Welcome to the Cyber-TA
Daily Malware Binary DIGEST Summary Page



18 October 2010

All data collection and analyses summarized in this page were 100% AUTO-GENERATED.

DEVELOPERS: Vinod Yegneswaran (SRI), Phillip Porras (SRI), Hassen Saidi (SRI)
Monirul Sharif (Georgia-Tech), Arvind Narayanan (University of Texas at Austin)

The data on this website is provided for research purposes only. It is provided
for your personal use only and is supplied AS IS, WITHOUT WARRANTY OF ANY KIND.
Use or reliance on this data is at your own risk.



Packed
MD5
UnPacket
MD5
Victim
OS
AntiVirus
Hit-Cnt
First
Encounter
Last
Encounter
Freq
Cnt
Behavioral
Clusters
Unpacked
Egg.asm
Packer
Fingerprint
API
Resolution
String
Cnt
Syscall
Trace
04a4c43fe4
NEW
a29ce4222c
NEW
none[none]
none [none]
Win2K-f 36 of 40 15:55:31 15:55:31 1 none none:none
none:none
none|none
none|none
none
none
none
none
f25d314cc9
NEW
none[none] WinXP 42 of 43 10:07:32 10:07:32 1 none none:none
none|none none none
293a1b92c8
NEW
none[none] WinXP 41 of 42 06:18:08 06:18:08 1 none none:none
none|none none none
218ce30f5c
NEW
73f1082158
NEW
none[3]
none [0]
WinXP
Win2K-f
0 of 32 00:52:49 23:55:14 6 none none:none
none:none
none|none
Armadillo|
0% none
lines=90
trace
trace
377ae8c2fd
NEW
none[none] Win2K-f 40 of 42 13:49:38 13:49:38 1 none none:none
none|none none none
53bfe15e91
NEW
1473091351 [0] WinXP
Win2K-f
33 of 33 00:52:49 19:09:55 10 none ASM:Graph
tElock| 96% lines=75
embedded dns
trace
71e6f60517
NEW
ab4e3226c4
NEW
1ef1781501 [0]
c2d0313e73[0]
WinXP
Win2K-f
40 of 41 01:27:45 18:46:19 2 none ASM:Graph
none:none
Armadillo|
tElock|
lines=91
none
trace
trace
53bfe15e91
NEW
b7082104e4
NEW
1473091351 [0]
c5b49e7b82[0]
Win2K-f 8 of 33 11:59:22 19:09:55 2 none ASM:Graph
ASM:Graph
tElock|
tElock|
100% lines=75
embedded dns
lines=41
trace
trace
6e6fde936f
NEW
none[none] WinXP 41 of 43 02:29:30 05:00:01 2 none none:none
none|none none none
986b59708d
NEW
none[0] WinXP 29 of 29 01:33:18 20:49:39 2 none none:none
PolyEnE| 100% lines=57 trace
88f3393e20
NEW
none[none] WinXP 42 of 43 05:00:45 05:00:45 1 none none:none
none|none none none
9bdd2c95b1
NEW
d1bbd693ba [0] Win2K-f 39 of 41 04:24:10 04:24:10 1 none ASM:Graph
Armadillo| 0% lines=91 trace
377ae8c2fd
NEW
7cfdf42414
NEW
none[none]
none [none]
Win2K-f 40 of 42 13:49:38 13:49:38 1 none none:none
none:none
none|none
none|none
none
none
none
none
a5ceb6c29d
NEW
d64cd9d18b [0] WinXP 40 of 41 03:21:44 03:21:44 1 none ASM:Graph
tElock| 100% lines=42 trace
b502f83a7c
NEW
28f5be93b0 [0] WinXP 32 of 32 01:06:09 08:17:52 2 none ASM:Graph
PolyEnE| 99% lines=73 trace
d031b42d3f
NEW
none[none] WinXP 38 of 41 17:10:22 17:10:22 1 none none:none
none|none none none
5c6df5141d
NEW
none[none] WinXP 41 of 41 02:27:43 03:38:36 4 none none:none
none|none none none
7834db97f9
NEW
none[none] WinXP 41 of 42 10:04:09 10:04:09 1 none none:none
none|none none none
38ed850a0e
NEW
46990f37cd [0] WinXP 34 of 38 13:57:55 13:57:55 1 none ASM:Graph
Armadillo| 0% lines=91 trace
9bdd2c95b1
NEW
cd456ac095
NEW
d1bbd693ba [0]
d75caee680[0]
Win2K-f 39 of 40 04:24:10 04:24:10 1 none ASM:Graph
ASM:Graph
Armadillo|
tElock|
96% lines=91
lines=64
embedded dns
trace
trace
218ce30f5c
NEW
none[3] Win2K-f 18 of 35 23:55:14 23:55:14 1 none none:none
none|none none trace
9716d7995a
NEW
c3a5354b6f [0] WinXP 35 of 35 23:06:03 23:06:03 1 none ASM:Graph
PolyEnE| 99% lines=68 trace
a3b217d38a
NEW
e453911822
NEW
f87b27ab2c [0]
86954ebe4e[0]
Win2K-f 3 of 41 19:06:38 19:06:38 1 none ASM:Graph
ASM:Graph
tElock|
Armadillo|
0% lines=64
embedded dns
lines=90
trace
trace
a5ceb6c29d
NEW
adadfc0e1c
NEW
d64cd9d18b [0]
0f57439d82[0]
WinXP 38 of 41 03:21:44 03:21:44 1 none ASM:Graph
ASM:Graph
tElock|
tElock|
96% lines=42
lines=64
embedded dns
trace
trace
fe13a14d2a
NEW
