Welcome to the Cyber-TA
Daily Malware Binary DIGEST Summary Page



18 November 2010

All data collection and analyses summarized in this page were 100% AUTO-GENERATED.

DEVELOPERS: Vinod Yegneswaran (SRI), Phillip Porras (SRI), Hassen Saidi (SRI)
Monirul Sharif (Georgia-Tech), Arvind Narayanan (University of Texas at Austin)

The data on this website is provided for research purposes only. It is provided
for your personal use only and is supplied AS IS, WITHOUT WARRANTY OF ANY KIND.
Use or reliance on this data is at your own risk.



Packed
MD5
UnPacket
MD5
Victim
OS
AntiVirus
Hit-Cnt
First
Encounter
Last
Encounter
Freq
Cnt
Behavioral
Clusters
Unpacked
Egg.asm
Packer
Fingerprint
API
Resolution
String
Cnt
Syscall
Trace
d2b40c91a1
NEW
fbaa414397 [0] Win2K-f 37 of 41 04:02:32 04:02:32 1 none ASM:Graph
Armadillo| 0% lines=91 trace
12698a7c11
NEW
none[none] WinXP 36 of 43 02:49:47 02:49:47 1 none none:none
none|none none none
10759405e0
NEW
292d343248 [0] Win2K-f 38 of 41 12:20:53 12:20:53 1 none ASM:Graph
Armadillo| 0% lines=91 trace
a2f2d6ce34
NEW
none[none] WinXP 42 of 43 08:21:59 08:21:59 1 none none:none
none|none none none
278df56902
NEW
none[none] Win2K-f 29 of 43 05:56:47 21:36:14 4 none none:none
none|none none none
53bfe15e91
NEW
73f1082158
NEW
1473091351 [0]
none [0]
Win2K-f
WinXP
0 of 32 04:01:19 19:02:18 3 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=75
embedded dns
lines=90
trace
trace
40ebcd906a
NEW
none[none] WinXP 41 of 43 06:34:53 11:21:42 2 none none:none
none|none none none
8e8fff0d13
NEW
none[none] WinXP 39 of 41 08:13:41 08:13:41 1 none none:none
none|none none none
0441fdb31a
NEW
09a070e67a
NEW
278df56902
NEW
3e90ae8532
NEW
827e44840a
NEW
bea8cb1865
NEW
d802244b8f
NEW
fac78fde16
NEW
none[none]
none [none]
none [none]
none [none]
none [none]
154de51a66[0]
none [none]
882896ab05[0]
Win2K-f 35 of 36 05:56:47 20:45:25 2 none none:none
none:none
none:none
none:none
none:none
ASM:Graph
none:none
ASM:Graph
none|none
none|none
none|none
none|none
none|none
Armadillo|
none|none
tElock|
96% none
none
none
none
none
lines=91
none
lines=126
embedded dns
none
none
none
none
none
trace
none
trace
53bfe15e91
NEW
1473091351 [0] Win2K-f
WinXP
33 of 33 03:17:33 21:54:39 13 none ASM:Graph
tElock| 96% lines=75
embedded dns
trace
1511a3f219
NEW
none[none] WinXP 42 of 43 09:41:25 09:41:25 1 none none:none
none|none none none
278df56902
NEW
36bb7118f0
NEW
3e90ae8532
NEW
40306feecb
NEW
827e44840a
NEW
b24dbb4c37
NEW
none[none]
none [none]
none [none]
none [none]
none [none]
none [none]
Win2K-f 14 of 43 06:13:36 06:13:36 1 none none:none
none:none
none:none
none:none
none:none
none:none
none|none
none|none
none|none
none|none
none|none
none|none
none
none
none
none
none
none
none
none
none
none
none
none
53bfe15e91
NEW
b7082104e4
NEW
1473091351 [0]
