Welcome to the Cyber-TA
Daily Malware Binary DIGEST Summary Page



02 August 2009

All data collection and analyses summarized in this page were 100% AUTO-GENERATED.

DEVELOPERS: Vinod Yegneswaran (SRI), Phillip Porras (SRI), Hassen Saidi (SRI)
Monirul Sharif (Georgia-Tech), Arvind Narayanan (University of Texas at Austin)

The data on this website is provided for research purposes only. It is provided
for your personal use only and is supplied AS IS, WITHOUT WARRANTY OF ANY KIND.
Use or reliance on this data is at your own risk.



Packed
MD5
UnPacket
MD5
Victim
OS
AntiVirus
Hit-Cnt
First
Encounter
Last
Encounter
Freq
Cnt
Behavioral
Clusters
Unpacked
Egg.asm
Packer
Fingerprint
API
Resolution
String
Cnt
Syscall
Trace
6648e7022b
NEW
a72398081f
NEW
0ad0f97bcc [0]
3f0ad45d1c[0]
Win2K-f 34 of 40 18:49:53 18:49:53 1 none none:none
none:none
UPX|
tElock|
none
none
trace
trace
53bfe15e91
NEW
73f1082158
NEW
1473091351 [0]
none [0]
WinXP
Win2K-f
0 of 32 02:25:45 12:10:04 2 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=75
embedded dns
lines=90
trace
trace
cdf48be687
NEW
5c02f1197b [0] WinXP 41 of 41 17:26:09 17:26:09 1 none none:none
PolyEnE| none trace
53bfe15e91
NEW
1473091351 [0] WinXP
Win2K-f
33 of 33 02:25:45 23:04:13 8 none ASM:Graph
tElock| 96% lines=75
embedded dns
trace
10b9665cc5
NEW
6ab29263ea
NEW
344f01b03f [0]
32d3ecc26e[0]
Win2K-f 40 of 41 19:11:49 19:11:49 1 none none:none
none:none
StarForce|
StarForce|
none
none
trace
trace
df17a625ee
NEW
none[0] WinXP 29 of 29 13:33:56 13:33:56 1 none none:none
ASPack| 72% lines=298
embedded dns
trace
53bfe15e91
NEW
b7082104e4
NEW
1473091351 [0]
c5b49e7b82[0]
Win2K-f 8 of 33 06:11:03 14:27:55 2 none ASM:Graph
ASM:Graph
tElock|
tElock|
100% lines=75
embedded dns
lines=41
trace
trace
986b59708d
NEW
none[0] WinXP 29 of 29 21:17:05 21:17:05 1 none none:none
PolyEnE| 100% lines=57 trace
c05290bb06
NEW
dddfe6a7fe [0] WinXP 0 of 0 02:22:54 02:22:54 1 none none:none
PolyEnE| none trace
0c3d1ec2df
NEW
c9008e9a12 [0] WinXP 32 of 36 23:42:41 23:42:41 1 none none:none
Armadillo| none trace
324d1f619a
NEW
c3d646e84a
NEW
0d98e96b9b [0]
f381434632[0]
Win2K-f 38 of 41 23:12:13 23:12:13 1 none none:none
none:none
tElock|
Armadillo|
none
none
trace
trace
a12cab51ef
NEW
none[0] WinXP 29 of 29 09:42:37 21:55:37 2 none none:none
ASPack| 54% lines=281
embedded dns
trace
5818023061
NEW
none[0] WinXP 32 of 32 12:41:16 17:15:25 2 none ASM:Graph
PolyEnE| 99% lines=68 trace
10b9665cc5
NEW
344f01b03f [0] Win2K-f 17 of 38 19:11:49 19:11:49 1 none none:none
StarForce| none trace
9670a0084c
NEW
4f63fded0b [0] Win2K-f 39 of 41 01:32:26 01:32:26 1 none none:none
StarForce| none trace
9716d7995a
NEW
