Welcome to the Cyber-TA
Daily Malware Binary DIGEST Summary Page



02 November 2009

All data collection and analyses summarized in this page were 100% AUTO-GENERATED.

DEVELOPERS: Vinod Yegneswaran (SRI), Phillip Porras (SRI), Hassen Saidi (SRI)
Monirul Sharif (Georgia-Tech), Arvind Narayanan (University of Texas at Austin)

The data on this website is provided for research purposes only. It is provided
for your personal use only and is supplied AS IS, WITHOUT WARRANTY OF ANY KIND.
Use or reliance on this data is at your own risk.



Packed
MD5
UnPacket
MD5
Victim
OS
AntiVirus
Hit-Cnt
First
Encounter
Last
Encounter
Freq
Cnt
Behavioral
Clusters
Unpacked
Egg.asm
Packer
Fingerprint
API
Resolution
String
Cnt
Syscall
Trace
9ce56f9f19
NEW
261c9da48f [0] Win2K-f 39 of 41 14:00:43 14:00:43 1 none none:none
StarForce| none trace
1c5e79f5f4
NEW
33713f3110
NEW
3b8d695a53
NEW
8a75955033
NEW
9276c8b36b
NEW
b64d7999db
NEW
f725e57065
NEW
none[4]
none [4]
f4d477b372[0]
2bf3e548b9[0]
none [0]
584147788c[0]
3f11911aa9[0]
Win2K-f
WinXP
13 of 41 04:44:17 07:43:16 2 none none:none
none:none
none:none
ASM:Graph
ASM:Graph
none:none
none:none
FSG|
none|none
StarForce|
tElock|
Armadillo|
Neolite|
tElock|
none
none
none
lines=126
embedded dns
lines=81
none
none
trace
trace
trace
trace
trace
trace
trace
19f9cb1f21
NEW
a9d40bc96b
NEW
8b1482be5d [0]
b07fa6d434[0]
Win2K-f 40 of 41 20:58:30 20:58:30 1 none none:none
none:none
Armadillo|
tElock|
none
none
trace
trace
53bfe15e91
NEW
73f1082158
NEW
1473091351 [0]
none [0]
WinXP 0 of 32 10:59:23 10:59:23 1 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=75
embedded dns
lines=90
trace
trace
4c3df24b32
NEW
53bfe15e91
NEW
none[0]
1473091351[0]
WinXP
Win2K-f
33 of 33 05:31:09 22:29:38 5 none ASM:Graph
ASM:Graph
Armadillo|
tElock|
96% lines=81
lines=75
embedded dns
trace
trace
1c5e79f5f4
NEW
33713f3110
NEW
3b8d695a53
NEW
8a75955033
NEW
9276c8b36b
NEW
none[4]
none [4]
f4d477b372[0]
2bf3e548b9[0]
none [0]
WinXP 28 of 32 07:43:16 07:43:16 1 none none:none
none:none
none:none
ASM:Graph
ASM:Graph
FSG|
none|none
StarForce|
tElock|
Armadillo|
47% none
none
none
lines=126
embedded dns
lines=81
trace
trace
trace
trace
trace
53bfe15e91
NEW
b7082104e4
NEW
1473091351 [0]
c5b49e7b82[0]
Win2K-f 8 of 33 20:11:16 20:11:16 1 none ASM:Graph
ASM:Graph
tElock|
tElock|
100% lines=75
embedded dns
lines=41
trace
trace
cc88f4f016
NEW
3d17903825 [0] Win2K-f 31 of 41 16:18:10 16:18:10 1 none none:none
StarForce| none trace
1c5e79f5f4
NEW
33713f3110
NEW
3b8d695a53
NEW
8a75955033
NEW
9276c8b36b
NEW
b64d7999db
NEW
none[4]
none [4]
f4d477b372[0]
2bf3e548b9[0]
none [0]
584147788c[0]
WinXP 5 of 41 07:43:16 07:43:16 1 none none:none
none:none
none:none
ASM:Graph
ASM:Graph
none:none
FSG|
none|none
StarForce|
tElock|
Armadillo|
Neolite|
none
none
none
lines=126
embedded dns
lines=81
none
trace
trace
trace
trace
trace
trace
4949888849
NEW
7f66679cac
NEW
6e1ae1dc22 [0]
b4110dd473[0]
Win2K-f 39 of 40 19:58:30 19:58:30 1 none none:none
none:none
tElock|
Armadillo|
none
none
trace
trace
04ed4d2967
NEW
e8aa304d1c [0] WinXP 35 of 36 13:01:01 13:01:01 1 none none:none
PolyEnE| none trace
1c5e79f5f4
NEW
33713f3110
NEW
none[4]
none [4]
WinXP 0 of 41 07:43:16 07:43:16 1 none none:none
none:none
FSG|
none|none
none
none
trace
trace
1c5e79f5f4
NEW
533d15b5ce
NEW
58c343a8d8
NEW
9e4a539611
NEW
none[4]
c67adf46e2[0]
none [0]
405940d276[0]
Win2K-f 7 of 41 04:44:17 04:44:17 1 none none:none
ASM:Graph
none:none
none:none
FSG|
tElock|
