Metadefender: A More Private Alternative to VirusTotal

Computer Padlock Keys Security

CISOs in every organization dread the possibility of sensitive company files and data being exposed. Yet the need for up-to-date, actionable threat data is huge. Consequently, many incident response teams upload company files to VirusTotal for free multiscanning.

The problem is that VirusTotal is not private. Any samples uploaded to VirusTotal leave the organization and are essentially made available for any other researchers using the service. While multiscanning and threat intelligence are more important than ever, this compromise of privacy is less than ideal and potentially disastrous.

However, there is an alternative.

Secure, On-Premises Multiscanning

Server Farm

There are effective multiscanning options outside of VirusTotal. MetaDefender is one of those options.

MetaDefender offers organizations the ability to reap the benefits of multiscanning and threat intelligence privately. It is possible to deploy MetaDefender with over 35+ anti-malware engines on-premises, so that files go through the multiscanning process without ever leaving the corporate network. Alternatively, customers of MetaDefender Cloud can activate private scanning so that their samples are never shared.

Thus, organizations benefit from multiscanning without exposing their sensitive files to public view.

Multiscanning Results and Performance

MetaDefender Multi-scanning Scan Results Threat Found

Performance is another key factor in selecting a multiscanning solution. MetaDefender combines up to 35+ anti-malware engines (and over 30 in some packages) and scans files and archives quickly and efficiently. MetaDefender file scans often take less than 500 milliseconds.

In addition, certain MetaDefender packages have detection rates over 99.5% with minimal false positives. As a result, malware outbreaks are detected within minutes.

According to our recent measurements, MetaDefender Cloud is actually faster than VirusTotal.

Number of File ScansMetaDefender CloudVirusTotal


Number of HashesMetaDefender CloudVirusTotal


To learn more, see our outbreak report.

Benefits of MetaDefender vs. VirusTotal

Aside from pure performance and privacy concerns, MetaDefender is a more complete solution, offering unique technology to solve the problems brought about by the contemporary threat landscape.

 MetaDefender CloudVirusTotal
Number of Engines4255
Data Sanitization (CDR): removes threats from documents (learn more)



Vulnerability Detection: detects known application vulnerabilities (learn more)



Expected Network Connections: analyzes IP reputation and thousands of application installations (learn more)



Loaded Components: all components loaded by an application (learn more)



Hash Lookups: quickly look up files based on hash (learn more)

(compare speed)

(compare speed)

Heuristics: detect new threats not identifiable by signatures (learn more)
Privacy: private scanning so that samples are not shared (learn more)


Data Sanitization (Content Disarm and Reconstruction)

Data sanitization (CDR) strips potentially malicious content, such as scripts or embedded objects, from files and reconstructs them with their original content intact. MetaDefender offers the broadest and deepest CDR on the market  nearly 30 file types and over 100 file type conversions are supported.

Vulnerability Information

MetaDefender provides data on the vulnerabilities associated with each file hash.

Threat Intelligence

MetaDefender has real-time threat data to enable developers and security administrators to blacklist the latest known malicious MD5, SHA1, and SHA256 hashes.

Fast-Growing Database

On a daily basis, MetaDefender processes new unique files, adding to its fast-growing database collected from tens of thousands of frequent users.

Try a 14-day trial of MetaDefender to see how MetaDefender offers the benefits of VirusTotal with none of the typical drawbacks of relying on a third-party tool.

Sign up for Blog updates
Get information and insight from the leaders in advanced threat prevention.