Welcome to the Cyber-TA
Daily Malware Binary DIGEST Summary Page



20 November 2009

All data collection and analyses summarized in this page were 100% AUTO-GENERATED.

DEVELOPERS: Vinod Yegneswaran (SRI), Phillip Porras (SRI), Hassen Saidi (SRI)
Monirul Sharif (Georgia-Tech), Arvind Narayanan (University of Texas at Austin)

The data on this website is provided for research purposes only. It is provided
for your personal use only and is supplied AS IS, WITHOUT WARRANTY OF ANY KIND.
Use or reliance on this data is at your own risk.



Packed
MD5
UnPacket
MD5
Victim
OS
AntiVirus
Hit-Cnt
First
Encounter
Last
Encounter
Freq
Cnt
Behavioral
Clusters
Unpacked
Egg.asm
Packer
Fingerprint
API
Resolution
String
Cnt
Syscall
Trace
10759405e0
NEW
292d343248 [0] Win2K-f 38 of 41 11:45:25 11:45:25 1 none none:none
Armadillo| none trace
2cb7fb5674
NEW
4bf8dcd347 [0] WinXP 40 of 41 20:09:50 20:09:50 1 none none:none
none|none none trace
53bfe15e91
NEW
73f1082158
NEW
1473091351 [0]
none [0]
Win2K-f
WinXP
0 of 32 05:37:52 11:41:55 3 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=75
embedded dns
lines=90
trace
trace
dc331fb791
NEW
none[3] Win2K-f 3 of 37 02:40:33 02:49:15 2 none none:none
UPX| none trace
53bfe15e91
NEW
1473091351 [0] WinXP
Win2K-f
33 of 33 04:07:12 21:19:19 8 none ASM:Graph
tElock| 96% lines=75
embedded dns
trace
df17a625ee
NEW
none[0] WinXP 29 of 29 16:38:01 16:38:01 1 none none:none
ASPack| 72% lines=298
embedded dns
trace
008e3b61f6
NEW
none[none] WinXP 0 of 41 06:48:56 07:02:23 3 none none:none
none|none none none
20009c4d7c
NEW
37795a29d0
NEW
533d15b5ce
NEW
58c343a8d8
NEW
6d37c17bac
NEW
785e86954f
NEW
ca135d8386
NEW
db6f49afa4
NEW
e878f3306f
NEW
none[none]
none [none]
c67adf46e2[0]
none [0]
none [none]
c6edee8e8b[0]
none [none]
none [none]
none [none]
Win2K-f 6 of 41 04:05:52 04:05:52 1 none none:none
none:none
ASM:Graph
none:none
none:none
none:none
none:none
none:none
none:none
none|none
none|none
tElock|
Armadillo|
none|none
PeStubOEP|
none|none
none|none
none|none
none
none
lines=126
embedded dns
lines=91
none
none
none
none
none
none
none
trace
trace
none
trace
none
none
none
e39b4a0a0f
NEW
none[none] WinXP 38 of 39 20:24:48 20:24:48 1 none none:none
none|none none none
20009c4d7c
NEW
none[none] Win2K-f 18 of 40 04:05:52 04:05:52 1 none none:none
none|none none none
2daf861bde
NEW
none[none] Win2K-f 3 of 37 18:24:05 18:24:05 1 none none:none
none|none none none
6aca68100d
NEW
cdd701d5c5
NEW
none[none]
none [none]
WinXP 38 of 41 17:21:42 17:21:42 1 none none:none
none:none
none|none
none|none
none
none
none
none
20009c4d7c
NEW
37795a29d0
NEW
533d15b5ce
NEW
58c343a8d8
NEW
6d37c17bac
NEW
none[none]
none [none]
c67adf46e2[0]
none [0]
none [none]
