Welcome to the Cyber-TA
Daily Malware Binary DIGEST Summary Page



01 June 2010

All data collection and analyses summarized in this page were 100% AUTO-GENERATED.

DEVELOPERS: Vinod Yegneswaran (SRI), Phillip Porras (SRI), Hassen Saidi (SRI)
Monirul Sharif (Georgia-Tech), Arvind Narayanan (University of Texas at Austin)

The data on this website is provided for research purposes only. It is provided
for your personal use only and is supplied AS IS, WITHOUT WARRANTY OF ANY KIND.
Use or reliance on this data is at your own risk.



Packed
MD5
UnPacket
MD5
Victim
OS
AntiVirus
Hit-Cnt
First
Encounter
Last
Encounter
Freq
Cnt
Behavioral
Clusters
Unpacked
Egg.asm
Packer
Fingerprint
API
Resolution
String
Cnt
Syscall
Trace
ecfbf321d3
NEW
none[none] WinXP 38 of 41 10:42:04 10:42:04 1 none none:none
none|none none none
0723522d18
NEW
1e8d2d2ded
NEW
87e1117f2a
NEW
b4fe4581c3
NEW
bc46417a2c
NEW
c19d441417
NEW
c88f1a3028
NEW
none[none]
none [none]
3ff643aae6[0]
599b835896[0]
none [none]
none [none]
none [none]
Win2K-f
WinXP
28 of 41 06:07:39 17:00:47 4 none none:none
none:none
ASM:Graph
ASM:Graph
none:none
none:none
none:none
none|none
none|none
tElock|
Armadillo|
none|none
none|none
none|none
none
none
lines=125
embedded dns
lines=91
none
none
none
none
none
trace
trace
none
none
none
53bfe15e91
NEW
73f1082158
NEW
1473091351 [0]
none [0]
Win2K-f
WinXP
0 of 32 11:01:36 21:00:39 3 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=75
embedded dns
lines=90
trace
trace
dc331fb791
NEW
none[3] Win2K-f 3 of 37 17:51:48 17:51:48 1 none none:none
UPX| none trace
14f47ffd1e
NEW
90bf4b99ff [0] Win2K-f 40 of 41 11:32:23 11:32:23 1 none ASM:Graph
tElock| 96% lines=56
embedded dns
trace
53bfe15e91
NEW
1473091351 [0] Win2K-f
WinXP
33 of 33 11:01:36 21:00:39 4 none ASM:Graph
tElock| 96% lines=75
embedded dns
trace
a1fac31325
NEW
0fd057b5e2 [0] Win2K-f 39 of 42 10:12:43 10:12:43 1 none none:none
Armadillo| none trace
5d26f533fd
NEW
none[none] WinXP 38 of 41 16:57:39 16:57:39 1 none none:none
none|none none none
0723522d18
NEW
1e8d2d2ded
NEW
87e1117f2a
NEW
none[none]
none [none]
3ff643aae6[0]
WinXP 32 of 33 17:00:47 17:00:47 1 none none:none
none:none
ASM:Graph
none|none
none|none
tElock|
96% none
none
lines=125
embedded dns
none
none
trace
a1fac31325
NEW
c018e17b5b
NEW
0fd057b5e2 [0]
8caee80d88[0]
Win2K-f 39 of 42 10:12:43 10:12:43 1 none none:none
none:none
Armadillo|
StarForce|
none
none
trace
trace
2cb2e4374e
NEW
aed98f9f95
NEW
b6ce2450e0
NEW
none[none]
none [none]
none [none]
Win2K-f 22 of 41 06:07:39 06:41:47 2 none none:none
none:none
none:none
none|none
none|none
none|none
none
none
none
none
none
none
b9742fc32f
NEW
none[none] WinXP 39 of 41 01:07:34 01:07:34 1 none none:none
none|none none none
6a1dc43309
NEW
522dace6c1 [0] WinXP 39 of 41 05:50:11 05:50:11 1 none ASM:Graph
Armadillo| 0% lines=91 trace
53bfe15e91
NEW
b7082104e4
NEW
1473091351 [0]
