Welcome to the Cyber-TA
Daily Malware Binary DIGEST Summary Page



06 November 2009

All data collection and analyses summarized in this page were 100% AUTO-GENERATED.

DEVELOPERS: Vinod Yegneswaran (SRI), Phillip Porras (SRI), Hassen Saidi (SRI)
Monirul Sharif (Georgia-Tech), Arvind Narayanan (University of Texas at Austin)

The data on this website is provided for research purposes only. It is provided
for your personal use only and is supplied AS IS, WITHOUT WARRANTY OF ANY KIND.
Use or reliance on this data is at your own risk.



Packed
MD5
UnPacket
MD5
Victim
OS
AntiVirus
Hit-Cnt
First
Encounter
Last
Encounter
Freq
Cnt
Behavioral
Clusters
Unpacked
Egg.asm
Packer
Fingerprint
API
Resolution
String
Cnt
Syscall
Trace
7b313206a2
NEW
0c866c8cce [0] WinXP 38 of 41 01:55:25 01:55:25 1 none none:none
none|none none trace
5403724951
NEW
44ee5f83ba [0] WinXP 40 of 41 13:53:44 13:53:44 1 none none:none
tElock| none trace
53bfe15e91
NEW
73f1082158
NEW
1473091351 [0]
none [0]
Win2K-f
WinXP
0 of 32 21:25:46 23:47:57 2 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=75
embedded dns
lines=90
trace
trace
5403724951
NEW
6494cbd582
NEW
44ee5f83ba [0]
adcb56d0cb[0]
WinXP 39 of 41 13:53:44 13:53:44 1 none none:none
none:none
tElock|
Armadillo|
none
none
trace
trace
007aa1a2f9
NEW
396306e500 [0] WinXP 10 of 40 08:10:33 08:10:33 1 none none:none
Neolite| none trace
53bfe15e91
NEW
1473091351 [0] WinXP
Win2K-f
33 of 33 03:20:35 23:47:57 4 none ASM:Graph
tElock| 96% lines=75
embedded dns
trace
45f7b431e4
NEW
533d15b5ce
NEW
58c343a8d8
NEW
c1a01c30b7
NEW
ebe63379cf
NEW
ca3edde9d5 [0]
c67adf46e2[0]
none [0]
2b31d4081f[0]
a1ce03d5db[0]
Win2K-f 8 of 40 23:49:33 23:49:33 1 none none:none
ASM:Graph
none:none
none:none
none:none
StarForce|
tElock|
Armadillo|
StarForce|
Armadillo|
none
lines=126
embedded dns
lines=91
none
none
trace
trace
trace
trace
trace
45f7b431e4
NEW
533d15b5ce
NEW
58c343a8d8
NEW
c1a01c30b7
NEW
ca3edde9d5 [0]
c67adf46e2[0]
none [0]
2b31d4081f[0]
Win2K-f 8 of 40 23:49:33 23:49:33 1 none none:none
ASM:Graph
none:none
none:none
StarForce|
tElock|
Armadillo|
StarForce|
none
lines=126
embedded dns
lines=91
none
trace
trace
trace
trace
50ec88befe
NEW
6654523fa4 [0] WinXP 40 of 41 23:35:29 23:35:29 1 none none:none
PolyEnE| none trace
bc4da3f959
NEW
343e5dae12 [0] Win2K-f 38 of 40 06:49:21 06:49:21 1 none none:none
Armadillo| none trace
45f7b431e4
NEW
533d15b5ce
NEW
ca3edde9d5 [0]
c67adf46e2[0]
Win2K-f 30 of 33 23:49:33 23:49:33 1 none none:none
ASM:Graph
StarForce|
tElock|
96% none
lines=126
embedded dns
trace
trace
912a073945
NEW
7874c7f21e [0] WinXP 39 of 41 03:05:00 15:15:53 2 none none:none
PolyEnE| none trace
a12cab51ef
NEW
none[0] WinXP 29 of 29 14:25:01 14:25:01 1 none none:none
ASPack| 54% lines=281
embedded dns
trace
27b17a2724
NEW
a1d5ac965b [0] WinXP 32 of 40 09:59:33 09:59:33 1 none none:none
tElock| none trace
007aa1a2f9
NEW
5af8d7c1bb
NEW
65145fdd2e
NEW
6601ab80f5
NEW
99b248336f
NEW
396306e500 [0]
2295f54a34[0]
none [4]
ce297abb17[0]
c64bd1a776[0]
WinXP 34 of 36 08:10:33 08:10:33 1 none none:none
none:none
none:none
none:none
none:none
Neolite|
StarForce|
none|none
StarForce|
Armadillo|
none
none
none
none
none
trace
trace
trace
trace
trace
45f7b431e4
NEW
ca3edde9d5 [0] Win2K-f 5 of 39 23:49:33 23:49:33 1 none none:none
StarForce| none trace
f502585714
NEW
none[0] WinXP 29 of 29 03:32:23 03:32:23 1 none none:none
PolyEnE| 100% lines=63 trace
166484192b
NEW
2a1e547005
NEW
0c886fcb7b [0]
5c75fa020a[0]
Win2K-f 37 of 39 02:39:17 02:39:17 1 none none:none