c3a5354b6f [0] WinXP 35 of 35 12:16:23 12:16:23 1 none none:none
PolyEnE| none trace
324d1f619a
NEW
0d98e96b9b [0] Win2K-f 39 of 41 23:12:13 23:12:13 1 none none:none
tElock| none trace
824d6a706e
NEW
a66fd13bcb [0] WinXP 40 of 40 18:21:19 18:21:19 1 none none:none
PolyEnE| none trace
831f4ee0a7
NEW
none[0] WinXP 29 of 29 11:59:23 19:07:11 2 none ASM:Graph
none|none 100% lines=61 trace
0c3d1ec2df
NEW
8de905030e
NEW
c9008e9a12 [0]
f601bdf68b[0]
WinXP 34 of 36 23:42:41 23:42:41 1 none none:none
none:none
Armadillo|
tElock|
none
none
trace
trace
10b9665cc5
NEW
6ab29263ea
NEW
9fa31ab3b7
NEW
344f01b03f [0]
32d3ecc26e[0]
9216033ec0[0]
Win2K-f 35 of 41 19:11:49 19:11:49 1 none none:none
none:none
none:none
StarForce|
StarForce|
StarForce|
none
none
none
trace
trace
trace
6648e7022b
NEW
0ad0f97bcc [0] Win2K-f 28 of 41 18:49:53 18:49:53 1 none none:none
UPX| none trace
316da4c6a8
NEW
ba28386df7 [0] WinXP 40 of 41 09:36:07 09:36:07 1 none none:none
PolyEnE| none trace
3b569cd1c6
NEW
a81c9e968a [0] WinXP 40 of 41 12:57:02 12:57:02 1 none none:none
PolyEnE| none trace
7d99b0e910
NEW
none[0] WinXP 26 of 28 08:45:03 08:45:03 1 none none:none
PolyEnE| 99% lines=68 trace
5213395833
NEW
515eacbc36 [0] WinXP 41 of 41 07:03:22 07:03:22 1 none none:none
tElock| none trace
2a3036afb7
NEW
79a17e6e18 [0] WinXP 38 of 41 07:05:11 07:05:11 1 none none:none
none|none none trace
53bfe15e91
NEW
57ce4acac2
NEW
1473091351 [0]
none [0]
WinXP 0 of 33 23:04:13 23:04:13 1 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=75
embedded dns
lines=90
trace
trace
6648e7022b
NEW
a72398081f
NEW
cd88b89d5e
NEW
0ad0f97bcc [0]
3f0ad45d1c[0]
150e365b1e[0]
Win2K-f 19 of 41 18:49:53 18:49:53 1 none none:none
none:none
none:none
UPX|
tElock|
UPX|
none
none
none
trace
trace
trace
5213395833
NEW
9fdf6de4a9
NEW
515eacbc36 [0]
794f9a1087[0]
WinXP 6 of 41 07:03:22 07:03:22 1 none none:none
none:none
tElock|
Armadillo|
none
none
trace
trace
53bfe15e91
NEW
a08f3b74a4
NEW
1473091351 [0]
none [0]
Win2K-f
WinXP
0 of 33 13:40:49 22:47:35 3 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=75
embedded dns
lines=90
trace
trace
10980f4df2
NEW
1fd3385a95 [0] Win2K-f 39 of 40 12:44:52 12:44:52 1 none ASM:Graph
none|none 97% lines=556 trace
b8076e37ae
NEW
52953fed05 [0] Win2K-f 28 of 41 20:02:01 20:02:01 1 none none:none
StarForce| none trace
10b9665cc5
NEW
6ab29263ea
NEW
9fa31ab3b7
NEW
f8ba797fc9
NEW
344f01b03f [0]
32d3ecc26e[0]
9216033ec0[0]
none [3]
Win2K-f 4 of 41 19:11:49 19:11:49 1 none none:none
none:none
none:none
none:none
StarForce|
StarForce|
StarForce|
tElock|
none
none
none
none
trace
trace
trace
trace
511fc83563
NEW
8f20cd5496 [0] WinXP 40 of 41 16:02:18 16:02:18 1 none none:none
PolyEnE| none trace