Who of ours is analyzing here: Anubis?

Hi malware fighters,

Something different from virustotal.com. Well how about this?
Another site for analyzing malware binaries from suspected sites, can be found here:
http://anubis.iseclab.org/?action=home
Who of us has experience going there?

polonus


I did not even know of that one, Polonus, but I will try it when the chance arises.


Right now, I think it’s much more slower than virustotal and have very few engines for analysis.
Am I wrong or it is too weak compared to virustotal?

Based on the brief info on that page, I would expect it to be slower than virustotal as it isn’t doing a simple virus scan but analysing what it does, so it could be possible to detect something which isn’t detected under the VT scans.

However, I have yet to try it and see exactly what it does.

Well I uploaded an old suspect file pretending to be avast.exe which I knew was infected, but not what it did.

The results page, http://anubis.iseclab.org/?action=result&task_id=13e905e74638b0154e5bc6a76ba771477 gives links to reports you can view and download, etc. it is quite comprehensive. Considering this file was only 43KB.

So it isn’t surprising it is slower than VT as it is an analysis tool rather than a relatively simple virus scanner system.