Welcome to the Cyber-TA
Daily Malware Binary DIGEST Summary Page



18 November 2009

All data collection and analyses summarized in this page were 100% AUTO-GENERATED.

DEVELOPERS: Vinod Yegneswaran (SRI), Phillip Porras (SRI), Hassen Saidi (SRI)
Monirul Sharif (Georgia-Tech), Arvind Narayanan (University of Texas at Austin)

The data on this website is provided for research purposes only. It is provided
for your personal use only and is supplied AS IS, WITHOUT WARRANTY OF ANY KIND.
Use or reliance on this data is at your own risk.



Packed
MD5
UnPacket
MD5
Victim
OS
AntiVirus
Hit-Cnt
First
Encounter
Last
Encounter
Freq
Cnt
Behavioral
Clusters
Unpacked
Egg.asm
Packer
Fingerprint
API
Resolution
String
Cnt
Syscall
Trace
10759405e0
NEW
292d343248 [0] WinXP 38 of 41 19:31:51 19:31:51 1 none none:none
Armadillo| none trace
0db52c5b7e
NEW
abf142b6d2 [0] WinXP 40 of 41 11:29:44 12:51:36 2 none none:none
PolyEnE| none trace
53bfe15e91
NEW
73f1082158
NEW
1473091351 [0]
none [0]
Win2K-f
WinXP
0 of 32 12:51:27 22:41:01 3 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=75
embedded dns
lines=90
trace
trace
1c5e79f5f4
NEW
785e86954f
NEW
a7564e22c7
NEW
none[4]
c6edee8e8b[0]
bffd103c5d[0]
WinXP 39 of 41 08:43:49 08:43:49 1 none none:none
none:none
none:none
FSG|
PeStubOEP|
none|none
none
none
none
trace
trace
trace
1c5e79f5f4
NEW
785e86954f
NEW
969be671e8
NEW
bea8cb1865
NEW
c4887fc89d
NEW
e66c06ffdd
NEW
fac78fde16
NEW
none[4]
c6edee8e8b[0]
none [none]
154de51a66[0]
none [none]
none [none]
882896ab05[0]
Win2K-f 35 of 36 02:07:34 02:07:34 1 none none:none
none:none
none:none
ASM:Graph
none:none
none:none
none:none
FSG|
PeStubOEP|
none|none
Armadillo|
none|none
none|none
tElock|
none
none
none
lines=91
none
none
none
trace
trace
none
trace
none
none
trace
53bfe15e91
NEW
1473091351 [0] Win2K-f
WinXP
33 of 33 02:02:31 22:41:01 12 none ASM:Graph
tElock| 96% lines=75
embedded dns
trace
1c5e79f5f4
NEW
785e86954f
NEW
969be671e8
NEW
bea8cb1865
NEW
c4887fc89d
NEW
none[4]
c6edee8e8b[0]
none [none]
154de51a66[0]
none [none]
Win2K-f 24 of 41 02:07:34 02:07:34 1 none none:none
none:none
none:none
ASM:Graph
none:none
FSG|
PeStubOEP|
none|none
Armadillo|
none|none
none
none
none
lines=91
none
trace
trace
none
trace
none
07fabc79ef
NEW
none[0] WinXP 0 of 32 04:24:55 04:24:55 1 none ASM:Graph
Armadillo| 47% lines=81 trace
672d73ec08
NEW
none[none] Win2K-f 21 of 41 21:37:45 21:37:45 1 none none:none
none|none none none
df17a625ee
NEW
none[0] WinXP 29 of 29 01:50:20 01:50:20 1 none none:none
ASPack| 72% lines=298
embedded dns
trace
0db52c5b7e
NEW
1c5e79f5f4
NEW
785e86954f
NEW
969be671e8
NEW
abf142b6d2 [0]
none [4]
c6edee8e8b[0]