Armadillo|
none|none
none
lines=126
embedded dns
lines=91
none
trace
trace
trace
trace
4949888849
NEW
6e1ae1dc22 [0] Win2K-f 38 of 39 19:58:30 19:58:30 1 none none:none
tElock| none trace
63546c3b33
NEW
52748673c6 [0] Win2K-f 39 of 41 16:52:45 16:52:45 1 none none:none
Armadillo| none trace
1c5e79f5f4
NEW
533d15b5ce
NEW
none[4]
c67adf46e2[0]
Win2K-f 30 of 33 04:44:17 04:44:17 1 none none:none
ASM:Graph
FSG|
tElock|
96% none
lines=126
embedded dns
trace
trace
6a6aaa5b73
NEW
8bde6dd126
NEW
63889c9976 [0]
885c68f500[0]
Win2K-f 40 of 41 05:21:56 05:21:56 1 none none:none
none:none
tElock|
tElock|
none
none
trace
trace
a12cab51ef
NEW
none[0] WinXP 29 of 29 13:05:37 13:05:37 1 none none:none
ASPack| 54% lines=281
embedded dns
trace
0b951c2832
NEW
5fe761661a [0] Win2K-f 32 of 36 18:27:14 18:27:14 1 none none:none
Armadillo| none trace
6a6aaa5b73
NEW
63889c9976 [0] Win2K-f 39 of 40 05:21:56 05:21:56 1 none none:none
tElock| none trace
1c5e79f5f4
NEW
33713f3110
NEW
3b8d695a53
NEW
8a75955033
NEW
none[4]
none [4]
f4d477b372[0]
2bf3e548b9[0]
WinXP 29 of 32 07:43:16 07:43:16 1 none none:none
none:none
none:none
ASM:Graph
FSG|
none|none
StarForce|
tElock|
96% none
none
none
lines=126
embedded dns
trace
trace
trace
trace
4c3df24b32
NEW
none[0] Win2K-f 0 of 33 22:29:38 22:29:38 1 none ASM:Graph
Armadillo| 47% lines=81 trace
2187d1dd44
NEW
c2248c0c3e [0] WinXP 40 of 41 17:42:06 17:42:06 1 none none:none
StarForce| none trace
7f60162c2c
NEW
none[0] WinXP 25 of 25 05:38:22 10:42:42 2 none none:none
PolyEnE| 100% lines=93
embedded dns
trace
63546c3b33
NEW
895c10c5ed
NEW
52748673c6 [0]
eabab17862[0]
Win2K-f 40 of 41 16:52:45 16:52:45 1 none none:none
none:none
Armadillo|
tElock|
none
none
trace
trace
831f4ee0a7
NEW
none[0] WinXP 29 of 29 17:18:57 17:18:57 1 none ASM:Graph
none|none 100% lines=61 trace
1c5e79f5f4
NEW
533d15b5ce
NEW
58c343a8d8
NEW
none[4]
c67adf46e2[0]
none [0]
Win2K-f 28 of 33 04:44:17 04:44:17 1 none none:none
ASM:Graph
none:none
FSG|
tElock|
Armadillo|
0% none
lines=126
embedded dns
lines=91
trace
trace
trace
4180c19d91
NEW
b6e91e001c
NEW
9f3f2de385 [0]
d2275a6cf5[0]
WinXP 38 of 41 12:28:27 12:28:27 1 none none:none
none:none
Armadillo|
PolyEnE|
none
none
trace
trace
eda3b7766c
NEW
7556343561 [0] WinXP 40 of 41 04:38:36 04:38:36 1 none none:none
PolyEnE| none trace
7d99b0e910
NEW
none[0] WinXP 26 of 28 17:29:25 19:14:28 3 none none:none
PolyEnE| 99% lines=68 trace
1c5e79f5f4
NEW
none[4] Win2K-f
WinXP
17 of 41 04:44:17 07:43:16 2 none none:none
FSG| none trace
53bfe15e91
NEW
a08f3b74a4
NEW
1473091351 [0]
none [0]
WinXP 0 of 33 03:59:17 14:17:15 3 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=75
embedded dns
lines=90
trace
trace
e1a7bda6ff
NEW
cfc8c71bb6 [0] WinXP 41 of 41 23:49:34 23:49:34 1 none none:none
PolyEnE| none trace
1c5e79f5f4
NEW
33713f3110
NEW
3b8d695a53
NEW
none[4]
none [4]
f4d477b372[0]
WinXP 2 of 40 07:43:16 07:43:16 1 none none:none
none:none
none:none
FSG|
none|none
StarForce|
none
none
none
trace
trace
trace
0b951c2832
NEW
e4ed4df0f0
NEW
5fe761661a [0]
de471fc380[0]
Win2K-f 34 of 36 18:27:14 18:27:14 1 none none:none
none:none
Armadillo|
tElock|
none
none
trace
trace
19f9cb1f21
NEW
8b1482be5d [0] Win2K-f 38 of 39 20:58:30 20:58:30 1 none none:none
Armadillo| none trace
5285741560
NEW
60590b8b67 [0] WinXP 37 of 40 02:47:56 20:03:39 2 none ASM:Graph
none|none 55% lines=59 trace
4180c19d91
NEW
9f3f2de385 [0] WinXP 37 of 41 12:28:27 12:28:27 1 none none:none
Armadillo| none trace