Welcome to the Cyber-TA
Daily Malware Binary DIGEST Summary Page



13 October 2009

All data collection and analyses summarized in this page were 100% AUTO-GENERATED.

DEVELOPERS: Vinod Yegneswaran (SRI), Phillip Porras (SRI), Hassen Saidi (SRI)
Monirul Sharif (Georgia-Tech), Arvind Narayanan (University of Texas at Austin)

The data on this website is provided for research purposes only. It is provided
for your personal use only and is supplied AS IS, WITHOUT WARRANTY OF ANY KIND.
Use or reliance on this data is at your own risk.



Packed
MD5
UnPacket
MD5
Victim
OS
AntiVirus
Hit-Cnt
First
Encounter
Last
Encounter
Freq
Cnt
Behavioral
Clusters
Unpacked
Egg.asm
Packer
Fingerprint
API
Resolution
String
Cnt
Syscall
Trace
53bfe15e91
NEW
73f1082158
NEW
1473091351 [0]
none [0]
WinXP 0 of 32 11:34:50 11:34:50 1 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=75
embedded dns
lines=90
trace
trace
533d15b5ce
NEW
58c343a8d8
NEW
83192a6119
NEW
c67adf46e2 [0]
none [0]
fdc95e1fab[0]
WinXP 15 of 41 21:37:01 21:37:01 1 none ASM:Graph
none:none
none:none
tElock|
Armadillo|
none|none
lines=126
embedded dns
lines=91
none
trace
trace
trace
bea8cb1865
NEW
c7830331fc
NEW
fac78fde16
NEW
154de51a66 [0]
7953649664[0]
882896ab05[0]
Win2K-f 35 of 36 07:13:16 07:13:16 1 none ASM:Graph
none:none
none:none
Armadillo|
tElock|
tElock|
lines=91
none
none
trace
trace
trace
53bfe15e91
NEW
1473091351 [0] WinXP 33 of 33 07:59:22 11:34:50 3 none ASM:Graph
tElock| 96% lines=75
embedded dns
trace
e43fe08b67
NEW
a5a0a54c1e [0] WinXP 39 of 41 11:37:58 11:37:58 1 none none:none
none|none none trace
67a66839f7
NEW
7b1fc808a3 [0] Win2K-f
WinXP
37 of 41 03:43:48 11:13:21 4 none none:none
none|none none trace
5ba3d03fb4
NEW
28efd36ea0 [0] Win2K-f 40 of 41 11:14:16 11:14:16 1 none none:none
none|none none trace
2721d2b151
NEW
fde14d4abe [0] WinXP 37 of 40 00:36:37 00:36:37 1 none none:none
Armadillo| none trace
b7082104e4
NEW
c5b49e7b82 [0] WinXP 8 of 33 07:59:22 23:48:16 3 none ASM:Graph
tElock| 100% lines=41 trace
288590d40a
NEW
afa15f1c59 [0] Win2K-f 40 of 41 11:40:48 11:40:48 1 none none:none
none|none none trace
d32131ba55
NEW
0e138688c4 [0] Win2K-f 39 of 41 19:53:26 19:53:26 1 none none:none
StarForce| none trace
38ed850a0e
NEW
46990f37cd [0] Win2K-f 34 of 38 16:13:16 22:14:22 2 none ASM:Graph
Armadillo| 0% lines=91 trace
533d15b5ce
NEW
c67adf46e2 [0] WinXP 30 of 33 08:11:09 21:37:01 2 none ASM:Graph
tElock| 96% lines=126
embedded dns
trace
2721d2b151
NEW
b044168966
NEW
fde14d4abe [0]
b02ac1f831[0]
WinXP 38 of 40 00:36:37 00:36:37 1 none none:none
none:none
Armadillo|
tElock|
none
none
trace
trace
ce46f7ab87
NEW
5780633b71 [0] Win2K-f 1 of 33 03:36:58 03:36:58 1 none none:none
Armadillo| none trace
916752f248
NEW
4e604fc8cb [0] Win2K-f 41 of 41 15:37:48 15:37:48 1 none none:none
none|none none trace
67a66839f7
NEW
f3024245d5
NEW
7b1fc808a3 [0]
8032e9a084[0]
Win2K-f 39 of 41 03:43:48 03:43:48 1 none none:none
none:none
none|none
Armadillo|
none
none
trace
trace
409ef22885
NEW
none[3] Win2K-f 2 of 37 19:39:45 19:39:45 1 none none:none
UPX| none trace