none [none]
Win2K-f
WinXP
40 of 41 02:07:34 12:51:36 2 none none:none
none:none
none:none
none:none
PolyEnE|
FSG|
PeStubOEP|
none|none
none
none
none
none
trace
trace
trace
none
53bfe15e91
NEW
b7082104e4
NEW
1473091351 [0]
c5b49e7b82[0]
WinXP 8 of 33 21:17:20 21:17:20 1 none ASM:Graph
ASM:Graph
tElock|
tElock|
100% lines=75
embedded dns
lines=41
trace
trace
164d08372d
NEW
none[none] Win2K-f 32 of 40 01:54:49 01:54:49 1 none none:none
none|none none none
0db52c5b7e
NEW
1c5e79f5f4
NEW
785e86954f
NEW
8605cfb923
NEW
abf142b6d2 [0]
none [4]
c6edee8e8b[0]
none [none]
WinXP 14 of 41 11:29:44 11:29:44 1 none none:none
none:none
none:none
none:none
PolyEnE|
FSG|
PeStubOEP|
none|none
none
none
none
none
trace
trace
trace
none
73ce2b74da
NEW
none[0] Win2K-f 3 of 33 10:58:51 10:58:51 1 none ASM:Graph
Armadillo| 47% lines=81 trace
f502585714
NEW
none[0] WinXP 29 of 29 03:21:00 03:21:00 1 none none:none
PolyEnE| 100% lines=63 trace
15d4d85dc0
NEW
4c95ae4b3d [0] WinXP 32 of 32 15:03:25 15:03:25 1 none ASM:Graph
StarForce| 98% lines=212
embedded dns
trace
741e3b03b3
NEW
none[0] WinXP 31 of 32 12:08:52 12:08:52 1 none none:none
none|none 32% lines=61 trace
0db52c5b7e
NEW
1c5e79f5f4
NEW
785e86954f
NEW
8605cfb923
NEW
b0c90d35ee
NEW
bd9cfd7e85
NEW
abf142b6d2 [0]
none [4]
c6edee8e8b[0]
none [none]
none [none]
none [none]
WinXP 0 of 41 11:29:44 11:29:44 1 none none:none
none:none
none:none
none:none
none:none
none:none
PolyEnE|
FSG|
PeStubOEP|
none|none
none|none
none|none
none
none
none
none
none
none
trace
trace
trace
none
none
none
1c5e79f5f4
NEW
785e86954f
NEW
969be671e8
NEW
bea8cb1865
NEW
none[4]
c6edee8e8b[0]
none [none]
154de51a66[0]
Win2K-f 32 of 36 02:07:34 02:07:34 1 none none:none
none:none
none:none
ASM:Graph
FSG|
PeStubOEP|
none|none
Armadillo|
0% none
none
none
lines=91
trace
trace
none
trace
7d99b0e910
NEW
none[0] WinXP 26 of 28 02:42:01 16:35:40 6 none none:none
PolyEnE| 99% lines=68 trace
73ce2b74da
NEW
79c01ec060
NEW
none[0]
1bfd34056c[0]
Win2K-f 33 of 33 10:58:51 10:58:51 1 none ASM:Graph
ASM:Graph
Armadillo|
tElock|
96% lines=81
lines=64
embedded dns
trace
trace
10759405e0
NEW
d08e00dfaf
NEW
292d343248 [0]
854c49d8c4[0]
WinXP 39 of 41 19:31:51 19:31:51 1 none none:none
none:none
Armadillo|
tElock|
none
none
trace
trace
0db52c5b7e
NEW
1c5e79f5f4
NEW
785e86954f
NEW
abf142b6d2 [0]
none [4]
c6edee8e8b[0]
Win2K-f
WinXP
29 of 41 02:07:34 12:51:36 4 none none:none
none:none
none:none
PolyEnE|
FSG|
PeStubOEP|
none
none
none
trace
trace
trace
0db52c5b7e
NEW
1c5e79f5f4
NEW
785e86954f
NEW
8605cfb923
NEW
b0c90d35ee
NEW
abf142b6d2 [0]
none [4]
c6edee8e8b[0]
none [none]
none [none]
WinXP 12 of 41 11:29:44 11:29:44 1 none none:none
