Welcome to the Cyber-TA
Daily Malware Binary DIGEST Summary Page



14 October 2009

All data collection and analyses summarized in this page were 100% AUTO-GENERATED.

DEVELOPERS: Vinod Yegneswaran (SRI), Phillip Porras (SRI), Hassen Saidi (SRI)
Monirul Sharif (Georgia-Tech), Arvind Narayanan (University of Texas at Austin)

The data on this website is provided for research purposes only. It is provided
for your personal use only and is supplied AS IS, WITHOUT WARRANTY OF ANY KIND.
Use or reliance on this data is at your own risk.



Packed
MD5
UnPacket
MD5
Victim
OS
AntiVirus
Hit-Cnt
First
Encounter
Last
Encounter
Freq
Cnt
Behavioral
Clusters
Unpacked
Egg.asm
Packer
Fingerprint
API
Resolution
String
Cnt
Syscall
Trace
088c8ea72a
NEW
47280d3256
NEW
7ccfe164f3 [0]
none [4]
Win2K-f 40 of 41 23:15:30 23:15:30 1 none none:none
none:none
Armadillo|
tElock|
none
none
trace
trace
53bfe15e91
NEW
73f1082158
NEW
1473091351 [0]
none [0]
WinXP 0 of 32 15:47:27 15:47:27 1 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=75
embedded dns
lines=90
trace
trace
1d7834eab8
NEW
8b11a5e53e
NEW
3c0b7b7a8d [0]
34198921d2[0]
Win2K-f 5 of 41 04:15:51 04:15:51 1 none none:none
none:none
UPX|
StarForce|
none
none
trace
trace
a373350c69
NEW
c80b3e3022
NEW
18f36af13d [0]
6114f3736d[0]
Win2K-f 38 of 41 06:03:10 06:03:10 1 none none:none
none:none
tElock|
Armadillo|
none
none
trace
trace
1c5e79f5f4
NEW
7d040c00c3
NEW
bea8cb1865
NEW
c7830331fc
NEW
cd1ecbc017
NEW
fac78fde16
NEW
none[4]
48830e2b12[0]
154de51a66[0]
7953649664[0]
none [4]
882896ab05[0]
Win2K-f 35 of 36 03:35:12 03:35:12 1 none none:none
none:none
ASM:Graph
none:none
none:none
none:none
FSG|
FSG|
Armadillo|
tElock|
Neolite|
tElock|
none
none
lines=91
none
none
none
trace
trace
trace
trace
trace
trace
53bfe15e91
NEW
1473091351 [0] WinXP
Win2K-f
33 of 33 02:04:53 21:23:58 5 none ASM:Graph
tElock| 96% lines=75
embedded dns
trace
1d7834eab8
NEW
7f4221040e
NEW
8a75955033
NEW
9276c8b36b
NEW
3c0b7b7a8d [0]
cfbae30419[0]
2bf3e548b9[0]
none [0]
WinXP 28 of 32 07:55:01 07:55:01 1 none none:none
none:none
ASM:Graph
ASM:Graph
UPX|
StarForce|
tElock|
Armadillo|
47% none
none
lines=126
embedded dns
lines=81
trace
trace
trace
trace
06a5e31b47
NEW
25e6e52787 [0] WinXP 35 of 36 11:09:32 11:09:32 1 none ASM:Graph
PolyEnE| 100% lines=68 trace
1d7834eab8
NEW
8b11a5e53e
NEW
8edc331d07
NEW
3c0b7b7a8d [0]
34198921d2[0]
8edc331d07[1]
Win2K-f 2 of 41 04:15:51 04:15:51 1 none none:none
none:none
ASM:Graph
UPX|
StarForce|
ASProtect|
35% none
none
lines=7
trace
trace
trace
1c5e79f5f4
NEW
7d040c00c3
NEW
bea8cb1865
NEW
c7830331fc
NEW
cd1ecbc017
NEW
none[4]
48830e2b12[0]
154de51a66[0]
7953649664[0]
none [4]
Win2K-f 10 of 41 03:35:12 03:35:12 1 none none:none
none:none
ASM:Graph
none:none
none:none
FSG|
FSG|
Armadillo|
tElock|
Neolite|
none
none
lines=91
none
none
trace
trace
trace
trace
trace
088c8ea72a
NEW
7ccfe164f3 [0] Win2K-f 39 of 41 23:15:30 23:15:30 1 none none:none
Armadillo| none trace
74c3429921
NEW
1265c25f7f [0] WinXP 40 of 41 01:54:46 01:54:46 1 none none:none
PolyEnE| none trace
02f196daa0
NEW
4db84f0199 [0] WinXP 39 of 41 16:43:40 16:43:40 1 none none:none
PolyEnE| none trace
6b3beaea1a
NEW
154f174df6 [0] WinXP 35 of 36 18:41:50 18:41:50 1 none none:none
PolyEnE| none trace
912a073945
NEW
7874c7f21e [0] WinXP 39 of 41 18:42:49 18:42:49 1 none none:none
PolyEnE| none trace
5818023061
NEW
none[0] WinXP 32 of 32 17:14:32 17:14:32 1 none ASM:Graph
PolyEnE| 99% lines=68 trace
1bb4b25c0e
NEW
9293a2c3db [0] WinXP 28 of 41 16:58:36 16:58:36 1 none none:none
StarForce| none trace
1d7834eab8
NEW
7f4221040e
NEW
8a75955033
NEW
9276c8b36b
NEW
d0a27d286c
NEW
3c0b7b7a8d [0]
cfbae30419[0]
2bf3e548b9[0]
none [0]
