Welcome to the Cyber-TA
Daily Malware Binary DIGEST Summary Page



14 September 2010

All data collection and analyses summarized in this page were 100% AUTO-GENERATED.

DEVELOPERS: Vinod Yegneswaran (SRI), Phillip Porras (SRI), Hassen Saidi (SRI)
Monirul Sharif (Georgia-Tech), Arvind Narayanan (University of Texas at Austin)

The data on this website is provided for research purposes only. It is provided
for your personal use only and is supplied AS IS, WITHOUT WARRANTY OF ANY KIND.
Use or reliance on this data is at your own risk.



Packed
MD5
UnPacket
MD5
Victim
OS
AntiVirus
Hit-Cnt
First
Encounter
Last
Encounter
Freq
Cnt
Behavioral
Clusters
Unpacked
Egg.asm
Packer
Fingerprint
API
Resolution
String
Cnt
Syscall
Trace
7fd985b16b
NEW
none[none] WinXP 42 of 43 14:32:03 14:32:03 1 none none:none
none|none none none
178b0be402
NEW
none[none] WinXP 41 of 43 03:53:39 03:53:39 1 none none:none
none|none none none
0d4c9b9be2
NEW
1824c59f34
NEW
none[none]
da8a48fc3a[0]
Win2K-f 40 of 41 11:24:36 11:24:36 1 none none:none
ASM:Graph
none|none
tElock|
95% none
lines=112
embedded dns
none
trace
53bfe15e91
NEW
73f1082158
NEW
1473091351 [0]
none [0]
WinXP
Win2K-f
0 of 32 00:44:12 21:11:16 4 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=75
embedded dns
lines=90
trace
trace
53bfe15e91
NEW
1473091351 [0] WinXP
Win2K-f
33 of 33 00:25:14 22:22:31 12 none ASM:Graph
tElock| 96% lines=75
embedded dns
trace
d1b3b1de91
NEW
none[none] WinXP 42 of 43 11:18:23 11:18:23 1 none none:none
none|none none none
074de43294
NEW
15e7457e8a
NEW
168aab35a3
NEW
36ea92775a
NEW
901fde8bf5
NEW
aa6d257461
NEW
none[none]
none [none]
60b730b97e[0]
none [none]
none [none]
6aca567868[0]
WinXP 39 of 41 05:16:27 05:16:27 1 none none:none
none:none
ASM:Graph
none:none
none:none
ASM:Graph
none|none
none|none
tElock|
none|none
none|none
Armadillo|
0% none
none
lines=120
embedded dns
none
none
lines=91
none
none
trace
none
none
trace
71e6f60517
NEW
ab4e3226c4
NEW
1ef1781501 [0]
c2d0313e73[0]
Win2K-f
WinXP
40 of 41 07:49:37 16:57:56 2 none ASM:Graph
none:none
Armadillo|
tElock|
lines=91
none
trace
trace
761a66b891
NEW
b469dac5dc [0] Win2K-f 38 of 41 12:44:07 12:44:07 1 none ASM:Graph
tElock| 96% lines=64
embedded dns
trace
074de43294
NEW
901fde8bf5
NEW
c69512a223
NEW
none[none]
none [none]
none [none]
WinXP
Win2K-f
36 of 43 05:16:27 11:50:57 3 none none:none
none:none
none:none
none|none
none|none
none|none
none
none
none
none
none
none
53bfe15e91
NEW
b7082104e4
NEW
1473091351 [0]
c5b49e7b82[0]
Win2K-f 8 of 33 22:22:31 22:22:31 1 none ASM:Graph
ASM:Graph
tElock|
tElock|
100% lines=75
embedded dns
lines=41
trace
trace
75af48afe4
NEW
7a25f9e3cf [0] Win2K-f 22 of 41 10:15:31 10:15:31 1 none ASM:Graph
StarForce| 97% lines=3273
embedded dns
trace
b5804bdd2d
NEW
none[none] WinXP 39 of 43 02:39:19 02:39:19 1 none none:none
none|none none none
074de43294
NEW
15e7457e8a
NEW
none[none]
none [none]
WinXP 7 of 43 05:16:27 05:16:27 1 none none:none
none:none
none|none
none|none
none
none
none
none
7549900329
NEW
4b13f1921b [0] WinXP 41 of 42 11:28:03 11:28:03 1 none none:none
tElock| none trace
074de43294
NEW
15e7457e8a
NEW
168aab35a3
NEW
none[none]
none [none]