c5b49e7b82[0]
Win2K-f 8 of 33 17:56:13 17:56:13 1 none ASM:Graph
ASM:Graph
tElock|
tElock|
100% lines=75
embedded dns
lines=41
trace
trace
5799ab6538
NEW
2713679411 [0] Win2K-f 40 of 41 13:32:47 13:32:47 1 none ASM:Graph
tElock| 96% lines=64
embedded dns
trace
41a34e5d13
NEW
bddbe59f19
NEW
none[none]
none [none]
WinXP 0 of 0 08:45:43 08:45:43 1 none none:none
none:none
none|none
none|none
none
none
none
none
1da4193446
NEW
6278c9374a
NEW
8a97c8536a [none]
cc7aaf6ea9[none]
Win2K-f 37 of 39 04:36:30 04:36:30 1 none none:none
none:none
none|none
none|none
none
none
none
none
0723522d18
NEW
1e8d2d2ded
NEW
none[none]
none [none]
WinXP 26 of 41 17:00:47 17:00:47 1 none none:none
none:none
none|none
none|none
none
none
none
none
41a34e5d13
NEW
none[none] WinXP 40 of 41 08:45:43 08:45:43 1 none none:none
none|none none none
0723522d18
NEW
1e8d2d2ded
NEW
87e1117f2a
NEW
b4fe4581c3
NEW
bc46417a2c
NEW
c19d441417
NEW
c88f1a3028
NEW
ceb9fe30e6
NEW
none[none]
none [none]
3ff643aae6[0]
599b835896[0]
none [none]
none [none]
none [none]
none [none]
Win2K-f
WinXP
13 of 41 06:07:39 17:00:47 4 none none:none
none:none
ASM:Graph
ASM:Graph
none:none
none:none
none:none
none:none
none|none
none|none
tElock|
Armadillo|
none|none
none|none
none|none
none|none
none
none
lines=125
embedded dns
lines=91
none
none
none
none
none
none
trace
trace
none
none
none
none
5c6df5141d
NEW
none[none] WinXP 41 of 41 06:09:50 23:08:45 2 none none:none
none|none none none
4feab58b34
NEW
533d15b5ce
NEW
none[none]
c67adf46e2[0]
Win2K-f 30 of 33 06:07:39 06:07:39 1 none none:none
ASM:Graph
none|none
tElock|
96% none
lines=126
embedded dns
none
trace
7f60162c2c
NEW
none[0] WinXP 25 of 25 19:22:10 19:22:10 1 none none:none
PolyEnE| 100% lines=93
embedded dns
trace
0723522d18
NEW
1e8d2d2ded
NEW
87e1117f2a
NEW
b4fe4581c3
NEW
bc46417a2c
NEW
c19d441417
NEW
c88f1a3028
NEW
ceb9fe30e6
NEW
f74cbbe1cc
NEW
none[none]
none [none]
3ff643aae6[0]
599b835896[0]
none [none]
none [none]
none [none]
none [none]
none [none]
WinXP 0 of 0 08:45:43 17:00:47 2 none none:none
none:none
ASM:Graph
ASM:Graph
none:none
none:none
none:none
none:none
none:none
none|none
none|none
tElock|
Armadillo|
none|none
none|none
none|none
none|none
none|none
none
none
lines=125
embedded dns
lines=91
none
none
none
none
none
none
none
trace
trace
none
none
none
none
none
c46f4552da
NEW
ce6ff736cf [0] WinXP 42 of 42 12:24:48 12:24:48 1 none none:none
none|none none trace
831f4ee0a7
NEW
none[0] WinXP 29 of 29 14:31:21 14:31:21 1 none none:none
none|none 33% lines=60 trace
4feab58b34
NEW
533d15b5ce
NEW
58c343a8d8
NEW
none[none]
c67adf46e2[0]
none [0]
Win2K-f 28 of 33 06:07:39 06:07:39 1 none none:none
ASM:Graph
none:none
none|none
tElock|
Armadillo|
0% none
lines=126
embedded dns
lines=91
none
trace
trace
2cb2e4374e
NEW
aed98f9f95
NEW
none[none]
none [none]
Win2K-f 0 of 0 06:07:39 06:41:47 2 none none:none
none:none
