Welcome to the Cyber-TA
Daily Malware Binary DIGEST Summary Page



15 June 2009

All data collection and analyses summarized in this page were 100% AUTO-GENERATED.

DEVELOPERS: Vinod Yegneswaran (SRI), Phillip Porras (SRI), Hassen Saidi (SRI)
Monirul Sharif (Georgia-Tech), Arvind Narayanan (University of Texas at Austin)

The data on this website is provided for research purposes only. It is provided
for your personal use only and is supplied AS IS, WITHOUT WARRANTY OF ANY KIND.
Use or reliance on this data is at your own risk.



Packed
MD5
UnPacket
MD5
Victim
OS
AntiVirus
Hit-Cnt
First
Encounter
Last
Encounter
Freq
Cnt
Behavioral
Clusters
Unpacked
Egg.asm
Packer
Fingerprint
API
Resolution
String
Cnt
Syscall
Trace
4e12ded53f
NEW
464265496c [none] Win2K-f 37 of 41 13:14:21 13:14:21 1 none none:none
ASProtect| none trace
5e8c8e6c7f
NEW
5e4407efc5 [none] Win2K-f 37 of 40 18:04:50 18:04:50 1 none none:none
StarForce| none trace
53bfe15e91
NEW
73f1082158
NEW
1473091351 [0]
none [0]
Win2K-f
WinXP
0 of 32 15:28:28 20:18:39 4 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=75
embedded dns
lines=90
trace
trace
c42f9f40e3
NEW
e024741844 [none] WinXP 31 of 40 11:58:26 11:58:26 1 none none:none
FASM| none trace
952cb75a19
NEW
59cc2f1497 [none] WinXP 35 of 37 11:56:17 11:56:17 1 none none:none
PolyEnE| none trace
dc331fb791
NEW
none[3] Win2K-f 3 of 37 07:49:35 20:11:22 4 none none:none
UPX| none trace
bea8cb1865
NEW
fac78fde16
NEW
154de51a66 [none]
882896ab05[none]
Win2K-f 35 of 36 20:21:19 20:21:19 1 none none:none
none:none
Armadillo|
tElock|
none
none
trace
trace
53bfe15e91
NEW
1473091351 [0] Win2K-f
WinXP
33 of 33 12:36:37 23:24:58 9 none ASM:Graph
tElock| 96% lines=75
embedded dns
trace
492957db81
NEW
none[0] WinXP 29 of 29 18:24:13 18:24:13 1 none ASM:Graph
PolyEnE| 100% lines=69
embedded dns
trace
53bfe15e91
NEW
b7082104e4
NEW
1473091351 [0]
c5b49e7b82[0]
Win2K-f 8 of 33 23:24:58 23:24:58 1 none ASM:Graph
ASM:Graph
tElock|
tElock|
100% lines=75
embedded dns
lines=41
trace
trace
f54691063f
NEW
6039c698cd [0] WinXP 37 of 40 14:21:55 14:21:55 1 none ASM:Graph
none|none 55% lines=59 trace
36807eaa84
NEW
none[none] Win2K-f 1 of 41 09:45:33 09:45:33 1 none none:none
none|none none trace
367ce61cff
NEW
48128671a8 [0] Win2K-f 25 of 39 15:42:51 15:42:51 1 none ASM:Graph
StarForce| 62% lines=52 trace
0ada72d805
NEW
none[0] WinXP 29 of 29 21:56:37 21:56:37 1 none ASM:Graph
ASPack| 54% lines=281
embedded dns
trace
8ce32ded17
NEW
none[3] Win2K-f 4 of 37 17:26:08 17:34:50 2 none none:none
Armadillo| none trace
367ce61cff
NEW
889c9de162
NEW
abf828b2d5
NEW
48128671a8 [0]
5218b453e9[none]
230036ecf3[0]
Win2K-f 7 of 40 15:42:51 15:42:51 1 none ASM:Graph
none:none
ASM:Graph
StarForce|
FSG|
none|none
100% lines=52
none
lines=6
trace
trace
trace
a12cab51ef
NEW
none[0] WinXP 29 of 29 16:50:51 18:47:22 2 none none:none
ASPack| 54% lines=281
embedded dns
trace
d60e538e72
NEW
none[3] Win2K-f 2 of 37 15:27:44 15:27:44 1 none none:none
UPX| none trace
f502585714
NEW
none[0] WinXP 29 of 29 10:28:36 10:28:36 1 none none:none
