No more typing reviews! Try our Samantha, our new voice AI agent.

CrowdStrike Falcon Sandbox vs VirusTotal comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 3, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

CrowdStrike Falcon Sandbox
Ranking in Anti-Malware Tools
12th
Average Rating
8.2
Reviews Sentiment
6.5
Number of Reviews
8
Ranking in other categories
No ranking in other categories
VirusTotal
Ranking in Anti-Malware Tools
5th
Average Rating
8.8
Reviews Sentiment
7.3
Number of Reviews
10
Ranking in other categories
Threat Intelligence Platforms (TIP) (7th)
 

Mindshare comparison

As of August 2026, in the Anti-Malware Tools category, the mindshare of CrowdStrike Falcon Sandbox is 1.5%, up from 1.3% compared to the previous year. The mindshare of VirusTotal is 3.1%, down from 4.7% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Anti-Malware Tools Mindshare Distribution
ProductMindshare (%)
VirusTotal3.1%
CrowdStrike Falcon Sandbox1.5%
Other95.4%
Anti-Malware Tools
 

Featured Reviews

ZakariaFawzy - PeerSpot reviewer
Presales Consultant at Cyber Knight Technologies FZ LLC
Unified threat analysis has strengthened detection accuracy and accelerated incident response
The multi-platform analysis in the product is very effective, as it helps to identify threats through powerful scanning and detection, and in response as well. Comparing to other products, this product performs very well in terms of stability and detection, which is important because other products may encounter problems in operations. This product is powerful in detection, which is the most important part because any customer wants a solution that detects what's happening. This is the real strength of CrowdStrike Falcon Sandbox. It's really powerful in detection; it detects any minor change, any minor injection in the data or whatsoever. The visibility is really good. CrowdStrike Falcon Sandbox has one unified platform to manage everything, which is really nice. It has one agent and one console. One agent to install in the machine, and this one agent will give capabilities. I can have visibility into one console, and through this one console, I can do multiple things and manage multiple solutions within CrowdStrike Falcon Sandbox. I know that the memory forensic feature in CrowdStrike Falcon Sandbox is well-regarded, as CrowdStrike Falcon Sandbox is really famous for this. It's one of the most well-known companies in forensics, and many customers are getting CrowdStrike Falcon Sandbox involved when they are in threat or when they face a threat. They do their forensics in a really good way, and they are reaching a very powerful result. I have experienced this with multiple customers who asked CrowdStrike Falcon Sandbox to interfere and do the forensics, knowing exactly what amount of harm or what amount of breach has been done into their network. CrowdStrike Falcon Sandbox can manage this and give them full visibility about what has been done, what has been remediated, and what has been lost. The API integrations they offer are extensive and improve threat analysis and collaboration in general, as they have a wide range of integrations with multiple products and multiple vendors, multiple solutions. Throughout the one year and a half, I didn't face any scenario with integrations except for the file monitoring for the AIX. This is the only case I have faced with them, as they don't support IBM AIX file monitoring. But aside from this, their integration spectrum is really wide, really big, and strong, allowing them to integrate with multiple products.
reviewer2588199 - PeerSpot reviewer
Security Specialist at a tech vendor with 10,001+ employees
Improves security alerts and analysis with comprehensive insights
I would like to see improvements in the score consistency and accuracy. VirusTotal should add more details like those from competitors such as URL Void or Symantec URL Checker, which show the category of websites. The addition of a file selection option to analyze files would also enhance the service.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"I find the notifications and alerts received from CrowdStrike server to be invaluable."
"We have seen returns on our investment in more than thousands of instances, which is the most important part for us."
"CrowdStrike is an excellent tool for managing all endpoint-related security tasks."
"I don't have any suggestions, because the solution is company-maintained and I believe the company is adopting every feature based on their needs and requirements."
"Since I'm working with CrowdStrike Falcon Sandbox, I would say that the solution enhances a company's threat intelligence, as it's a very powerful solution."
"The tool helps to obtain information about potential company breaches. The malware analysis capability is very effective. We check files from various sources, such as emails, USBs, and cloud drives."
"The CrowdStrike Falcon Sandbox is one of the most intelligent anti-virus solutions present in the market."
"The most valuable features include malware detection, threat rating related to files, studying the metadata of the files, and providing threat feeds to the endpoint."
"It gives detailed information about suspicious IPs, which is one of its most valuable features."
"The product is easy to use with coding, such as Python or Java, via its API."
"It allows us to see if there have been previous reports on certain indicators of compromise, providing insights from other security professionals."
"I have never had any problems with stability or bugs while using VirusTotal."
"It is quite simple for anyone if they just want to check some suspicious URLs."
"It provides detailed insights into possible malicious behavior, dropped files, and TCP connections."
"The feature I like the most is the ability to see the MD5 or SHA-256 signature of the file, and also the composition of the file according to its segments."
"VirusTotal provides 95% to 98% accurate information."
 

