware analysis tools is their lack of integration and automation of workflows. As a result, the process becomes error-prone and doesn’t yield productive results. Organizations can lose valuable time due to a lack of accuracy and faulty code analysis while investigating malicious software.

**Lack of expertise in the application of malware analysis tools:** Malware analysis demands accuracy and requires the staff to be properly trained for the execution of this job. It is often challenging to find professionals with the right skill set. Additionally, security teams are often short-staffed and overwhelmed by the increasing number of threats. As a result, they can investigate only a fraction of the total alerts generated.

### How to Buy Malware Analysis Tools

#### Requirements Gathering (RFI/RFP) for Malware Analysis Tools

Whether a company is looking to buy its first malware analysis tool or switching to a new solution—wherever a business is in its buying process, [g2.com](https://www.g2.com/categories/malware-analysis-tools) can help select the best tool to suit the organization’s requirements.

The organization’s security professionals team should think about the pain points and jot them down, and these should be used to help create a criteria checklist. The business pain points might be related to the functionalities the tool must have to meet expectations. Besides technical and performance considerations, the team must also take into account how the new solution can add value to the existing security stack of the company. The checklist is a detailed guide that includes security requirements, necessary and nice-to-have features, budget, number of users, integrations, cloud or on-premises solutions, etc.

Depending on the scope of the deployment, it might be helpful to produce a request for information (RFI), a one-page list with a few bullet points describing what is needed from the malware analysis tool.

#### Compare Malware Analysis Tools Products

**Create a long list**

Vendor evaluations are essential to the software buying process, from meeting the business functionality needs to implementation. It helps to prepare a consistent list of questions regarding specific requirements and concerns to ask each vendor. The buyer may choose between an open-source or a closed-source tool.

The malware analysis products should be evaluated based on the following major parameters:

**User-friendly interface** : Malware analysis is not an easy task. As such, the tools for this job should come with a couple of user-friendly features which make the job of malware analysts as easy as possible. The tools should provide easy-to-use customizable features to help them stay organized.

**Extensive library of malware variants:** It becomes imperative for the tool to have large threat repositories of malware samples to help in the easy identification of different kinds of malware that can infect the system. The tools used for malware analysis typically use signature-based detection, which scans the database for artifacts of known malware families. Malware can go undetected if there is no record of the same variant in the database.

**Automation:** Without automation capabilities, malware detection can become tedious and error-prone even as evasive and advanced malware are becoming more common. To ensure higher accuracy, it is desirable to have additional automation capabilities within the tool as compared to a regular malware analysis solution. The organization can benefit from tools that incorporate machine learning (ML) and artificial intelligence (AI) in malware detection and analysis. ML is not limited to signature-based analysis. Machine learning algorithms help in behavior-based malware detection through the evaluation of objects for malicious behavior by identifying patterns and trends.

**Create a short list**

From the long list of vendors, narrowing down the list of contenders is pragmatic. Buyers must read user reviews, view ratings on the [G2 Grid](https://www.g2.com/categories/malware-analysis-tools#grid) for the malware analysis software category and read useability ratings. Buyers can compare the features offered by different products, such as decompilation, disassembly, assembly, graphing, and scripting, along with various other features. It is also recommended to compare the pricing structure of various solutions to shorten the list to a handful of contenders.

**Conduct demos**

While extensive documentation and tutorials are available on vendor websites, it is beneficial to request the provider for a live demo to have a better understanding of their offering. During each demo, buyers must ask questions and get clarifications on different use cases to best evaluate how each vendor stacks up against the competition.&nbsp;

#### Selection of Malware Analysis Tools

**Choose a selection team**

Before getting started, creating a winning team that will work together throughout the entire process, from identifying pain points to implementation, is essential. The selection team should consist of organization members with the right interest, skills, and time to participate in this process. A good starting point is to aim for three to five people who fill the required roles. This may include the primary decision maker, cyber security incident response professional, technical lead, and IT administrator.&nbsp;

Users must make sure that the selection team takes productivity-driven data into account. The selection process should involve comparing notes, facts, and figures noted during the process, such as the availability of advanced capabilities, usability, and security features.

**Negotiation**

It is important to discuss with the vendor their pricing structure, subscription fees, and licensing costs. For instance, the vendor may be willing to give a discount for multi-year contracts or for recommending the tool to other users.

**Final**  **decision**

Selecting a vendor that has a strategy aligned with the company’s security objectives will accelerate growth. Before going all in, it is recommended to roll out a test run or pilot program to test adoption with a small sample size of users. If the tool is well used and received, the buyer can be confident that the selection is correct. If not, it might be time to evaluate other offerings.