Welcome to the Cyber-TA
Daily Malware Binary DIGEST Summary Page



27 December 2009

All data collection and analyses summarized in this page were 100% AUTO-GENERATED.

DEVELOPERS: Vinod Yegneswaran (SRI), Phillip Porras (SRI), Hassen Saidi (SRI)
Monirul Sharif (Georgia-Tech), Arvind Narayanan (University of Texas at Austin)

The data on this website is provided for research purposes only. It is provided
for your personal use only and is supplied AS IS, WITHOUT WARRANTY OF ANY KIND.
Use or reliance on this data is at your own risk.



Packed
MD5
UnPacket
MD5
Victim
OS
AntiVirus
Hit-Cnt
First
Encounter
Last
Encounter
Freq
Cnt
Behavioral
Clusters
Unpacked
Egg.asm
Packer
Fingerprint
API
Resolution
String
Cnt
Syscall
Trace
ac6ad5d9b9
NEW
none[none] WinXP 0 of 35 04:09:45 04:09:45 1 none none:none
none|none none none
1415b0b9e5
NEW
51110a94f0
NEW
none[none]
none [none]
WinXP 39 of 41 23:21:50 23:21:50 1 none none:none
none:none
none|none
none|none
none
none
none
none
53bfe15e91
NEW
73f1082158
NEW
1473091351 [0]
none [0]
Win2K-f 0 of 32 03:13:04 19:15:47 4 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=75
embedded dns
lines=90
trace
trace
dc331fb791
NEW
none[3] Win2K-f 3 of 37 15:30:36 15:30:36 1 none none:none
UPX| none trace
53bfe15e91
NEW
1473091351 [0] Win2K-f
WinXP
33 of 33 00:08:16 22:20:25 10 none ASM:Graph
tElock| 96% lines=75
embedded dns
trace
07fabc79ef
NEW
none[0] Win2K-f 0 of 32 19:46:02 19:46:02 1 none ASM:Graph
Armadillo| 47% lines=81 trace
168aab35a3
NEW
357486dae7
NEW
667f0c59f3
NEW
d697b76f39
NEW
60b730b97e [0]
none [none]
8fe2be2095[0]
none [none]
Win2K-f 5 of 41 07:08:48 07:08:48 1 none ASM:Graph
none:none
ASM:Graph
none:none
tElock|
none|none
Armadillo|
none|none
lines=120
embedded dns
none
lines=91
none
trace
none
trace
none
168aab35a3
NEW
357486dae7
NEW
60b730b97e [0]
none [none]
Win2K-f 23 of 41 07:08:48 07:08:48 1 none ASM:Graph
none:none
tElock|
none|none
lines=120
embedded dns
none
trace
none
67621eedc5
NEW
749cc9507f
NEW
none[none]
none [none]
WinXP 39 of 41 01:04:29 01:04:29 1 none none:none
none:none
none|none
none|none
none
none
none
none
21501192a5
NEW
none[none] Win2K-f 3 of 41 16:49:58 16:49:58 1 none none:none
none|none none none
986b59708d
NEW
none[0] WinXP 29 of 29 14:25:47 14:25:47 1 none none:none
PolyEnE| 100% lines=57 trace
21501192a5
NEW
7ff3e718b6
NEW
none[none]
none [none]
Win2K-f 0 of 41 16:49:58 16:49:58 1 none none:none
none:none
none|none
none|none
none
none
none
none
9bdd2c95b1
NEW
d1bbd693ba [none] Win2K-f 39 of 41 01:26:06 01:26:06 1 none none:none
Armadillo| none trace
559acaa271
NEW
none[none] Win2K-f 35 of 41 01:55:40 01:55:40 1 none none:none
none|none none none
a5ceb6c29d
NEW
d64cd9d18b [0] WinXP 40 of 41 03:01:27 03:01:27 1 none none:none
tElock| none trace
d6df3972a0
NEW
none[0] WinXP 29 of 29 18:19:45 18:19:45 1 none ASM:Graph
PolyEnE| 100% lines=65 trace
69aabe81c5
NEW
none[none] Win2K-f 25 of 41 12:49:26 12:49:26 1 none none:none
none|none none none
168aab35a3
NEW
60b730b97e [0] Win2K-f 31 of 33 07:08:48 07:08:48 1 none ASM:Graph
tElock| 95% lines=120
embedded dns
trace
9bdd2c95b1
NEW
cd456ac095
NEW
d1bbd693ba [none]
d75caee680[none]
Win2K-f 39 of 40 01:26:06 01:26:06 1 none none:none
none:none
Armadillo|
tElock|
none