Cons

"While CrowdStrike is a powerful tool, the user interface is cluttered with many features, making it challenging to navigate."
"As for room for improvement, we can mention that maybe some additional integrations will be beneficial to cover the whole use cases."
"The product needs integration with SOAR products to add more integration points, which is important for various clients."
"As of now, there is nothing specific in need of improvement."
"The technical support is medium - they could improve, as communication is sometimes slow or late. There are missing detections that other tools catch. For improvements, we need easier ways to view full incident information and better presentation of data. Adding risk indicators for incidents would help decide on immediate actions. The platform should provide more information about incident risks to help less knowledgeable staff make decisions."
"One of the valuable features of the solution is to impressively detect threats without any impact on the end point performance. The solution ensures that the end users have a seamless experience."
"One area that could be improved about CrowdStrike Falcon Sandbox is its console; it should be more user-friendly."
"The detailed report is very valuable, but not always accurate. This is a great resource to share amongst team members and stakeholders after analysis."
"There should be room for improvement, particularly in the API side of things."
"I would like to see an improved user interface and some automation."
"There is room for improvement, particularly in making some of the most useful features more accessible in the non-paid version."
"VirusTotal needs better advertisement and promotion, especially in the Middle East, since it is not yet widely recognized or popular in that region."
"The platform could improve in the areas of endpoints and networks."
"VirusTotal has predefined reports, but there is a lot of manual effort involved."
"I would like to see improved correlation with other threat intelligence sources, not just reliant on its own database, to enhance the database of threat intelligence that VirusTotal offers."
"They can improve the telemetry. Whenever we handle a sample, they cannot provide any information about a victim."
 

Pricing and Cost Advice

"Price-wise, the tool is a bit above mid-range, maybe 7 out of 10, where 10 is the most expensive."
"CrowdStrike Falcon Sandbox is not cheap; however, whether it should be more affordable is a decision best left to the company."
"The pricing is very economical."
"The pricing is reasonable."
"VirusTotal is an expensive solution."
"We are using VirusTotal with free licenses, managing the license limits across three or four accounts, thus incurring no costs."
report
Use our free recommendation engine to learn which Anti-Malware Tools solutions are best for your needs.
908,877 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
14%
Construction Company
13%
Manufacturing Company
12%
Comms Service Provider
10%
Computer Software Company
11%
Comms Service Provider
10%
Financial Services Firm
10%
Manufacturing Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business5
Midsize Enterprise1
Large Enterprise3
By reviewers
Company SizeCount
Small Business4
Midsize Enterprise2
Large Enterprise5
 

Questions from the Community

What is your experience regarding pricing and costs for CrowdStrike Falcon Sandbox?
I am not sure if there is a financial benefit; maybe, maybe not, as we did not evaluate that aspect. I think it can be expensive, but it depends on the products.
What needs improvement with CrowdStrike Falcon Sandbox?
As for room for improvement, we can mention that maybe some additional integrations will be beneficial to cover the whole use cases.
What is your primary use case for CrowdStrike Falcon Sandbox?
The major use case for CrowdStrike Falcon Sandbox is that we are using it with customers who need to check and validate the data the users are uploading to them, to check all the files and all the ...
What is your experience regarding pricing and costs for VirusTotal?
I do not know about the pricing or licensing as our organization services VirusTotal for our clients.
What needs improvement with VirusTotal?
I would like to see improvements in the score consistency and accuracy. VirusTotal should add more details like those from competitors such as URL Void or Symantec URL Checker, which show the categ...
What is your primary use case for VirusTotal?
As I work in an incident response role, my daily task is to mitigate the security alert and perform the analysis part. When any alerts come, I check the IPs from where they originate and the locati...
 

Overview

Find out what your peers are saying about CrowdStrike Falcon Sandbox vs. VirusTotal and other solutions. Updated: June 2026.
908,877 professionals have used our research since 2012.