PolyEnE| 100% lines=63 trace
80b5dc1bc4
NEW
none[none] Win2K-f 4 of 41 09:23:55 09:23:55 1 none none:none
StarForce| none trace
042774a2b7
NEW
none[0] WinXP 29 of 29 20:30:43 20:30:43 1 none ASM:Graph
PolyEnE| 0% lines=71
embedded dns
trace
bea8cb1865
NEW
154de51a66 [none] Win2K-f 32 of 36 20:21:19 20:21:19 1 none none:none
Armadillo| none trace
367ce61cff
NEW
889c9de162
NEW
abf828b2d5
NEW
f1bb8174e3
NEW
48128671a8 [0]
5218b453e9[none]
230036ecf3[0]
ff7d442dd1[0]
Win2K-f 24 of 40 15:42:51 15:42:51 1 none ASM:Graph
none:none
ASM:Graph
none:none
StarForce|
FSG|
none|none
none|none
lines=52
none
lines=6
none
trace
trace
trace
trace
7d99b0e910
NEW
none[0] WinXP 26 of 28 12:12:23 12:12:23 1 none none:none
PolyEnE| 99% lines=68 trace
367ce61cff
NEW
889c9de162
NEW
abf828b2d5
NEW
f1bb8174e3
NEW
f37b5a8f0c
NEW
48128671a8 [0]
5218b453e9[none]
230036ecf3[0]
ff7d442dd1[0]
dce19a471e[0]
Win2K-f 19 of 40 15:42:51 15:42:51 1 none ASM:Graph
none:none
ASM:Graph
none:none
none:none
StarForce|
FSG|
none|none
none|none
none|none
lines=52
none
lines=6
none
none
trace
trace
trace
trace
trace
53bfe15e91
NEW
57ce4acac2
NEW
1473091351 [0]
none [0]
Win2K-f 0 of 33 12:36:37 12:36:37 1 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=75
embedded dns
lines=90
trace
trace
1a2c0e6130
NEW
none[0] WinXP 29 of 29 23:36:19 23:36:19 1 none none:none
none|none 33% lines=60 trace
1a76ee47c1
NEW
8ef942208b [0] WinXP 36 of 40 10:09:58 10:09:58 1 none none:none
Armadillo| none trace
53bfe15e91
NEW
a08f3b74a4
NEW
1473091351 [0]
none [0]
Win2K-f
WinXP
0 of 33 13:53:59 19:07:02 3 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=75
embedded dns
lines=90
trace
trace
b27d73bfcb
NEW
473c6454ce [0] WinXP 35 of 36 10:47:35 10:47:35 1 none ASM:Graph
PolyEnE| 100% lines=68 trace
7587773eea
NEW
none[3] Win2K-f 7 of 37 03:33:04 16:31:29 2 none none:none
StarForce| none trace
80b5dc1bc4
NEW
a4c9fa47d4
NEW
bc20e0e6b8
NEW
none[none]
620e2191be[none]
none [none]
Win2K-f 0 of 41 09:23:55 09:23:55 1 none none:none
none:none
none:none
StarForce|
PEQuake|
none|none
none
none
none
trace
trace
trace
1a76ee47c1
NEW
78834f5ab6
NEW
8ef942208b [0]
2e416b0e36[0]
WinXP 37 of 40 10:09:58 10:09:58 1 none none:none
ASM:Graph
Armadillo|
tElock|
96% none
lines=64
embedded dns
trace
trace
70ec5c4b3f
NEW
f697adabdd [0] WinXP 39 of 40 12:54:46 12:54:46 1 none none:none
StarForce| none trace
80b5dc1bc4
NEW
a4c9fa47d4
NEW
none[none]
620e2191be[none]
Win2K-f 6 of 41 09:23:55 09:23:55 1 none none:none
none:none
StarForce|
PEQuake|
none
none
trace
trace
c33cc35f15
NEW
4e5523c2ae [none] Win2K-f 12 of 41 15:42:10 21:48:53 2 none none:none
MingWin32| none trace
5285741560
NEW
60590b8b67 [0] WinXP 37 of 40 17:09:32 17:09:32 1 none ASM:Graph
none|none 55% lines=59 trace
367ce61cff
NEW
889c9de162
NEW
48128671a8 [0]
5218b453e9[none]
Win2K-f 39 of 41 15:42:51 15:42:51 1 none ASM:Graph
none:none
StarForce|
FSG|
lines=52
none
trace
trace
d9cb288f31
NEW
45603a001c [0] Win2K-f 3 of 37 12:23:26 21:25:54 10 none ASM:Graph
UPX| 92% lines=174
embedded dns
trace