none:none
none:none
none:none
none:none
PolyEnE|
FSG|
PeStubOEP|
none|none
none|none
none
none
none
none
none
trace
trace
trace
none
none
0db52c5b7e
NEW
1c5e79f5f4
NEW
785e86954f
NEW
969be671e8
NEW
e66c06ffdd
NEW
abf142b6d2 [0]
none [4]
c6edee8e8b[0]
none [none]
none [none]
Win2K-f
WinXP
21 of 41 02:07:34 12:51:36 2 none none:none
none:none
none:none
none:none
none:none
PolyEnE|
FSG|
PeStubOEP|
none|none
none|none
none
none
none
none
none
trace
trace
trace
none
none
53bfe15e91
NEW
57ce4acac2
NEW
1473091351 [0]
none [0]
WinXP
Win2K-f
0 of 33 16:14:28 20:19:59 2 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=75
embedded dns
lines=90
trace
trace
7ddb3a30a0
NEW
none[none] Win2K-f 39 of 41 13:34:37 13:34:37 1 none none:none
none|none none none
0db52c5b7e
NEW
1c5e79f5f4
NEW
abf142b6d2 [0]
none [4]
Win2K-f
WinXP
17 of 41 02:07:34 12:51:36 4 none none:none
none:none
PolyEnE|
FSG|
none
none
trace
trace
474acf88e5
NEW
1f53944b24 [0] Win2K-f
WinXP
38 of 40 04:52:20 13:16:13 2 none none:none
tElock| none trace
53bfe15e91
NEW
a08f3b74a4
NEW
1473091351 [0]
none [0]
Win2K-f
WinXP
0 of 33 02:02:31 20:53:04 6 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=75
embedded dns
lines=90
trace
trace
3bff218b8f
NEW
7eaf7b4470
NEW
b570b734be [0]
8e0b194526[0]
WinXP 39 of 41 23:34:11 23:34:11 1 none none:none
none:none
tElock|
Armadillo|
none
none
trace
trace
b8076e37ae
NEW
52953fed05 [0] WinXP
Win2K-f
28 of 41 03:46:26 23:49:00 2 none none:none
StarForce| none trace
474acf88e5
NEW
68f0c14692
NEW
1f53944b24 [0]
ccc1b24d53[0]
Win2K-f
WinXP
38 of 40 04:52:20 13:16:13 2 none none:none
none:none
tElock|
Armadillo|
none
none
trace
trace
a6592850ee
NEW
none[none] Win2K-f
WinXP
40 of 41 14:50:43 15:20:25 2 none none:none
none|none none none
c4c5a56ffe
NEW
8bef2f9170 [0] Win2K-f 11 of 36 16:30:17 16:30:17 1 none none:none
StarForce| none trace
3bff218b8f
NEW
b570b734be [0] WinXP 40 of 41 23:34:11 23:34:11 1 none none:none
tElock| none trace
9bb68450cd
NEW
c2d5ac2315 [0] WinXP 34 of 36 03:56:25 03:56:25 1 none ASM:Graph
PolyEnE| 100% lines=73
embedded dns
trace
0db52c5b7e
NEW
1c5e79f5f4
NEW
785e86954f
NEW
8605cfb923
NEW
b0c90d35ee
NEW
bd9cfd7e85
NEW
d795528932
NEW
abf142b6d2 [0]
none [4]
c6edee8e8b[0]
none [none]
none [none]
none [none]
none [none]
WinXP 10 of 41 11:29:44 11:29:44 1 none none:none
none:none
none:none
none:none
none:none
none:none
none:none
PolyEnE|
FSG|
PeStubOEP|
none|none
none|none
none|none
none|none
none
none
none
none
none
none
none
trace
trace
trace
none
none
none
none
d9cb288f31
NEW
45603a001c [0] Win2K-f 3 of 37 16:29:40 16:38:33 2 none ASM:Graph
UPX| 92% lines=174
embedded dns
trace