Welcome to the Cyber-TA
Daily Malware Binary DIGEST Summary Page



18 August 2009

All data collection and analyses summarized in this page were 100% AUTO-GENERATED.

DEVELOPERS: Vinod Yegneswaran (SRI), Phillip Porras (SRI), Hassen Saidi (SRI)
Monirul Sharif (Georgia-Tech), Arvind Narayanan (University of Texas at Austin)

The data on this website is provided for research purposes only. It is provided
for your personal use only and is supplied AS IS, WITHOUT WARRANTY OF ANY KIND.
Use or reliance on this data is at your own risk.



Packed
MD5
UnPacket
MD5
Victim
OS
AntiVirus
Hit-Cnt
First
Encounter
Last
Encounter
Freq
Cnt
Behavioral
Clusters
Unpacked
Egg.asm
Packer
Fingerprint
API
Resolution
String
Cnt
Syscall
Trace
7b313206a2
NEW
0c866c8cce [0] WinXP 38 of 41 05:52:45 17:14:24 2 none none:none
none|none none trace
53bfe15e91
NEW
73f1082158
NEW
1473091351 [0]
none [0]
Win2K-f 0 of 32 01:41:17 12:58:34 3 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=75
embedded dns
lines=90
trace
trace
e7e8223291
NEW
f58555b68a [0] WinXP 40 of 41 21:01:19 21:01:19 1 none none:none
PolyEnE| none trace
c7bb39ee2c
NEW
07462a9c7b [0] WinXP 38 of 41 18:53:16 18:53:16 1 none none:none
tElock| none trace
067917e07b
NEW
d764c1dcb2
NEW
dae35b319c [0]
3d2bc60c5d[0]
Win2K-f 38 of 40 16:17:23 16:17:23 1 none none:none
none:none
Armadillo|
tElock|
none
none
trace
trace
53bfe15e91
NEW
1473091351 [0] Win2K-f
WinXP
33 of 33 01:41:17 22:48:32 11 none ASM:Graph
tElock| 96% lines=75
embedded dns
trace
682a384fe9
NEW
none[3] Win2K-f 31 of 41 00:50:17 00:50:17 1 none none:none
none|none none trace
d175bad0e6
NEW
none[0] WinXP 29 of 29 23:53:11 23:53:11 1 none ASM:Graph
tElock| 100% lines=81
embedded dns
trace
53bfe15e91
NEW
b7082104e4
NEW
1473091351 [0]
c5b49e7b82[0]
WinXP 8 of 33 17:32:00 17:32:00 1 none ASM:Graph
ASM:Graph
tElock|
tElock|
100% lines=75
embedded dns
lines=41
trace
trace
de2a8e3f8e
NEW
032d753367 [0] Win2K-f 27 of 41 15:11:17 15:11:17 1 none none:none
PENinja S| none trace
e7f442bf6b
NEW
1cbd3d66e4 [0] WinXP 25 of 41 15:05:24 15:05:24 1 none none:none
Armadillo| none trace
f303a7d13b
NEW
7708089eac [0] WinXP 40 of 41 10:23:58 10:23:58 1 none none:none
none|none none trace
b502f83a7c
NEW
28f5be93b0 [0] WinXP 32 of 32 19:05:42 19:05:42 1 none none:none
PolyEnE| none trace
c7bb39ee2c
NEW
f49bcb46ba
NEW
07462a9c7b [0]
ab0f851c9d[0]
WinXP 37 of 41 18:53:16 18:53:16 1 none none:none
none:none
tElock|
Armadillo|
none
none
trace
trace
932dbb4b69
NEW
dd4d9c7adf [0] Win2K-f 36 of 41 12:07:05 12:07:05 1 none none:none
Armadillo| none trace
533d15b5ce
NEW
c67adf46e2 [0] WinXP 30 of 33 09:22:30 09:22:30 1 none ASM:Graph
tElock| 96% lines=126
embedded dns
trace
a12cab51ef
NEW
none[0] WinXP 29 of 29 00:24:23 00:24:23 1 none none:none
ASPack| 54% lines=281
embedded dns
trace
1086afeef2
NEW
ad6c626eb7 [0] WinXP 26 of 41 19:35:29 19:35:29 1 none none:none
ASPack| none trace
067917e07b
NEW
dae35b319c [0] Win2K-f 36 of 41 16:17:23 16:17:23 1 none none:none
Armadillo| none trace
f419a6c471