none|none
none|none
none
none
none
none
4feab58b34
NEW
none[none] Win2K-f 18 of 40 06:07:39 06:07:39 1 none none:none
none|none none none
1da4193446
NEW
8a97c8536a [none] Win2K-f 38 of 40 04:36:30 04:36:30 1 none none:none
none|none none none
2205443cc8
NEW
04ce1ed773 [none] WinXP 38 of 39 10:47:52 10:47:52 1 none none:none
none|none none none
0723522d18
NEW
1e8d2d2ded
NEW
87e1117f2a
NEW
b4fe4581c3
NEW
bc46417a2c
NEW
c19d441417
NEW
none[none]
none [none]
3ff643aae6[0]
599b835896[0]
none [none]
none [none]
Win2K-f
WinXP
25 of 41 06:07:39 17:00:47 4 none none:none
none:none
ASM:Graph
ASM:Graph
none:none
none:none
none|none
none|none
tElock|
Armadillo|
none|none
none|none
none
none
lines=125
embedded dns
lines=91
none
none
none
none
trace
trace
none
none
0723522d18
NEW
1e8d2d2ded
NEW
87e1117f2a
NEW
b4fe4581c3
NEW
bc46417a2c
NEW
none[none]
none [none]
3ff643aae6[0]
599b835896[0]
none [none]
Win2K-f
WinXP
17 of 41 06:07:39 17:00:47 2 none none:none
none:none
ASM:Graph
ASM:Graph
none:none
none|none
none|none
tElock|
Armadillo|
none|none
none
none
lines=125
embedded dns
lines=91
none
none
none
trace
trace
none
2cb2e4374e
NEW
none[none] Win2K-f 8 of 41 06:41:47 06:41:47 1 none none:none
none|none none none
1a2c0e6130
NEW
none[0] WinXP 29 of 29 08:19:53 08:19:53 1 none none:none
none|none 33% lines=60 trace
14f47ffd1e
NEW
50437008d9
NEW
90bf4b99ff [0]
c1b09ac5d7[0]
Win2K-f 5 of 41 11:32:23 11:32:23 1 none ASM:Graph
ASM:Graph
tElock|
Armadillo|
0% lines=56
embedded dns
lines=90
trace
trace
6a1dc43309
NEW
94e49d5627
NEW
522dace6c1 [0]
777259292a[0]
WinXP 40 of 41 05:50:11 05:50:11 1 none ASM:Graph
ASM:Graph
Armadillo|
tElock|
96% lines=91
lines=64
embedded dns
trace
trace
d20f157117
NEW
738f555183 [0] WinXP 34 of 34 08:11:34 08:11:34 1 none ASM:Graph
PolyEnE| 99% lines=68 trace
2205443cc8
NEW
b9297745a1
NEW
04ce1ed773 [none]
4294884d84[0]
WinXP 35 of 38 10:47:52 10:47:52 1 none none:none
ASM:Graph
none|none
tElock|
96% none
lines=64
embedded dns
none
trace
393e318752
NEW
none[none] WinXP 40 of 41 11:43:47 11:43:47 1 none none:none
none|none none none
a0139d7ad8
NEW
none[0] WinXP 29 of 29 19:20:24 19:20:24 1 none none:none
PolyEnE| 99% lines=68 trace
0723522d18
NEW
1e8d2d2ded
NEW
87e1117f2a
NEW
b4fe4581c3
NEW
none[none]
none [none]
3ff643aae6[0]
599b835896[0]
WinXP 29 of 33 17:00:47 17:00:47 1 none none:none
none:none
ASM:Graph
ASM:Graph
none|none
none|none
tElock|
Armadillo|
0% none
none
lines=125
embedded dns
lines=91
none
none
trace
trace
0723522d18
NEW
none[none] WinXP 0 of 41 17:00:47 17:00:47 1 none none:none
none|none none none
d9cb288f31
NEW
45603a001c [0] Win2K-f 3 of 37 07:48:06 07:56:49 2 none ASM:Graph
UPX| 92% lines=174
embedded dns
trace
5799ab6538
NEW
f38e8d97da
NEW
2713679411 [0]
83f1400243[0]
Win2K-f 39 of 41 13:32:47 13:32:47 1 none ASM:Graph
ASM:Graph
tElock|
Armadillo|
0% lines=64
embedded dns
lines=91
trace
trace