Nobody doing malware test of DI here?
I personally use Deep Instinct on businesses machines that I manage. These machines are not a playground and it is beyond unthinkable to start downloading malware. I tested it before on a home computer and it was OK in terms of many factors, malware detection being just one of them.
it can block all kinds of malicious script
It blocks all kinda of scripts, not just malicious scripts. It blocks script interpreters from running, for example, you will be unable to open PowerShell if you try.
To lack an integrated HIPS and firewall
2) No web protection.
3) What non-mainstream browsers does it support? Ungoogled Chromium, Librewolf, Mullvad browser, Brave, Mull, Kiwi etc
Nobody uses HIPS on business, there is no way an admin will be sitting all day answering prompts like “Do you allow the application googleupdate.exe to inject code in chrome.exe?”. This is what home users can do if they feel like it. Though tbh HIPS are vanishing in home solutions as well, because they are useless.
There is no Web Protection, this is a prevention solution for business that is supposed to be layered with a host of other technology, best used with a secure gateway that will provide the web filtering.
I know on MalwareTips it is extremely loved by many to install and layer 10 guys doing the same, but on business environments we have better things to do.
Due to the lack of web filtering, there is no browser support and these Ungoogled browsers are not used by any business around the world. If we wanna block Google telemetry, we don’t need a whole browser for that.
5) How about its protection for UEFI and against rootkits/bootkits?
6) Does it scan external USB flash drive/hdd upon insertion?
7) Does it have a whitelisting/application control feature?
Bootkits will be detected prior to their activation which is the main point of preventive solution. Once bootkits are activated, neither Deep Instinct, nor God will help you get your PC clean.
It does scan USB flash drives if you configure it to do so. It is also not extremely difficult to scan it manually.
There is no whitelisting/application control as this is not a reputation-based solution but a static analysis one. It was mentioned in this discussion already that the offline protection is what made DI desirable in the first place. For reputation/whitelisting, have a look at Norton.