none[none] WinXP 40 of 43 01:40:39 01:40:39 1 none none:none
none|none none none
4c3df24b32
NEW
none[0] Win2K-f 0 of 33 12:27:16 12:27:16 1 none none:none
Armadillo| 0% lines=90 trace
7f60162c2c
NEW
none[0] WinXP 25 of 25 13:30:13 13:30:13 1 none none:none
PolyEnE| 100% lines=93
embedded dns
trace
cb7a1c872d
NEW
none[none] WinXP 42 of 43 12:13:10 12:13:10 1 none none:none
none|none none none
aad01847fa
NEW
none[none] WinXP 42 of 43 07:28:55 07:28:55 1 none none:none
none|none none none
b71514f095
NEW
f6aa3689d1 [0] Win2K-f 40 of 42 12:17:06 12:17:06 1 none none:none
Armadillo| none trace
3f07e53043
NEW
none[none] WinXP 40 of 43 08:48:47 08:48:47 1 none none:none
none|none none none
ba1a7eaa9a
NEW
none[none] WinXP 41 of 42 06:47:49 06:47:49 1 none none:none
none|none none none
741e3b03b3
NEW
none[0] WinXP 31 of 32 08:04:49 08:04:49 1 none none:none
none|none 32% lines=61 trace
4d91db06f4
NEW
67419c8838 [0] Win2K-f 39 of 42 00:08:43 00:08:43 1 none none:none
Armadillo| none trace
86aaaf29f8
NEW
none[none] WinXP 42 of 43 09:38:19 09:38:19 1 none none:none
none|none none none
1e12f5145a
NEW
f208493e65
NEW
617af909de [0]
5100adb4f9[0]
WinXP 40 of 41 09:36:18 09:36:18 1 none ASM:Graph
ASM:Graph
Armadillo|
tElock|
96% lines=91
lines=64
embedded dns
trace
trace
7d99b0e910
NEW
none[0] WinXP 26 of 28 00:10:55 22:15:18 8 none none:none
PolyEnE| 99% lines=68 trace
eda3b7766c
NEW
7556343561 [0] WinXP 40 of 41 05:01:22 05:01:22 1 none ASM:Graph
PolyEnE| 100% lines=68 trace
57ce4acac2
NEW
none[0] Win2K-f 0 of 33 01:42:21 01:42:21 1 none none:none
Armadillo| 0% lines=90 trace
4d91db06f4
NEW
80ad2a0006
NEW
67419c8838 [0]
06729732e0[0]
Win2K-f 41 of 42 00:08:43 00:08:43 1 none none:none
none:none
Armadillo|
tElock|
none
none
trace
trace
25f028ede5
NEW
63f6d9ae6d
NEW
none[none]
none [none]
Win2K-f 39 of 43 04:48:06 04:48:06 1 none none:none
none:none
none|none
none|none
none
none
none
none
04a4c43fe4
NEW
none[none] Win2K-f 32 of 35 15:55:31 15:55:31 1 none none:none
none|none none none
71e6f60517
NEW
1ef1781501 [0] WinXP
Win2K-f
40 of 41 01:27:45 18:46:19 2 none ASM:Graph
Armadillo| 0% lines=91 trace
1a2c0e6130
NEW
none[0] WinXP 29 of 29 05:16:21 08:35:49 2 none none:none
none|none 33% lines=60 trace
53bfe15e91
NEW
a08f3b74a4
NEW
1473091351 [0]
none [0]
WinXP 0 of 33 02:57:57 07:35:10 2 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=75
embedded dns
lines=90
trace
trace
1e12f5145a
NEW
617af909de [0] WinXP 39 of 41 09:36:18 09:36:18 1 none ASM:Graph
Armadillo| 0% lines=91 trace
d20f157117
NEW
738f555183 [0] WinXP 34 of 34 21:25:33 21:25:33 1 none ASM:Graph
PolyEnE| 99% lines=68 trace
25f028ede5
NEW
none[none] Win2K-f 40 of 43 04:48:06 04:48:06 1 none none:none
none|none none none
3df86eba85
NEW
f0c55dd699 [0] WinXP 41 of 42 07:44:43 07:44:43 1 none none:none
PolyEnE| none trace
a3b217d38a
NEW
f87b27ab2c [0] Win2K-f 38 of 41 19:06:38 19:06:38 1 none ASM:Graph
tElock| 96% lines=64
embedded dns
trace
38ed850a0e
NEW
b9297745a1
NEW
46990f37cd [0]
4294884d84[0]
WinXP 35 of 38 13:57:55 13:57:55 1 none ASM:Graph
ASM:Graph
Armadillo|
tElock|
96% lines=91
lines=64
embedded dns
trace
trace
ae099c2af9
NEW
none[none] Win2K-f 37 of 42 10:31:27 10:31:27 1 none none:none
none|none none none
5ee09ea34e
NEW
none[none] WinXP 38 of 39 10:46:38 10:46:38 1 none none:none
none|none none none
8571f7513c
NEW
none[none] WinXP 42 of 43 20:25:19 20:25:19 1 none none:none
none|none none none
5285741560
NEW
60590b8b67 [0] WinXP 37 of 40 05:07:04 05:07:04 1 none ASM:Graph
none|none 55% lines=59 trace
d031b42d3f
NEW
fa14802705
NEW
none[none]
none [none]
WinXP 38 of 41 17:10:22 17:10:22 1 none none:none
none:none
none|none
none|none
none
none
none
none
0725f90fa5
NEW
none[none] WinXP 42 of 43 08:36:40 08:36:40 1 none none:none
none|none none none