Welcome to the Cyber-TA
Daily Malware Binary DIGEST Summary Page



27 September 2009

All data collection and analyses summarized in this page were 100% AUTO-GENERATED.

DEVELOPERS: Vinod Yegneswaran (SRI), Phillip Porras (SRI), Hassen Saidi (SRI)
Monirul Sharif (Georgia-Tech), Arvind Narayanan (University of Texas at Austin)

The data on this website is provided for research purposes only. It is provided
for your personal use only and is supplied AS IS, WITHOUT WARRANTY OF ANY KIND.
Use or reliance on this data is at your own risk.



Packed
MD5
UnPacket
MD5
Victim
OS
AntiVirus
Hit-Cnt
First
Encounter
Last
Encounter
Freq
Cnt
Behavioral
Clusters
Unpacked
Egg.asm
Packer
Fingerprint
API
Resolution
String
Cnt
Syscall
Trace
218ce30f5c
NEW
73f1082158
NEW
none [3]
none [0]
WinXP 0 of 32 23:51:58 23:51:58 1 none:none
none:none
none|none
Armadillo|
0% none
lines=90
trace
trace
39336e51eb
NEW
524bc0f75c
NEW
820b27d4c6
NEW
3f5ab71d39 [0]
d3e9510bb3[0]
1102de0215[0]
1102de0215[0]
WinXP 38 of 41 19:03:23 19:03:23 1 none:none
none:none
none:none
Neolite|
PENinja S|
Armadillo|
none
none
none
trace
trace
trace
94716a73b0
NEW
6b5fdc79fd [0] Win2K-f 39 of 41 16:49:27 16:49:27 1 none:none
Armadillo| none trace
067917e07b
NEW
d764c1dcb2
NEW
dae35b319c [0]
3d2bc60c5d[0]
3d2bc60c5d[0]
WinXP 38 of 40 15:49:36 15:49:36 1 none:none
none:none
Armadillo|
tElock|
none
none
trace
trace
99b248336f
NEW
9d677c3f70
NEW
c7830331fc
NEW
e8a94c0024
NEW
f97bcf8374
NEW
c64bd1a776 [0]
77e75ff10f[0]
7953649664[0]
9dd94e06a3[0]
9dd94e06a3[0]
none [4]
Win2K-f 15 of 41 06:39:11 06:39:11 1 none:none
none:none
none:none
none:none
none:none
Armadillo|
tElock|
tElock|
StarForce|
pex|
none
none
none
none
none
trace
trace
trace
trace
trace
53bfe15e91
NEW
1473091351 [0] Win2K-f
WinXP
33 of 33 03:26:20 21:01:55 7 ASM:Graph
tElock| 96% lines=75
embedded dns
trace
07fabc79ef
NEW
none [0] Win2K-f 0 of 32 10:05:05 10:05:05 1 ASM:Graph
Armadillo| 47% lines=81 trace
53bfe15e91
NEW
b7082104e4
NEW
1473091351 [0]
c5b49e7b82[0]
c5b49e7b82[0]
WinXP 8 of 33 08:44:52 21:01:55 2 ASM:Graph
ASM:Graph
tElock|
tElock|
100% lines=75
embedded dns
lines=41
trace
trace
dcc4d7f9bb
NEW
f63727b2f4 [0] WinXP 40 of 41 01:59:41 16:19:02 2 none:none
PolyEnE| none trace
cc88f4f016
NEW
3d17903825 [0] WinXP 31 of 41 05:31:14 05:31:14 1 none:none
StarForce| none trace
9fdc9cf56c
NEW
7915c81794 [0] WinXP 39 of 41 17:17:26 17:17:26 1 none:none
Armadillo| none trace
fedffe273e
NEW
1f577beaa8 [0] Win2K-f 40 of 41 16:57:38 16:57:38 1 none:none
Stranik| none trace
02fc26757d
NEW
c6e29542be [0] Win2K-f 31 of 36 14:13:02 14:13:02 1 none:none
Armadillo| none trace
02fc26757d
NEW
9f5880bc0f
NEW
c6e29542be [0]
58b1c7ef40[0]
58b1c7ef40[0]
Win2K-f 33 of 36 14:13:02 14:13:02 1 none:none
none:none
Armadillo|
StarForce|
none
none
trace
trace
99b248336f
NEW
9d677c3f70
NEW
c7830331fc
NEW
e8a94c0024
NEW
c64bd1a776 [0]
77e75ff10f[0]
7953649664[0]
9dd94e06a3[0]
9dd94e06a3[0]
Win2K-f 4 of 41 06:39:11 06:39:11 1 none:none
none:none
none:none
none:none
Armadillo|
tElock|
tElock|
StarForce|
none
none
none
none
trace
trace
trace
trace
a12cab51ef
NEW
none [0] WinXP 29 of 29 16:17:32 16:17:32 1 none:none