60b730b97e[0]
WinXP 31 of 33 05:16:27 05:16:27 1 none none:none
none:none
ASM:Graph
none|none
none|none
tElock|
95% none
none
lines=120
embedded dns
none
none
trace
d031b42d3f
NEW
none[none] WinXP
Win2K-f
38 of 41 04:07:23 21:03:20 3 none none:none
none|none none none
5d445c59d8
NEW
892e12db7b [0] Win2K-f 39 of 41 16:33:52 16:33:52 1 none ASM:Graph
tElock| 96% lines=64
embedded dns
trace
0d4c9b9be2
NEW
none[none] Win2K-f 8 of 43 11:24:36 11:24:36 1 none none:none
none|none none none
0b951c2832
NEW
5fe761661a [0] Win2K-f 32 of 36 02:07:01 02:07:01 1 none ASM:Graph
Armadillo| 0% lines=91 trace
074de43294
NEW
none[none] WinXP
Win2K-f
18 of 43 05:16:27 11:50:57 2 none none:none
none|none none none
9716d7995a
NEW
c3a5354b6f [0] WinXP 35 of 35 00:08:30 00:08:30 1 none ASM:Graph
PolyEnE| 99% lines=68 trace
598fd8ba00
NEW
none[none] Win2K-f 35 of 42 20:33:29 20:33:29 1 none none:none
none|none none none
761a66b891
NEW
98d05c039b
NEW
b469dac5dc [0]
none [none]
Win2K-f 38 of 41 12:44:07 12:44:07 1 none ASM:Graph
none:none
tElock|
none|none
lines=64
embedded dns
none
trace
none
7f60162c2c
NEW
none[0] WinXP 25 of 25 08:56:29 08:56:29 1 none none:none
PolyEnE| 100% lines=93
embedded dns
trace
4e6a61ec5f
NEW
none[none] WinXP 41 of 43 11:54:21 11:54:21 1 none none:none
none|none none none
7549900329
NEW
b71514f095
NEW
4b13f1921b [0]
f6aa3689d1[0]
WinXP 40 of 42 11:28:03 11:28:03 1 none none:none
none:none
tElock|
Armadillo|
none
none
trace
trace
741e3b03b3
NEW
none[0] WinXP 31 of 32 04:59:31 07:19:17 2 none none:none
none|none 32% lines=61 trace
074de43294
NEW
901fde8bf5
NEW
c69512a223
NEW
cdd56d3622
NEW
none[none]
none [none]
none [none]
none [none]
Win2K-f 22 of 43 11:50:57 11:50:57 1 none none:none
none:none
none:none
none:none
none|none
none|none
none|none
none|none
none
none
none
none
none
none
none
none
178b0be402
NEW
c4be4e4a28
NEW
none[none]
none [none]
WinXP 41 of 43 03:53:39 03:53:39 1 none none:none
none:none
none|none
none|none
none
none
none
none
4d91db06f4
NEW
67419c8838 [0] Win2K-f 39 of 42 14:28:52 14:28:52 1 none none:none
Armadillo| none trace
d08635ca20
NEW
none[none] Win2K-f 40 of 41 22:43:01 22:43:01 1 none none:none
none|none none none
5d445c59d8
NEW
8a54950abb
NEW
892e12db7b [0]
f6b9e43917[0]
Win2K-f 37 of 40 16:33:52 16:33:52 1 none ASM:Graph
ASM:Graph
tElock|
Armadillo|
0% lines=64
embedded dns
lines=91
trace
trace
3ae357d17b
NEW
none[0] WinXP 29 of 29 05:15:51 06:09:50 2 none none:none
PolyEnE| 99% lines=73 trace
074de43294
NEW
15e7457e8a
NEW
168aab35a3
NEW
36ea92775a
NEW
901fde8bf5
NEW
aa6d257461
NEW
b4afa1df1d
NEW
none[none]
none [none]
60b730b97e[0]
none [none]
none [none]
6aca567868[0]
none [none]
WinXP 41 of 43 05:16:27 05:16:27 1 none none:none
none:none
ASM:Graph
none:none
none:none
ASM:Graph
none:none
none|none
none|none
tElock|
none|none
none|none
Armadillo|
none|none
none
none
lines=120
embedded dns
none
none
lines=91
none
none
none
trace
none
none
trace
none
7d99b0e910
NEW
none[0] WinXP 26 of 28 09:08:00 20:33:44 5 none none:none
PolyEnE| 99% lines=68 trace
459d2bddeb
NEW
10fac04dd2 [0] Win2K-f 40 of 41 06:20:46 06:20:46 1 none ASM:Graph
none|none 98% lines=546 trace
ab9c4b5f21
