Today, we are going to compare four antivirus programs for businesses: CrowndStrike, Cylance, Cynet, and DeepInstinct.
All four antivirus programs were configured identically for this test using script policies (Malware Lab policy).
The test is also the same: an introductory URL test followed by a malware pack containing a mix of Trojans, infostealers, JS/VBS/HTA/JAVA attacks, some older malware, and various other types of malware.
Let's see how our four challengers defend us.
Please note: Due to a connection issue, I was unable to show and connect to the Cylance panel :/
@kamiloxf request
=> This is the last video of 2025 (I even broke the thumbnail level to celebrate ^^ ), I'm going to take two weeks off.
See you in mid-January for new videos with a huge change
All four antivirus programs were configured identically for this test using script policies (Malware Lab policy).
The test is also the same: an introductory URL test followed by a malware pack containing a mix of Trojans, infostealers, JS/VBS/HTA/JAVA attacks, some older malware, and various other types of malware.
Let's see how our four challengers defend us.
Please note: Due to a connection issue, I was unable to show and connect to the Cylance panel :/
CrowndStrike : URL 8/9
6 malware out of 79 remain, good blocking despite a script running (Powershell) but appears inactive.
NPE detects 2 threats (remnants) and KVRT 2 as well
Cynet: Cynet blocks 7 out of 9 links. I can't count them on the pack because Cynet renames the files...
During execution, many blocks but one VM infected, a GDI malware even manages to paralyze me.
NPE detects 21 files and KVRT detects 6.
Cylance: It blocks 8 out of 10 links (during the other tests, the link went dead...). 2 pieces of malware got through.
Despite my request to analyze the pack, it doesn't do so!
So I run it, note a few crashes, but the VM gets infected at lightning speed, with patched processes, etc.
NPE detects 6, KVRT detects 11, and the memory is infected.
DeepInstinct: Blocks 8 out of 9 links.
There are 19 files left out of 79, lots of blocks, but one stubborn script at the end.
NPE detects 3 and KVRT detects 2.
6 malware out of 79 remain, good blocking despite a script running (Powershell) but appears inactive.
NPE detects 2 threats (remnants) and KVRT 2 as well
Cynet: Cynet blocks 7 out of 9 links. I can't count them on the pack because Cynet renames the files...
During execution, many blocks but one VM infected, a GDI malware even manages to paralyze me.
NPE detects 21 files and KVRT detects 6.
Cylance: It blocks 8 out of 10 links (during the other tests, the link went dead...). 2 pieces of malware got through.
Despite my request to analyze the pack, it doesn't do so!
So I run it, note a few crashes, but the VM gets infected at lightning speed, with patched processes, etc.
NPE detects 6, KVRT detects 11, and the memory is infected.
DeepInstinct: Blocks 8 out of 9 links.
There are 19 files left out of 79, lots of blocks, but one stubborn script at the end.
NPE detects 3 and KVRT detects 2.
@kamiloxf request
=> This is the last video of 2025 (I even broke the thumbnail level to celebrate ^^ ), I'm going to take two weeks off.
See you in mid-January for new videos with a huge change