ASPack| 54% lines=281
embedded dns
trace
99b248336f
NEW
c64bd1a776 [0] Win2K-f 34 of 36 06:39:11 06:39:11 1 none:none
Armadillo| none trace
067917e07b
NEW
dae35b319c [0] WinXP 36 of 41 15:49:36 15:49:36 1 none:none
Armadillo| none trace
d60e538e72
NEW
none [3] Win2K-f 2 of 37 12:32:20 12:32:20 1 none:none
UPX| none trace
7c153bb816
NEW
3e38bd1d25 [0] WinXP 40 of 41 15:20:17 15:20:17 1 none:none
Stranik| none trace
218ce30f5c
NEW
none [3] WinXP 18 of 35 23:51:58 23:51:58 1 none:none
none|none none trace
78cfa70905
NEW
c17d8c800f [0] Win2K-f 40 of 41 17:30:17 17:30:17 1 none:none
PENinja S| none trace
39336e51eb
NEW
524bc0f75c
NEW
3f5ab71d39 [0]
d3e9510bb3[0]
d3e9510bb3[0]
WinXP 32 of 38 19:03:23 19:03:23 1 none:none
none:none
Neolite|
PENinja S|
none
none
trace
trace
042774a2b7
NEW
none [0] WinXP 29 of 29 17:01:12 17:01:12 1 none:none
PolyEnE| 100% lines=69
embedded dns
trace
99b248336f
NEW
9d677c3f70
NEW
c7830331fc
NEW
c64bd1a776 [0]
77e75ff10f[0]
7953649664[0]
7953649664[0]
Win2K-f 7 of 41 06:39:11 06:39:11 1 none:none
none:none
none:none
Armadillo|
tElock|
tElock|
none
none
none
trace
trace
trace
741e3b03b3
NEW
none [0] WinXP 31 of 32 12:58:04 12:58:04 1 none:none
none|none 32% lines=61 trace
0dc5e34053
NEW
320071fd7b [0] WinXP 36 of 41 14:58:17 14:58:17 1 none:none
Armadillo| none trace
b0c46107a6
NEW
bac4cc6eec [0] WinXP 33 of 41 18:15:31 18:15:31 1 none:none
Armadillo| none trace
1f69f4e905
NEW
bf861f894b [0] WinXP 39 of 41 15:34:48 15:34:48 1 none:none
Armadillo| none trace
39336e51eb
NEW
3f5ab71d39 [0] WinXP 29 of 41 19:03:23 19:03:23 1 none:none
Neolite| none trace
a9c5179d74
NEW
48e0c7e36a [0] Win2K-f 39 of 41 16:23:24 16:23:24 1 none:none
Armadillo| none trace
dc4dbc2bf7
NEW
33ecef1cca [0] WinXP
Win2K-f
38 of 41 14:58:43 18:36:23 2 none:none
Stranik| none trace
eda3b7766c
NEW
7556343561 [0] WinXP 40 of 41 02:57:07 23:45:01 2 none:none
PolyEnE| none trace
7d99b0e910
NEW
none [0] WinXP 26 of 28 02:47:49 15:55:28 2 none:none
PolyEnE| 99% lines=68 trace
53bfe15e91
NEW
a08f3b74a4
NEW
1473091351 [0]
none [0]
Win2K-f
WinXP
0 of 33 03:26:20 20:10:57 4 ASM:Graph
none:none
tElock|
Armadillo|
0% lines=75
embedded dns
lines=90
trace
trace
de37f2fc47
NEW
bac4cc6eec [0] Win2K-f
WinXP
33 of 41 15:20:48 18:51:05 3 none:none
Armadillo| none trace
f9288312b5
NEW
bfdbe01a07 [0] WinXP 38 of 41 15:00:15 15:00:15 1 none:none
Armadillo| none trace
6a9ddd72bb
NEW
940af3d988 [0] Win2K-f 39 of 41 15:47:23 15:47:23 1 none:none
Armadillo| none trace
dba6cd1d33
NEW
ac7cd6d443 [0] WinXP 39 of 41 11:43:13 11:43:13 1 none:none
ASPack| none trace
29e407e21a
NEW
c91b492a8b [0] Win2K-f 39 of 41 14:57:50 14:57:50 1 none:none
Armadillo| none trace
f2a8dafb30
NEW
1d0f660523 [0] WinXP 39 of 41 04:39:16 21:42:04 2 none:none
PolyEnE| none trace
5d643abe90
NEW
888af3572a [0] WinXP 39 of 41 16:57:09 16:57:09 1 none:none
Armadillo| none trace
8f0bb9144b
NEW
7583fe4738 [0] Win2K-f 30 of 40 22:28:28 22:28:28 1 none:none
Armadillo| none trace
99b248336f
NEW
9d677c3f70
NEW
c64bd1a776 [0]
77e75ff10f[0]
77e75ff10f[0]
Win2K-f 29 of 32 06:39:11 06:39:11 1 none:none
none:none
Armadillo|
tElock|
none
none
trace
trace