NEW
c3c08e6ba6
NEW
d789c8d157
NEW
5fe48b2dcc [0]
none [none]
5f6572479f[0]
WinXP 31 of 33 23:54:33 23:54:33 1 none ASM:Graph
none:none
ASM:Graph
Armadillo|
none|none
PolyEnE|
95% lines=42
none
lines=113
embedded dns
trace
none
trace
598fd8ba00
NEW
b3bf8ce518
NEW
none[none]
none [none]
Win2K-f 39 of 41 20:33:29 20:33:29 1 none none:none
none:none
none|none
none|none
none
none
none
none
4d91db06f4
NEW
80ad2a0006
NEW
67419c8838 [0]
06729732e0[0]
Win2K-f 41 of 42 14:28:52 14:28:52 1 none none:none
none:none
Armadillo|
tElock|
none
none
trace
trace
db03c02347
NEW
none[none] WinXP 40 of 41 18:20:13 18:20:13 1 none none:none
none|none none none
4d7eb70cf5
NEW
none[none] WinXP 39 of 41 17:28:16 17:28:16 1 none none:none
none|none none none
074de43294
NEW
15e7457e8a
NEW
168aab35a3
NEW
36ea92775a
NEW
901fde8bf5
NEW
aa6d257461
NEW
b4afa1df1d
NEW
c69512a223
NEW
ca760bb824
NEW
none[none]
none [none]
60b730b97e[0]
none [none]
none [none]
6aca567868[0]
none [none]
none [none]
none [none]
WinXP 9 of 43 05:16:27 05:16:27 1 none none:none
none:none
ASM:Graph
none:none
none:none
ASM:Graph
none:none
none:none
none:none
none|none
none|none
tElock|
none|none
none|none
Armadillo|
none|none
none|none
none|none
none
none
lines=120
embedded dns
none
none
lines=91
none
none
none
none
none
trace
none
none
trace
none
none
none
1a2c0e6130
NEW
none[0] WinXP 29 of 29 07:48:46 07:48:46 1 none none:none
none|none 33% lines=60 trace
71e6f60517
NEW
1ef1781501 [0] Win2K-f
WinXP
40 of 41 07:49:37 16:57:56 2 none ASM:Graph
Armadillo| 0% lines=91 trace
53bfe15e91
NEW
a08f3b74a4
NEW
1473091351 [0]
none [0]
WinXP
Win2K-f
0 of 33 00:25:14 19:45:16 7 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=75
embedded dns
lines=90
trace
trace
ab9c4b5f21
NEW
5fe48b2dcc [0] WinXP 39 of 41 23:54:33 23:54:33 1 none ASM:Graph
Armadillo| 0% lines=42 trace
d08635ca20
NEW
e2479cbb98
NEW
none[none]
none [none]
Win2K-f 39 of 40 22:43:01 22:43:01 1 none none:none
none:none
none|none
none|none
none
none
none
none
ab9c4b5f21
NEW
c3c08e6ba6
NEW
5fe48b2dcc [0]
none [none]
Win2K-f
WinXP
26 of 43 11:24:36 23:54:33 2 none ASM:Graph
none:none
Armadillo|
none|none
lines=42
none
trace
none
074de43294
NEW
15e7457e8a
NEW
168aab35a3
NEW
36ea92775a
NEW
none[none]
none [none]
60b730b97e[0]
none [none]
WinXP 16 of 43 05:16:27 05:16:27 1 none none:none
none:none
ASM:Graph
none:none
none|none
none|none
tElock|
none|none
none
none
lines=120
embedded dns
none
none
none
trace
none
0b951c2832
NEW
e4ed4df0f0
NEW
5fe761661a [0]
de471fc380[0]
Win2K-f 34 of 36 02:07:01 02:07:01 1 none ASM:Graph
ASM:Graph
Armadillo|
tElock|
96% lines=91
lines=64
embedded dns
trace
trace
5285741560
NEW
60590b8b67 [0] WinXP 37 of 40 22:29:39 22:29:39 1 none ASM:Graph
none|none 55% lines=59 trace
074de43294
NEW
901fde8bf5
NEW
none[none]
none [none]
WinXP
Win2K-f
16 of 43 05:16:27 11:50:57 2 none none:none
none:none
none|none
none|none
none
none
none
none
0c01728b7e
NEW
none[none] Win2K-f 36 of 36 07:31:53 07:31:53 1 none none:none
none|none none none
d031b42d3f
NEW
fa14802705
NEW
none[none]
none [none]
WinXP
Win2K-f
38 of 41 04:07:23 21:03:20 3 none none:none
none:none
none|none
none|none
none
none
none
none