Welcome to the Cyber-TA
Daily Malware Binary DIGEST Summary Page



15 November 2009

All data collection and analyses summarized in this page were 100% AUTO-GENERATED.

DEVELOPERS: Vinod Yegneswaran (SRI), Phillip Porras (SRI), Hassen Saidi (SRI)
Monirul Sharif (Georgia-Tech), Arvind Narayanan (University of Texas at Austin)

The data on this website is provided for research purposes only. It is provided
for your personal use only and is supplied AS IS, WITHOUT WARRANTY OF ANY KIND.
Use or reliance on this data is at your own risk.



Packed
MD5
UnPacket
MD5
Victim
OS
AntiVirus
Hit-Cnt
First
Encounter
Last
Encounter
Freq
Cnt
Behavioral
Clusters
Unpacked
Egg.asm
Packer
Fingerprint
API
Resolution
String
Cnt
Syscall
Trace
89747f56b8
NEW
bd6821b297 [0] Win2K-f 37 of 41 08:29:34 08:29:34 1 none none:none
Armadillo| none trace
164196d773
NEW
c505f21e5b
NEW
293b07a5b3 [0]
6d77c1618c[0]
Win2K-f 38 of 41 05:23:09 05:23:09 1 none none:none
none:none
tElock|
Armadillo|
none
none
trace
trace
785e86954f
NEW
83192a6119
NEW
b048088ffb
NEW
bea8cb1865
NEW
bff227df8f
NEW
d95b694263
NEW
c6edee8e8b [0]
fdc95e1fab[0]
664cdbe63c[0]
154de51a66[0]
5e80234b13[0]
e13aff1a50[0]
Win2K-f 4 of 41 13:21:19 13:21:19 1 none none:none
none:none
none:none
ASM:Graph
none:none
none:none
PeStubOEP|
none|none
StarForce|
Armadillo|
Armadillo|
StarForce|
none
none
none
lines=91
none
none
trace
trace
trace
trace
trace
trace
89747f56b8
NEW
a837a477d5
NEW
bd6821b297 [0]
62f046a268[0]
Win2K-f 40 of 41 08:29:34 08:29:34 1 none none:none
none:none
Armadillo|
tElock|
none
none
trace
trace
53bfe15e91
NEW
73f1082158
NEW
1473091351 [0]
none [0]
Win2K-f 0 of 32 06:18:10 06:18:10 1 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=75
embedded dns
lines=90
trace
trace
785e86954f
NEW
83192a6119
NEW
b048088ffb
NEW
bea8cb1865
NEW
bff227df8f
NEW
c6edee8e8b [0]
fdc95e1fab[0]
664cdbe63c[0]
154de51a66[0]
5e80234b13[0]
Win2K-f 11 of 41 13:21:19 13:21:19 1 none none:none
none:none
none:none
ASM:Graph
none:none
PeStubOEP|
none|none
StarForce|
Armadillo|
Armadillo|
none
none
none
lines=91
none
trace
trace
trace
trace
trace
741e3b03b3
NEW
none[0] WinXP 31 of 32 11:17:54 11:17:54 1 none none:none
none|none 32% lines=61 trace
785e86954f
NEW
83192a6119
NEW
b048088ffb
NEW
bea8cb1865
NEW
bff227df8f
NEW
d95b694263
NEW
f5a689cfe8
NEW
fac78fde16
NEW
c6edee8e8b [0]
fdc95e1fab[0]
664cdbe63c[0]
154de51a66[0]
5e80234b13[0]
e13aff1a50[0]
22c703369e[0]
882896ab05[0]
Win2K-f 35 of 36 13:21:19 13:21:19 1 none none:none
none:none
none:none
ASM:Graph
none:none
none:none
none:none
none:none
PeStubOEP|
none|none
StarForce|
Armadillo|
Armadillo|
StarForce|
StarForce|
tElock|
none
none
none
lines=91
none
none
none
none
trace
trace
trace
trace
trace
trace
trace
trace
785e86954f
NEW
83192a6119
NEW
c6edee8e8b [0]
fdc95e1fab[0]