none:none
tElock|
Armadillo|
none
none
trace
trace
7f60162c2c
NEW
none[0] WinXP 25 of 25 18:12:58 18:12:58 1 none none:none
PolyEnE| 100% lines=93
embedded dns
trace
741e3b03b3
NEW
none[0] WinXP 31 of 32 07:09:44 19:06:05 2 none none:none
none|none 32% lines=61 trace
007aa1a2f9
NEW
5af8d7c1bb
NEW
65145fdd2e
NEW
396306e500 [0]
2295f54a34[0]
none [4]
WinXP 0 of 39 08:10:33 08:10:33 1 none none:none
none:none
none:none
Neolite|
StarForce|
none|none
none
none
none
trace
trace
trace
a79d6619a4
NEW
ee99188e6d [0] WinXP 37 of 39 12:48:00 12:48:00 1 none none:none
tElock| none trace
4cbbc9cdc3
NEW
9b1bced683 [0] WinXP 34 of 39 13:43:19 13:43:19 1 none none:none
Armadillo| none trace
831f4ee0a7
NEW
none[0] WinXP 29 of 29 11:16:03 11:16:03 1 none ASM:Graph
none|none 100% lines=61 trace
45f7b431e4
NEW
533d15b5ce
NEW
58c343a8d8
NEW
ca3edde9d5 [0]
c67adf46e2[0]
none [0]
Win2K-f 28 of 33 23:49:33 23:49:33 1 none none:none
ASM:Graph
none:none
StarForce|
tElock|
Armadillo|
0% none
lines=126
embedded dns
lines=91
trace
trace
trace
ff9a408451
NEW
259498584e [0] Win2K-f 39 of 40 07:38:17 07:38:17 1 none none:none
PolyEnE| none trace
0f92676ee2
NEW
1fdb02eb48
NEW
0f92676ee2 [1]
43a22a20b7[0]
WinXP 39 of 40 01:32:00 01:32:00 1 none ASM:Graph
none:none
Armadillo|
tElock|
lines=82
none
trace
trace
166484192b
NEW
0c886fcb7b [0] Win2K-f 37 of 39 02:39:17 02:39:17 1 none none:none
tElock| none trace
17028f1eda
NEW
none[3] WinXP 31 of 32 15:31:31 15:31:31 1 none none:none
tElock| none trace
eda3b7766c
NEW
7556343561 [0] WinXP 40 of 41 13:37:10 13:37:10 1 none none:none
PolyEnE| none trace
0f92676ee2
NEW
0f92676ee2 [1] WinXP 39 of 40 01:32:00 01:32:00 1 none ASM:Graph
Armadillo| 47% lines=82 trace
57ce4acac2
NEW
none[0] WinXP 0 of 33 08:55:43 08:55:43 1 none none:none
Armadillo| 0% lines=90 trace
4cbbc9cdc3
NEW
86d4950962
NEW
9b1bced683 [0]
c78e30261c[0]
WinXP 35 of 39 13:43:19 13:43:19 1 none none:none
none:none
Armadillo|
tElock|
none
none
trace
trace
b0a6f20c4a
NEW
393787f8c2 [0] WinXP 38 of 40 10:04:17 10:04:17 1 none none:none
PolyEnE| none trace
53bfe15e91
NEW
a08f3b74a4
NEW
1473091351 [0]
none [0]
WinXP 0 of 33 03:20:35 03:20:35 1 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=75
embedded dns
lines=90
trace
trace
007aa1a2f9
NEW
5af8d7c1bb
NEW
396306e500 [0]
2295f54a34[0]
WinXP 14 of 40 08:10:33 08:10:33 1 none none:none
none:none
Neolite|
StarForce|
none
none
trace
trace
f382333425
NEW
6dd116cb89 [0] WinXP 38 of 39 09:18:31 09:18:31 1 none none:none
PolyEnE| none trace
c4c5a56ffe
NEW
8bef2f9170 [0] Win2K-f 11 of 36 00:10:14 00:10:14 1 none none:none
StarForce| none trace
5285741560
NEW
60590b8b67 [0] WinXP 37 of 40 06:18:52 06:18:52 1 none ASM:Graph
none|none 55% lines=59 trace
007aa1a2f9
NEW
5af8d7c1bb
NEW
65145fdd2e
NEW
6601ab80f5
NEW
99b248336f
NEW
9d677c3f70
NEW
396306e500 [0]
2295f54a34[0]
none [4]
ce297abb17[0]
c64bd1a776[0]
77e75ff10f[0]
WinXP 29 of 32 08:10:33 08:10:33 1 none none:none
none:none
none:none
none:none
none:none
none:none
Neolite|
StarForce|
none|none
StarForce|
Armadillo|
tElock|
none
none
none
none
none
none
trace
trace
trace
trace
trace
trace
007aa1a2f9
NEW
5af8d7c1bb
NEW
65145fdd2e
NEW
6601ab80f5
NEW
396306e500 [0]
2295f54a34[0]
none [4]
ce297abb17[0]
WinXP 12 of 39 08:10:33 08:10:33 1 none none:none
none:none
none:none
none:none
Neolite|
StarForce|
none|none
StarForce|
none
none
none
none
trace
trace
trace
trace
aab1b56620
NEW
3b2e1c5b9d [0] WinXP 40 of 41 05:36:07 05:36:07 1 none none:none
PolyEnE| none trace