imho these aren`t very relevant tests. the source where you get your malware is probably one of the sources the av companies get them too, except the honeypots, dark web, cloud etc. the really best way to test an av is testing it`s behaviour blocking techniques, sandboxing, cloud abilities, virtualization, hips etc because each day hundreds, thousands of new malware samples are created and an av could not ever keep pace with the signatures, but with the malicious behaviour they can. so, you should disable the protection while testing and leave the behaviour running (if the av you test has such shield). don`t throw stones, it`s just my opinion.
anyway, thanks for the work of creating this video.