c5b49e7b82[0]
WinXP 8 of 33 21:54:39 21:54:39 1 none ASM:Graph
ASM:Graph
tElock|
tElock|
100% lines=75
embedded dns
lines=41
trace
trace
6e6fde936f
NEW
none[none] WinXP 41 of 43 22:17:08 22:17:08 1 none none:none
none|none none none
986b59708d
NEW
none[0] WinXP 29 of 29 04:26:30 04:26:30 1 none none:none
PolyEnE| 100% lines=57 trace
83f6cb959d
NEW
445f56b6dd [0] Win2K-f 36 of 41 06:39:13 06:39:13 1 none none:none
StarForce| none trace
745f3ba11e
NEW
none[none] WinXP 40 of 43 13:20:49 13:20:49 1 none none:none
none|none none none
5c6df5141d
NEW
none[none] WinXP 41 of 41 07:06:52 07:06:52 1 none none:none
none|none none none
38ed850a0e
NEW
46990f37cd [0] WinXP 34 of 38 12:40:27 12:40:27 1 none ASM:Graph
Armadillo| 0% lines=91 trace
0e486d1271
NEW
none[none] WinXP 35 of 37 16:14:06 16:14:06 1 none none:none
none|none none none
278df56902
NEW
3e90ae8532
NEW
none[none]
none [none]
Win2K-f 15 of 43 05:56:47 21:36:14 4 none none:none
none:none
none|none
none|none
none
none
none
none
f8b57d78bf
NEW
none[none] WinXP 39 of 40 14:36:34 14:36:34 1 none none:none
none|none none none
420b1a76c4
NEW
none[none] WinXP 42 of 43 07:39:33 07:39:33 1 none none:none
none|none none none
4c3df24b32
NEW
none[0] Win2K-f 0 of 33 21:40:57 21:40:57 1 none none:none
Armadillo| 0% lines=90 trace
7f60162c2c
NEW
none[0] WinXP 25 of 25 09:27:06 09:27:06 1 none none:none
PolyEnE| 100% lines=93
embedded dns
trace
aad01847fa
NEW
none[none] WinXP 42 of 43 03:35:06 07:16:30 2 none none:none
none|none none none
278df56902
NEW
3e90ae8532
NEW
827e44840a
NEW
none[none]
none [none]
none [none]
Win2K-f 14 of 43 05:56:47 21:36:14 4 none none:none
none:none
none:none
none|none
none|none
none|none
none
none
none
none
none
none
09a070e67a
NEW
278df56902
NEW
3e90ae8532
NEW
40306feecb
NEW
827e44840a
NEW
9d85d68cde
NEW
none[none]
none [none]
none [none]
none [none]
none [none]
none [none]
Win2K-f 12 of 43 05:56:47 05:56:47 1 none none:none
none:none
none:none
none:none
none:none
none:none
none|none
none|none
none|none
none|none
none|none
none|none
none
none
none
none
none
none
none
none
none
none
none
none
278df56902
NEW
36bb7118f0
NEW
3e90ae8532
NEW
40306feecb
NEW
827e44840a
NEW
b24dbb4c37
NEW
b4afa1df1d
NEW
c05a0a77d7
NEW
none[none]
none [none]
none [none]
none [none]
none [none]
none [none]
none [none]
none [none]
Win2K-f 30 of 42 06:13:36 06:13:36 1 none none:none
none:none
none:none
none:none
none:none
none:none
none:none
none:none
none|none
none|none
none|none
none|none
none|none
none|none
none|none
none|none
none
none
none
none
none
none
none
none
none
none
none
none
none
none
none
none
741e3b03b3
NEW
none[0] WinXP 31 of 32 03:50:45 03:50:45 1 none none:none
none|none 32% lines=61 trace
1e12f5145a
NEW
f208493e65
NEW
617af909de [0]
5100adb4f9[0]
WinXP 40 of 41 19:00:26 19:00:26 1 none ASM:Graph