3ed16ae12d
NEW
none[0] WinXP
Win2K-f
3 of 33 20:41:21 23:03:48 2 none ASM:Graph
Armadillo| 47% lines=81 trace
7f60162c2c
NEW
none[0] WinXP 25 of 25 15:57:55 15:57:55 1 none none:none
PolyEnE| 100% lines=93
embedded dns
trace
bea8cb1865
NEW
c7830331fc
NEW
154de51a66 [0]
7953649664[0]
Win2K-f 7 of 41 07:13:16 07:13:16 1 none ASM:Graph
none:none
Armadillo|
tElock|
lines=91
none
trace
trace
741e3b03b3
NEW
none[0] WinXP 31 of 32 23:22:33 23:22:33 1 none none:none
none|none 32% lines=61 trace
67a66839f7
NEW
b93ae25cb1
NEW
ea00dd87f5
NEW
7b1fc808a3 [0]
9af8e2f833[0]
9af8e2f833[0]
Win2K-f 6 of 41 10:40:25 10:40:25 1 none none:none
none:none
none:none
none|none
FSG|
FSG|
none
none
none
trace
trace
trace
bea8cb1865
NEW
154de51a66 [0] Win2K-f 32 of 36 07:13:16 07:13:16 1 none ASM:Graph
Armadillo| 0% lines=91 trace
533d15b5ce
NEW
58c343a8d8
NEW
c67adf46e2 [0]
none [0]
WinXP 28 of 33 08:11:09 21:37:01 2 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=126
embedded dns
lines=91
trace
trace
a0a15f5ebf
NEW
c506c7cc86 [0] Win2K-f 37 of 40 14:15:31 14:15:31 1 none none:none
Mew| none trace
ce46f7ab87
NEW
d7dc1e3bea
NEW
5780633b71 [0]
3189a15056[0]
Win2K-f 32 of 33 03:36:58 03:36:58 1 none none:none
none:none
Armadillo|
tElock|
none
none
trace
trace
3cc3b8f86d
NEW
fccf13d773 [0] Win2K-f 11 of 41 23:31:38 23:31:38 1 none none:none
FASM| none trace
3ed16ae12d
NEW
79c01ec060
NEW
none[0]
1bfd34056c[0]
WinXP
Win2K-f
33 of 33 20:41:21 23:03:48 2 none ASM:Graph
ASM:Graph
Armadillo|
tElock|
96% lines=81
lines=64
embedded dns
trace
trace
01482c1f63
NEW
1152c8c686 [0] Win2K-f 39 of 41 11:38:50 11:38:50 1 none none:none
none|none none trace
67a66839f7
NEW
b93ae25cb1
NEW
7b1fc808a3 [0]
9af8e2f833[0]
Win2K-f 6 of 41 10:40:25 10:40:25 1 none none:none
none:none
none|none
FSG|
none
none
trace
trace
b7082104e4
NEW
cf298ee908
NEW
c5b49e7b82 [0]
none [3]
WinXP 30 of 33 23:48:16 23:48:16 1 none ASM:Graph
none:none
tElock|
tElock|
lines=41
none
trace
trace
1a2c0e6130
NEW
none[0] WinXP 29 of 29 05:10:52 05:10:52 1 none none:none
none|none 33% lines=60 trace
57ef739a9e
NEW
fbdf9f6053 [0] WinXP 40 of 41 03:54:01 03:54:01 1 none none:none
none|none none trace
8000c39c15
NEW
48ffee723d [0] WinXP 38 of 41 11:13:28 11:13:28 1 none none:none
none|none none trace
9d3c7885e7
NEW
da5cec1caa [0] Win2K-f 39 of 41 12:13:49 12:13:49 1 none none:none
none|none none trace
a08f3b74a4
NEW
none[0] Win2K-f 0 of 33 14:37:36 14:37:36 1 none none:none
Armadillo| 0% lines=90 trace
310e02aa2d
NEW
81e39ed8ec [0] Win2K-f 38 of 41 10:51:21 10:51:21 1 none none:none
Armadillo| none trace
b8076e37ae
NEW
52953fed05 [0] Win2K-f 28 of 41 02:09:48 02:09:48 1 none none:none
StarForce| none trace
38ed850a0e
NEW
b9297745a1
NEW
46990f37cd [0]
4294884d84[0]
Win2K-f 35 of 38 16:13:16 22:14:22 2 none ASM:Graph
ASM:Graph
Armadillo|
tElock|
96% lines=91
lines=64
embedded dns
trace
trace
5285741560
NEW
60590b8b67 [0] WinXP 37 of 40 21:42:05 21:42:05 1 none ASM:Graph
none|none 55% lines=59 trace
2f6afffda4
NEW
ede9ae4e6d [0] WinXP 39 of 41 18:29:27 18:29:27 1 none none:none
PolyEnE| none trace