Welcome to the Cyber-TA
Daily Malware Binary DIGEST Summary Page



19 July 2010

All data collection and analyses summarized in this page were 100% AUTO-GENERATED.

DEVELOPERS: Vinod Yegneswaran (SRI), Phillip Porras (SRI), Hassen Saidi (SRI)
Monirul Sharif (Georgia-Tech), Arvind Narayanan (University of Texas at Austin)

The data on this website is provided for research purposes only. It is provided
for your personal use only and is supplied AS IS, WITHOUT WARRANTY OF ANY KIND.
Use or reliance on this data is at your own risk.



Packed
MD5
UnPacket
MD5
Victim
OS
AntiVirus
Hit-Cnt
First
Encounter
Last
Encounter
Freq
Cnt
Behavioral
Clusters
Unpacked
Egg.asm
Packer
Fingerprint
API
Resolution
String
Cnt
Syscall
Trace
05b1ed9c9c
NEW
0c87a74ebe
NEW
4abd56c3f0
NEW
none[none]
none [none]
none [none]
WinXP
Win2K-f
10 of 42 05:32:08 17:19:11 2 none none:none
none:none
none:none
none|none
none|none
none|none
none
none
none
none
none
none
53bfe15e91
NEW
73f1082158
NEW
1473091351 [0]
none [0]
Win2K-f 0 of 32 15:11:03 21:26:14 2 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=75
embedded dns
lines=90
trace
trace
53bfe15e91
NEW
1473091351 [0] WinXP
Win2K-f
33 of 33 08:57:37 21:26:14 3 none ASM:Graph
tElock| 96% lines=75
embedded dns
trace
07fabc79ef
NEW
none[0] WinXP 0 of 32 23:58:24 23:58:24 1 none none:none
Armadillo| 0% lines=90 trace
71e6f60517
NEW
ab4e3226c4
NEW
1ef1781501 [0]
c2d0313e73[0]
Win2K-f 40 of 41 02:45:09 18:20:27 2 none ASM:Graph
none:none
Armadillo|
tElock|
lines=91
none
trace
trace
8b41cb7a41
NEW
ef18d720f3 [0] Win2K-f 3 of 41 23:28:17 23:28:17 1 none ASM:Graph
Armadillo| 0% lines=90 trace
4abd56c3f0
NEW
61839e852a
NEW
66863cfb13
NEW
6ac989fbb4
NEW
none[none]
none [none]
fca240f318[0]
none [none]
WinXP 29 of 42 05:32:08 05:32:08 1 none none:none
none:none
ASM:Graph
none:none
none|none
none|none
Armadillo|
none|none
none
none
lines=91
none
none
none
trace
none
4abd56c3f0
NEW
61839e852a
NEW
66863cfb13
NEW
6ac989fbb4
NEW
6da30c67c6
NEW
e8dfca0741
NEW
none[none]
none [none]
fca240f318[0]
none [none]
none [none]
20dfd2147c[0]
WinXP 38 of 40 05:32:08 05:32:08 1 none none:none
none:none
ASM:Graph
none:none
none:none
ASM:Graph
none|none
none|none
Armadillo|
none|none
none|none
tElock|
96% none
none
lines=91
none
none
lines=125
embedded dns
none
none
trace
none
none
trace
cc88f4f016
NEW
3d17903825 [0] WinXP 31 of 41 02:54:40 02:54:40 1 none ASM:Graph
StarForce| 97% lines=3262
embedded dns
trace
39d42dbc9a
NEW
738f555183 [0] WinXP 29 of 29 10:17:16 10:17:16 1 none ASM:Graph
PolyEnE| 99% lines=68 trace
6b315f5dbc
NEW
7938865f8c
NEW
7604b94520 [0]
a9b9e4904b[0]
Win2K-f 39 of 41 18:35:56 18:35:56 1 none ASM:Graph