none
trace
trace
38ed850a0e
NEW
46990f37cd [0] Win2K-f 34 of 38 03:59:34 03:59:34 1 none ASM:Graph
Armadillo| 0% lines=91 trace
a12cab51ef
NEW
none[0] WinXP 29 of 29 09:11:10 22:30:45 2 none none:none
ASPack| 54% lines=281
embedded dns
trace
f45285574e
NEW
none[none] WinXP 40 of 41 08:17:22 08:17:22 1 none none:none
none|none none none
21501192a5
NEW
7ff3e718b6
NEW
a0764fc20c
NEW
none[none]
none [none]
none [none]
Win2K-f 9 of 41 16:49:58 16:49:58 1 none none:none
none:none
none:none
none|none
none|none
none|none
none
none
none
none
none
none
a5ceb6c29d
NEW
adadfc0e1c
NEW
d64cd9d18b [0]
0f57439d82[0]
WinXP 38 of 41 03:01:27 03:01:27 1 none none:none
none:none
tElock|
tElock|
none
none
trace
trace
1415b0b9e5
NEW
none[none] WinXP 39 of 41 23:21:50 23:21:50 1 none none:none
none|none none none
7f60162c2c
NEW
none[0] WinXP 25 of 25 02:38:39 16:10:28 2 none none:none
PolyEnE| 100% lines=93
embedded dns
trace
168aab35a3
NEW
357486dae7
NEW
667f0c59f3
NEW
60b730b97e [0]
none [none]
8fe2be2095[0]
Win2K-f 31 of 33 07:08:48 07:08:48 1 none ASM:Graph
none:none
ASM:Graph
tElock|
none|none
Armadillo|
0% lines=120
embedded dns
none
lines=91
trace
none
trace
741e3b03b3
NEW
none[0] WinXP 31 of 32 10:36:23 10:36:23 1 none none:none
none|none 32% lines=61 trace
07d4a44739
NEW
none[none] Win2K-f 13 of 41 16:44:30 16:44:30 1 none none:none
none|none none none
831f4ee0a7
NEW
none[0] WinXP 29 of 29 05:04:38 05:04:38 1 none ASM:Graph
none|none 100% lines=61 trace
67621eedc5
NEW
none[none] WinXP 39 of 41 01:04:29 01:04:29 1 none none:none
none|none none none
e1693609f9
NEW
none[3] Win2K-f 17 of 41 18:14:51 18:14:51 1 none none:none
none|none none trace
7d99b0e910
NEW
none[0] WinXP 26 of 28 17:02:06 17:02:06 1 none none:none
PolyEnE| 99% lines=68 trace
17028f1eda
NEW
none[3] WinXP 31 of 32 13:40:43 13:40:43 1 none none:none
tElock| none trace
53bfe15e91
NEW
57ce4acac2
NEW
1473091351 [0]
none [0]
Win2K-f 0 of 33 22:20:25 22:20:25 1 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=75
embedded dns
lines=90
trace
trace
1a2c0e6130
NEW
none[0] WinXP 29 of 29 05:21:19 05:21:19 1 none none:none
none|none 33% lines=60 trace
53bfe15e91
NEW
a08f3b74a4
NEW
1473091351 [0]
none [0]
Win2K-f
WinXP
0 of 33 00:08:16 11:48:38 4 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=75
embedded dns
lines=90
trace
trace
046bc82ba6
NEW
none[none] WinXP 40 of 40 22:00:06 22:00:06 1 none none:none
none|none none none
07d4a44739
NEW
7ed43d490d
NEW
none[none]
none [none]
Win2K-f 10 of 41 16:44:30 16:44:30 1 none none:none
none:none
none|none
none|none
none
none
none
none
3bff218b8f
NEW
7eaf7b4470
NEW
b570b734be [0]
8e0b194526[0]
Win2K-f 39 of 41 20:49:18 20:49:18 1 none none:none
none:none
tElock|
Armadillo|
none
none
trace
trace
38ed850a0e
NEW
b9297745a1
NEW
46990f37cd [0]
4294884d84[0]
Win2K-f 35 of 38 03:59:34 03:59:34 1 none ASM:Graph
ASM:Graph
Armadillo|
tElock|
96% lines=91
lines=64
embedded dns
trace
trace
3bff218b8f
NEW
b570b734be [0] Win2K-f 40 of 41 20:49:18 20:49:18 1 none none:none
tElock| none trace
7119bea170
NEW
none[none] Win2K-f 0 of 41 17:07:29 17:07:29 1 none none:none
none|none none none
d9cb288f31
NEW
45603a001c [0] Win2K-f 3 of 37 00:28:00 07:24:32 3 none ASM:Graph
UPX| 92% lines=174
embedded dns
trace