I use VirusTotal to examine and manually investigate data leaks, compromised information, and malware. If some malware is targeted at our region, I try to find that with the hash in IoC and create alerts. For example, if some attacker creates ransomware and targets Turkey's financial sector, I write a query for that. After that, Google will show me the hash related to my research. After that, I add this hash to create alerts if a customer gets mail attacks related to this cache.
With VirusTotal, you can do a competitive landscape. For example, I use Kaspersky Endpoint solution antivirus. With VirusTotal, I can check for any hash, malware, file, domain, IP URL, or malicious URL, and Kaspersky stays clean. I can see if Kaspersky misses attacks.
VirusTotal is hard to understand because you need to know Google Docs to create queries, and it doesn't have documentation for that. If you write a specific query, you can find data leaks, mail issues, and incident responses. Google has three billion data for IP and domain. It's a huge database. Google doesn't have any understandable documentation for how to create queries.
I have been using VirusTotal for six months.
VirusTotal has amazing stability.
I rate VirusTotal ten out of ten for stability.
Around five people are using the solution in our organization.
I rate VirusTotal ten out of ten for scalability.
I was not 100% happy with VirusTotal's technical support because they don't have a solid structure. Two weeks ago, I needed a use case for the financial sector, and they couldn't share the use case.
The solution's initial setup is easy, and I can do API integration with solutions.
VirusTotal is an expensive solution.
Overall, I rate VirusTotal ten out of ten.