ASM:Graph
tElock|
Armadillo|
0% lines=64
embedded dns
lines=91
trace
trace
6a0619dc3e
NEW
none[none] WinXP 40 of 41 15:19:36 15:19:36 1 none none:none
none|none none none
3637f7c82c
NEW
none[none] WinXP 40 of 41 03:13:11 03:13:11 1 none none:none
none|none none none
8b41cb7a41
NEW
97fef473b9
NEW
ef18d720f3 [0]
ff4e7d6992[0]
Win2K-f 33 of 33 23:28:17 23:28:17 1 none ASM:Graph
ASM:Graph
Armadillo|
tElock|
96% lines=90
lines=64
embedded dns
trace
trace
47d3548e36
NEW
d8722af110
NEW
ab13346633 [0]
ab30a55931[0]
Win2K-f 36 of 40 15:25:29 15:25:29 1 none ASM:Graph
ASM:Graph
Armadillo|
tElock|
96% lines=91
lines=64
embedded dns
trace
trace
d42c1cc7c0
NEW
none[0] WinXP 29 of 29 19:25:51 19:25:51 1 none none:none
PolyEnE| 100% lines=54 trace
533d15b5ce
NEW
c67adf46e2 [0] Win2K-f 30 of 33 07:39:51 07:39:51 1 none ASM:Graph
tElock| 96% lines=126
embedded dns
trace
0b951c2832
NEW
5fe761661a [0] WinXP 32 of 36 15:59:41 15:59:41 1 none ASM:Graph
Armadillo| 0% lines=91 trace
07fabc79ef
NEW
218ce30f5c
NEW
none[0]
none [3]
WinXP 18 of 35 23:58:24 23:58:24 1 none none:none
none:none
Armadillo|
none|none
lines=90
none
trace
trace
6b315f5dbc
NEW
7604b94520 [0] Win2K-f 39 of 41 18:35:56 18:35:56 1 none ASM:Graph
tElock| 96% lines=64
embedded dns
trace
9716d7995a
NEW
c3a5354b6f [0] WinXP 35 of 35 01:45:52 01:45:52 1 none ASM:Graph
PolyEnE| 99% lines=68 trace
4abd56c3f0
NEW
61839e852a
NEW
none[none]
none [none]
WinXP 22 of 42 05:32:08 05:32:08 1 none none:none
none:none
none|none
none|none
none
none
none
none
98d2778fd6
NEW
f676f3bf5b
NEW
9feea491cb [0]
0fba495fc4[0]
WinXP 37 of 41 19:36:17 19:36:17 1 none ASM:Graph
ASM:Graph
tElock|
Armadillo|
0% lines=64
embedded dns
lines=91
trace
trace
ca8bd5c40e
NEW
9cb687217f [0] WinXP 40 of 41 02:43:53 02:43:53 1 none ASM:Graph
PolyEnE| 100% lines=93
embedded dns
trace
568b9e866c
NEW
5c20c3472e
NEW
6dfc90ff94 [0]
9ca7a71763[0]
WinXP 37 of 41 01:07:06 01:07:06 1 none ASM:Graph
ASM:Graph
tElock|
tElock|
96% lines=42
lines=64
embedded dns
trace
trace
d61760f6a1
NEW
22542b9b5e [0] WinXP 33 of 36 16:43:15 16:43:15 1 none ASM:Graph
PolyEnE| 100% lines=93
embedded dns
trace
533d15b5ce
NEW
58c343a8d8
NEW
c67adf46e2 [0]
none [0]
Win2K-f 28 of 33 07:39:51 07:39:51 1 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=126
embedded dns
lines=91
trace
trace
4abd56c3f0
NEW
61839e852a
NEW
66863cfb13
NEW
6ac989fbb4
NEW
6da30c67c6
NEW
none[none]
none [none]
fca240f318[0]
none [none]
none [none]
WinXP 30 of 41 05:32:08 05:32:08 1 none none:none
none:none
ASM:Graph
none:none
none:none
none|none
none|none
Armadillo|
none|none
none|none
none
none
lines=91
none
none
none
none
trace
none