Win2K-f 8 of 40 04:05:52 04:05:52 1 none none:none
none:none
ASM:Graph
none:none
none:none
none|none
none|none
tElock|
Armadillo|
none|none
none
none
lines=126
embedded dns
lines=91
none
none
none
trace
trace
none
b502f83a7c
NEW
28f5be93b0 [0] WinXP 32 of 32 15:08:39 15:08:39 1 none none:none
PolyEnE| none trace
d42c1cc7c0
NEW
none[0] WinXP 29 of 29 10:20:19 10:20:19 1 none ASM:Graph
PolyEnE| 100% lines=54 trace
6a6aaa5b73
NEW
8bde6dd126
NEW
63889c9976 [0]
885c68f500[0]
WinXP 40 of 41 00:59:07 00:59:07 1 none none:none
none:none
tElock|
tElock|
none
none
trace
trace
20009c4d7c
NEW
37795a29d0
NEW
533d15b5ce
NEW
none[none]
none [none]
c67adf46e2[0]
Win2K-f 30 of 33 04:05:52 04:05:52 1 none none:none
none:none
ASM:Graph
none|none
none|none
tElock|
96% none
none
lines=126
embedded dns
none
none
trace
912a073945
NEW
7874c7f21e [0] WinXP 39 of 41 04:18:58 04:18:58 1 none none:none
PolyEnE| none trace
8be30939f0
NEW
none[none] WinXP 26 of 41 06:55:19 06:55:19 1 none none:none
none|none none none
a12cab51ef
NEW
none[0] WinXP 29 of 29 05:33:05 05:33:05 1 none none:none
ASPack| 54% lines=281
embedded dns
trace
20009c4d7c
NEW
37795a29d0
NEW
533d15b5ce
NEW
58c343a8d8
NEW
6d37c17bac
NEW
785e86954f
NEW
ca135d8386
NEW
none[none]
none [none]
c67adf46e2[0]
none [0]
none [none]
c6edee8e8b[0]
none [none]
Win2K-f 0 of 41 04:05:52 04:05:52 1 none none:none
none:none
ASM:Graph
none:none
none:none
none:none
none:none
none|none
none|none
tElock|
Armadillo|
none|none
PeStubOEP|
none|none
none
none
lines=126
embedded dns
lines=91
none
none
none
none
none
trace
trace
none
trace
none
6a6aaa5b73
NEW
63889c9976 [0] WinXP 39 of 40 00:59:07 00:59:07 1 none none:none
tElock| none trace
218ce30f5c
NEW
none[3] Win2K-f 18 of 35 23:54:28 23:54:28 1 none none:none
none|none none trace
03f912899b
NEW
none[0] WinXP 32 of 32 10:32:18 10:32:18 1 none none:none
none|none 32% lines=64 trace
9716d7995a
NEW
c3a5354b6f [0] WinXP 35 of 35 04:51:23 14:13:56 2 none none:none
PolyEnE| none trace
20009c4d7c
NEW
37795a29d0
NEW
none[none]
none [none]
Win2K-f 6 of 41 04:05:52 04:05:52 1 none none:none
none:none
none|none
none|none
none
none
none
none
831f4ee0a7
NEW
none[0] WinXP 29 of 29 13:16:05 13:16:05 1 none ASM:Graph
none|none 100% lines=61 trace
20009c4d7c
NEW
37795a29d0
NEW
533d15b5ce
NEW
58c343a8d8
NEW
none[none]
none [none]
c67adf46e2[0]
none [0]
Win2K-f 28 of 33 04:05:52 04:05:52 1 none none:none
none:none
ASM:Graph
none:none
none|none
none|none
tElock|
Armadillo|
0% none
none
lines=126
embedded dns
lines=91
none
none
trace
trace
ea88964f78
NEW
e07a1b38de [0] WinXP 40 of 41 08:33:20 08:33:20 1 none none:none
PolyEnE| none trace
5213395833
NEW
515eacbc36 [0] WinXP 41 of 41 18:41:47 18:41:47 1 none none:none