Win2K-f 15 of 41 13:21:19 13:21:19 1 none none:none
none:none
PeStubOEP|
none|none
none
none
trace
trace
6b702f62ee
NEW
9d20beb668 [0] WinXP 38 of 40 13:04:03 13:04:03 1 none none:none
StarForce| none trace
53bfe15e91
NEW
1473091351 [0] WinXP
Win2K-f
33 of 33 02:45:48 11:52:36 3 none ASM:Graph
tElock| 96% lines=75
embedded dns
trace
785e86954f
NEW
83192a6119
NEW
b048088ffb
NEW
c6edee8e8b [0]
fdc95e1fab[0]
664cdbe63c[0]
Win2K-f 14 of 41 13:21:19 13:21:19 1 none none:none
none:none
none:none
PeStubOEP|
none|none
StarForce|
none
none
none
trace
trace
trace
973b7d1bee
NEW
922ddaf1ee [0] WinXP 40 of 41 04:51:13 04:51:13 1 none none:none
PolyEnE| none trace
785e86954f
NEW
83192a6119
NEW
b048088ffb
NEW
bea8cb1865
NEW
c6edee8e8b [0]
fdc95e1fab[0]
664cdbe63c[0]
154de51a66[0]
Win2K-f 32 of 36 13:21:19 13:21:19 1 none none:none
none:none
none:none
ASM:Graph
PeStubOEP|
none|none
StarForce|
Armadillo|
0% none
none
none
lines=91
trace
trace
trace
trace
831f4ee0a7
NEW
none[0] WinXP 29 of 29 00:55:40 00:55:40 1 none ASM:Graph
none|none 100% lines=61 trace
785e86954f
NEW
83192a6119
NEW
b048088ffb
NEW
bea8cb1865
NEW
bff227df8f
NEW
d95b694263
NEW
f5a689cfe8
NEW
c6edee8e8b [0]
fdc95e1fab[0]
664cdbe63c[0]
154de51a66[0]
5e80234b13[0]
e13aff1a50[0]
22c703369e[0]
Win2K-f 34 of 41 13:21:19 13:21:19 1 none none:none
none:none
none:none
ASM:Graph
none:none
none:none
none:none
PeStubOEP|
none|none
StarForce|
Armadillo|
Armadillo|
StarForce|
StarForce|
none
none
none
lines=91
none
none
none
trace
trace
trace
trace
trace
trace
trace
8015c2d45f
NEW
749cbc2739 [0] WinXP 40 of 41 11:09:21 11:09:21 1 none none:none
PolyEnE| none trace
17028f1eda
NEW
none[3] WinXP 31 of 32 11:48:32 11:48:32 1 none none:none
tElock| none trace
123d7e4180
NEW
2e4e5e0e9a [0] WinXP 40 of 41 03:12:46 03:12:46 1 none none:none
StarForce| none trace
785e86954f
NEW
c6edee8e8b [0] Win2K-f 29 of 41 13:21:19 13:21:19 1 none none:none
PeStubOEP| none trace
a769511504
NEW
7ecd054f18 [0] WinXP 41 of 41 05:34:33 05:34:33 1 none none:none
PolyEnE| none trace
164196d773
NEW
293b07a5b3 [0] Win2K-f 39 of 41 05:23:09 05:23:09 1 none none:none
tElock| none trace
53bfe15e91
NEW
a08f3b74a4
NEW
1473091351 [0]
none [0]
WinXP
Win2K-f
0 of 33 02:45:48 11:52:36 2 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=75
embedded dns
lines=90
trace
trace
6b702f62ee
NEW
a36cb429f9
NEW
9d20beb668 [0]
none [3]
WinXP 15 of 41 13:04:03 13:04:03 1 none none:none
none:none
StarForce|
StarForce|
none
none
trace
trace
a12cab51ef
NEW
none[0] WinXP 29 of 29 08:06:46 08:06:46 1 none none:none
ASPack| 54% lines=281
embedded dns
trace
b8076e37ae
NEW
52953fed05 [0] WinXP 28 of 41 03:38:39 03:38:39 1 none none:none
StarForce| none trace
5285741560
NEW
60590b8b67 [0] WinXP 37 of 40 05:45:05 05:45:05 1 none ASM:Graph
none|none 55% lines=59 trace