none
05b1ed9c9c
NEW
0c87a74ebe
NEW
none[none]
none [none]
Win2K-f 0 of 0 17:19:11 17:19:11 1 none none:none
none:none
none|none
none|none
none
none
none
none
47d3548e36
NEW
ab13346633 [0] Win2K-f 37 of 41 15:25:29 15:25:29 1 none ASM:Graph
Armadillo| 0% lines=91 trace
7d99b0e910
NEW
none[0] WinXP 26 of 28 07:04:50 22:44:15 4 none none:none
PolyEnE| 99% lines=68 trace
568b9e866c
NEW
6dfc90ff94 [0] WinXP 37 of 41 01:07:06 01:07:06 1 none ASM:Graph
tElock| 100% lines=42 trace
2205443cc8
NEW
04ce1ed773 [none] Win2K-f 38 of 39 21:48:27 21:48:27 1 none none:none
none|none none none
98d2778fd6
NEW
9feea491cb [0] WinXP 38 of 41 19:36:17 19:36:17 1 none ASM:Graph
tElock| 96% lines=64
embedded dns
trace
57ce4acac2
NEW
none[0] WinXP 0 of 33 16:51:56 16:51:56 1 none none:none
Armadillo| 0% lines=90 trace
4abd56c3f0
NEW
61839e852a
NEW
66863cfb13
NEW
none[none]
none [none]
fca240f318[0]
WinXP 38 of 40 05:32:08 05:32:08 1 none none:none
none:none
ASM:Graph
none|none
none|none
Armadillo|
0% none
none
lines=91
none
none
trace
05b1ed9c9c
NEW
0c87a74ebe
NEW
4abd56c3f0
NEW
9362a3aee3
NEW
none[none]
none [none]
none [none]
none [none]
Win2K-f 25 of 40 17:19:11 17:19:11 1 none none:none
none:none
none:none
none:none
none|none
none|none
none|none
none|none
none
none
none
none
none
none
none
none
71e6f60517
NEW
1ef1781501 [0] Win2K-f 40 of 41 02:45:09 18:20:27 2 none ASM:Graph
Armadillo| 0% lines=91 trace
1a2c0e6130
NEW
none[0] WinXP 29 of 29 00:49:53 00:49:53 1 none none:none
none|none 33% lines=60 trace
53bfe15e91
NEW
a08f3b74a4
NEW
1473091351 [0]
none [0]
WinXP 0 of 33 08:57:37 08:57:37 1 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=75
embedded dns
lines=90
trace
trace
05b1ed9c9c
NEW
none[none] Win2K-f 0 of 0 17:19:11 17:19:11 1 none none:none
none|none none none
e4ad299193
NEW
none[none] Win2K-f 2 of 42 23:54:05 23:54:05 1 none none:none
none|none none none
2205443cc8
NEW
b9297745a1
NEW
04ce1ed773 [none]
4294884d84[0]
Win2K-f 35 of 38 21:48:27 21:48:27 1 none none:none
ASM:Graph
none|none
tElock|
96% none
lines=64
embedded dns
none
trace
5e8ccc4190
NEW
8d5f86583f [0] WinXP 39 of 40 21:09:32 21:09:32 1 none ASM:Graph
PolyEnE| 100% lines=68 trace
65db8c1d0d
NEW
none[none] WinXP 40 of 40 12:11:37 12:11:37 1 none none:none
none|none none none
0b951c2832
NEW
e4ed4df0f0
NEW
5fe761661a [0]
de471fc380[0]
WinXP 34 of 36 15:59:41 15:59:41 1 none ASM:Graph
ASM:Graph
Armadillo|
tElock|
96% lines=91
lines=64
embedded dns
trace
trace
df07010fd8
NEW
none[none] Win2K-f 31 of 42 17:19:11 17:40:34 2 none none:none
none|none none none
23406743e0
NEW
none[none] WinXP 40 of 40 03:45:45 03:45:45 1 none none:none
none|none none none