tElock| none trace
7d99b0e910
NEW
none[0] WinXP 26 of 28 07:31:56 09:15:02 2 none none:none
PolyEnE| 99% lines=68 trace
20009c4d7c
NEW
37795a29d0
NEW
533d15b5ce
NEW
58c343a8d8
NEW
6d37c17bac
NEW
785e86954f
NEW
none[none]
none [none]
c67adf46e2[0]
none [0]
none [none]
c6edee8e8b[0]
Win2K-f 29 of 41 04:05:52 04:05:52 1 none none:none
none:none
ASM:Graph
none:none
none:none
none:none
none|none
none|none
tElock|
Armadillo|
none|none
PeStubOEP|
none
none
lines=126
embedded dns
lines=91
none
none
none
none
trace
trace
none
trace
10759405e0
NEW
d08e00dfaf
NEW
292d343248 [0]
854c49d8c4[0]
Win2K-f 39 of 41 11:45:25 11:45:25 1 none none:none
none:none
Armadillo|
tElock|
none
none
trace
trace
5c58fcf372
NEW
none[none] WinXP 39 of 41 13:07:56 13:07:56 1 none none:none
none|none none none
a1f992a08e
NEW
75ca0b4a8f [0] WinXP 40 of 41 12:57:06 12:57:06 1 none none:none
PolyEnE| none trace
5213395833
NEW
9fdf6de4a9
NEW
515eacbc36 [0]
794f9a1087[0]
WinXP 6 of 41 18:41:47 18:41:47 1 none none:none
none:none
tElock|
Armadillo|
none
none
trace
trace
218ce30f5c
NEW
a08f3b74a4
NEW
none[3]
none [0]
WinXP
Win2K-f
0 of 33 04:07:12 23:54:28 6 none none:none
none:none
none|none
Armadillo|
0% none
lines=90
trace
trace
377c747a97
NEW
none[none] WinXP 39 of 41 06:23:12 06:23:12 1 none none:none
none|none none none
6aca68100d
NEW
none[none] WinXP 39 of 41 17:21:42 17:21:42 1 none none:none
none|none none none
b8076e37ae
NEW
52953fed05 [0] Win2K-f 28 of 41 14:24:39 14:24:39 1 none none:none
StarForce| none trace
d8040f84d4
NEW
none[none] WinXP 39 of 41 06:37:34 06:37:34 1 none none:none
none|none none none
3369be8e23
NEW
7591c65764
NEW
none[none]
none [none]
Win2K-f 0 of 40 04:48:11 04:48:11 1 none none:none
none:none
none|none
none|none
none
none
none
none
3369be8e23
NEW
none[none] Win2K-f 0 of 41 04:48:11 04:48:11 1 none none:none
none|none none none
5285741560
NEW
60590b8b67 [0] WinXP 37 of 40 09:43:30 09:43:30 1 none ASM:Graph
none|none 55% lines=59 trace
20009c4d7c
NEW
37795a29d0
NEW
533d15b5ce
NEW
58c343a8d8
NEW
6d37c17bac
NEW
785e86954f
NEW
ca135d8386
NEW
db6f49afa4
NEW
none[none]
none [none]
c67adf46e2[0]
none [0]
none [none]
c6edee8e8b[0]
none [none]
none [none]
Win2K-f 9 of 41 04:05:52 04:05:52 1 none none:none
none:none
ASM:Graph
none:none
none:none
none:none
none:none
none:none
none|none
none|none
tElock|
Armadillo|
none|none
PeStubOEP|
none|none
none|none
none
none
lines=126
embedded dns
lines=91
none
none
none
none
none
none
trace
trace
none
trace
none
none
d9cb288f31
NEW
45603a001c [0] Win2K-f 3 of 37 03:36:11 03:36:11 1 none ASM:Graph
UPX| 92% lines=174
embedded dns
trace
428da13629
NEW
none[none] WinXP 40 of 41 07:05:39 07:05:39 1 none none:none
none|none none none