none [4]
WinXP 0 of 41 07:55:01 07:55:01 1 none none:none
none:none
ASM:Graph
ASM:Graph
none:none
UPX|
StarForce|
tElock|
Armadillo|
none|none
none
none
lines=126
embedded dns
lines=81
none
trace
trace
trace
trace
trace
1d7834eab8
NEW
7f4221040e
NEW
8a75955033
NEW
3c0b7b7a8d [0]
cfbae30419[0]
2bf3e548b9[0]
WinXP 29 of 32 07:55:01 07:55:01 1 none none:none
none:none
ASM:Graph
UPX|
StarForce|
tElock|
96% none
none
lines=126
embedded dns
trace
trace
trace
03f912899b
NEW
none[0] WinXP 32 of 32 12:29:10 12:29:10 1 none none:none
none|none 32% lines=64 trace
1c5e79f5f4
NEW
7d040c00c3
NEW
none[4]
48830e2b12[0]
Win2K-f 39 of 41 03:35:12 03:35:12 1 none none:none
none:none
FSG|
FSG|
none
none
trace
trace
98d2778fd6
NEW
f676f3bf5b
NEW
9feea491cb [0]
0fba495fc4[0]
Win2K-f 37 of 41 09:53:02 09:53:02 1 none none:none
none:none
tElock|
Armadillo|
none
none
trace
trace
7f60162c2c
NEW
none[0] WinXP 25 of 25 01:30:47 19:20:33 2 none none:none
PolyEnE| 100% lines=93
embedded dns
trace
1d7834eab8
NEW
8b11a5e53e
NEW
8edc331d07
NEW
c7830331fc
NEW
3c0b7b7a8d [0]
34198921d2[0]
8edc331d07[1]
7953649664[0]
Win2K-f 7 of 41 03:35:12 04:15:51 2 none none:none
none:none
ASM:Graph
none:none
UPX|
StarForce|
ASProtect|
tElock|
none
none
lines=7
none
trace
trace
trace
trace
741e3b03b3
NEW
none[0] WinXP 31 of 32 06:54:47 06:54:47 1 none none:none
none|none 32% lines=61 trace
a09f60cdc7
NEW
4a30860fac [0] WinXP 39 of 41 11:18:10 11:18:10 1 none none:none
ASPack| none trace
02674c9a56
NEW
25eae40389
NEW
0da2cae967 [0]
1e0aae0aeb[0]
Win2K-f 38 of 41 07:46:40 07:46:40 1 none none:none
none:none
tElock|
Armadillo|
none
none
trace
trace
1c5e79f5f4
NEW
7d040c00c3
NEW
bea8cb1865
NEW
none[4]
48830e2b12[0]
154de51a66[0]
Win2K-f 32 of 36 03:35:12 03:35:12 1 none none:none
none:none
ASM:Graph
FSG|
FSG|
Armadillo|
0% none
none
lines=91
trace
trace
trace
1d7834eab8
NEW
7f4221040e
NEW
3c0b7b7a8d [0]
cfbae30419[0]
WinXP 7 of 41 07:55:01 07:55:01 1 none none:none
none:none
UPX|
StarForce|
none
none
trace
trace
9cd397f1fd
NEW
6aee570ceb [0] WinXP 37 of 41 12:03:25 12:03:25 1 none none:none
none|none none trace
a0a15f5ebf
NEW
c506c7cc86 [0] WinXP 37 of 40 18:11:20 18:11:20 1 none none:none
Mew| none trace
02674c9a56
NEW
0da2cae967 [0] Win2K-f 39 of 41 07:46:40 07:46:40 1 none none:none
tElock| none trace
17028f1eda
NEW
none[3] WinXP 31 of 32 05:23:27 05:23:27 1 none none:none
tElock| none trace
7d99b0e910
NEW
none[0] WinXP 26 of 28 06:16:06 10:31:52 2 none none:none
PolyEnE| 99% lines=68 trace
3cc3b8f86d
NEW
fccf13d773 [0] Win2K-f 11 of 41 09:00:01 09:00:01 1 none none:none
FASM| none trace
1d7834eab8
NEW
3c0b7b7a8d [0] Win2K-f
WinXP
8 of 41 04:15:51 07:55:01 2 none none:none
UPX| none trace
53bfe15e91
NEW
57ce4acac2
NEW
1473091351 [0]
none [0]
WinXP 0 of 33 02:04:53 02:04:53 1 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=75
embedded dns
lines=90
trace
trace
98d2778fd6
NEW
9feea491cb [0] Win2K-f 38 of 41 09:53:02 09:53:02 1 none none:none
tElock| none trace
1d7834eab8
NEW
8b11a5e53e
NEW
8edc331d07
NEW
c7830331fc
NEW
ec6a0c4add
NEW
3c0b7b7a8d [0]
34198921d2[0]
8edc331d07[1]
7953649664[0]
none [4]
Win2K-f 0 of 41 04:15:51 04:15:51 1 none none:none
none:none
ASM:Graph
none:none
none:none
UPX|
StarForce|
ASProtect|
tElock|
none|none
none
none
lines=7
none
none
trace
trace
trace
trace
trace
1c5e79f5f4
NEW
none[4] Win2K-f 17 of 41 03:35:12 03:35:12 1 none none:none
FSG| none trace
53bfe15e91
NEW
a08f3b74a4
NEW
1473091351 [0]
none [0]
WinXP
Win2K-f
0 of 33 11:36:21 21:23:58 3 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=75
embedded dns
lines=90
trace
trace
a373350c69
NEW
18f36af13d [0] Win2K-f 39 of 41 06:03:10 06:03:10 1 none none:none
tElock| none trace