NEW
04cdb38e06 [0] WinXP 40 of 41 06:15:33 06:15:33 1 none none:none
PolyEnE| none trace
9716d7995a
NEW
c3a5354b6f [0] WinXP 35 of 35 01:23:20 17:21:21 4 none none:none
PolyEnE| none trace
ddf5c2da76
NEW
0778330e58 [0] WinXP 39 of 41 15:44:36 15:44:36 1 none none:none
PolyEnE| none trace
932dbb4b69
NEW
f6e5daee26
NEW
dd4d9c7adf [0]
413c524714[0]
Win2K-f 39 of 41 12:07:05 12:07:05 1 none none:none
none:none
Armadillo|
tElock|
none
none
trace
trace
7f60162c2c
NEW
none[0] WinXP 25 of 25 06:03:10 06:03:10 1 none none:none
PolyEnE| 100% lines=93
embedded dns
trace
1086afeef2
NEW
4b628dcac2
NEW
ad6c626eb7 [0]
35602d43b9[0]
WinXP 22 of 41 19:35:29 19:35:29 1 none none:none
none:none
ASPack|
Armadillo|
none
none
trace
trace
1086afeef2
NEW
4b628dcac2
NEW
5354e986cd
NEW
ad6c626eb7 [0]
35602d43b9[0]
55eb7e6494[0]
WinXP 7 of 41 19:25:32 19:35:29 2 none none:none
none:none
none:none
ASPack|
Armadillo|
PENinja|
none
none
none
trace
trace
trace
034ee7001c
NEW
5354e986cd
NEW
7bc8d57d8c
NEW
9b132706e1
NEW
cf02cac654 [0]
55eb7e6494[0]
be025ab204[0]
ad6c626eb7[0]
WinXP 26 of 41 19:25:32 19:25:32 1 none none:none
none:none
none:none
none:none
Armadillo|
PENinja|
none|none
ASPack|
none
none
none
none
trace
trace
trace
trace
eb29e2642a
NEW
953ac55191 [0] Win2K-f 18 of 41 09:18:05 09:18:05 1 none none:none
FSG| none trace
034ee7001c
NEW
5354e986cd
NEW
7bc8d57d8c
NEW
cf02cac654 [0]
55eb7e6494[0]
be025ab204[0]
WinXP 38 of 40 19:25:32 19:25:32 1 none none:none
none:none
none:none
Armadillo|
PENinja|
none|none
none
none
none
trace
trace
trace
78c5ae9bf8
NEW
e4d8d9e239 [0] WinXP 30 of 41 17:33:18 17:33:18 1 none none:none
PolyEnE| none trace
4180c19d91
NEW
b6e91e001c
NEW
9f3f2de385 [0]
d2275a6cf5[0]
WinXP 38 of 41 07:49:26 07:49:26 1 none none:none
none:none
Armadillo|
PolyEnE|
none
none
trace
trace
533d15b5ce
NEW
58c343a8d8
NEW
c67adf46e2 [0]
none [0]
WinXP 28 of 33 09:22:30 09:22:30 1 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=126
embedded dns
lines=91
trace
trace
11e183286c
NEW
8a7d445a4a [0] Win2K-f 39 of 41 12:45:45 12:45:45 1 none none:none
none|none none trace
119ec42aa0
NEW
fd3c61c261 [0] WinXP 40 of 41 08:13:33 08:13:33 1 none none:none
PolyEnE| none trace
7d99b0e910
NEW
none[0] WinXP 26 of 28 17:25:14 17:25:14 1 none none:none
PolyEnE| 99% lines=68 trace
53bfe15e91
NEW
a08f3b74a4
NEW
1473091351 [0]
none [0]
Win2K-f
WinXP
0 of 33 09:24:28 22:48:32 7 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=75
embedded dns
lines=90
trace
trace
894e794b2b
NEW
aeb41eb7b9 [0] Win2K-f 36 of 41 11:16:05 11:16:05 1 none none:none
Obsidium| none trace
21cc05003b
NEW
6776bccc2d [0] WinXP 32 of 32 12:37:56 12:37:56 1 none none:none
PolyEnE| none trace
034ee7001c
NEW
cf02cac654 [0] WinXP 22 of 40 19:25:32 19:25:32 1 none none:none
Armadillo| none trace
4180c19d91
NEW
9f3f2de385 [0] WinXP 37 of 41 07:49:26 07:49:26 1 none none:none
Armadillo| none trace
9bb68450cd
NEW
c2d5ac2315 [0] WinXP 34 of 36 02:57:04 02:57:04 1 none ASM:Graph
PolyEnE| 100% lines=73
embedded dns
trace