ASM:Graph
Armadillo|
tElock|
96% lines=91
lines=64
embedded dns
trace
trace
0441fdb31a
NEW
09a070e67a
NEW
278df56902
NEW
3e90ae8532
NEW
827e44840a
NEW
bea8cb1865
NEW
none[none]
none [none]
none [none]
none [none]
none [none]
154de51a66[0]
Win2K-f 32 of 36 05:56:47 20:45:25 2 none none:none
none:none
none:none
none:none
none:none
ASM:Graph
none|none
none|none
none|none
none|none
none|none
Armadillo|
0% none
none
none
none
none
lines=91
none
none
none
none
none
trace
cde003c748
NEW
none[none] WinXP 42 of 43 12:28:33 12:28:33 1 none none:none
none|none none none
751685117f
NEW
none[none] WinXP 40 of 42 03:10:35 03:10:35 1 none none:none
none|none none none
278df56902
NEW
36bb7118f0
NEW
3e90ae8532
NEW
40306feecb
NEW
827e44840a
NEW
b24dbb4c37
NEW
b4afa1df1d
NEW
none[none]
none [none]
none [none]
none [none]
none [none]
none [none]
none [none]
Win2K-f 41 of 43 06:13:36 06:13:36 1 none none:none
none:none
none:none
none:none
none:none
none:none
none:none
none|none
none|none
none|none
none|none
none|none
none|none
none|none
none
none
none
none
none
none
none
none
none
none
none
none
none
none
0563ea7af7
NEW
7e1532574f
NEW
bc2e11a802 [0]
e6930769d0[0]
Win2K-f 39 of 41 07:35:55 07:35:55 1 none ASM:Graph
ASM:Graph
tElock|
Armadillo|
0% lines=65
embedded dns
lines=91
trace
trace
7d99b0e910
NEW
none[0] WinXP 26 of 28 04:42:02 22:33:11 4 none none:none
PolyEnE| 99% lines=68 trace
10759405e0
NEW
d08e00dfaf
NEW
292d343248 [0]
854c49d8c4[0]
Win2K-f 39 of 41 12:20:53 12:20:53 1 none ASM:Graph
ASM:Graph
Armadillo|
tElock|
96% lines=91
lines=64
embedded dns
trace
trace
8fc7967af9
NEW
none[none] WinXP 42 of 43 05:02:00 05:49:49 2 none none:none
none|none none none
278df56902
NEW
36bb7118f0
NEW
3e90ae8532
NEW
40306feecb
NEW
none[none]
none [none]
none [none]
none [none]
Win2K-f 30 of 43 05:56:47 06:13:36 2 none none:none
none:none
none:none
none:none
none|none
none|none
none|none
none|none
none
none
none
none
none
none
none
none
53bfe15e91
NEW
57ce4acac2
NEW
1473091351 [0]
none [0]
Win2K-f
WinXP
0 of 33 05:35:11 05:54:59 2 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=75
embedded dns
lines=90
trace
trace
0441fdb31a
NEW
none[none] Win2K-f 11 of 41 20:45:25 20:45:25 1 none none:none
none|none none none
6455904435
NEW
none[none] WinXP 38 of 41 14:05:44 14:05:44 1 none none:none
none|none none none
1a2c0e6130
NEW
none[0] WinXP 29 of 29 21:35:39 21:35:39 1 none none:none
none|none 33% lines=60 trace
0441fdb31a
NEW
09a070e67a
NEW
278df56902
NEW
3e90ae8532
NEW
827e44840a
NEW
bea8cb1865
NEW
d802244b8f
NEW
none[none]
none [none]
none [none]
none [none]
none [none]
154de51a66[0]
none [none]
Win2K-f 15 of 43 05:56:47 20:45:25 2 none none:none
none:none
none:none
none:none
none:none
ASM:Graph
none:none
none|none
none|none
none|none
none|none
none|none
Armadillo|
none|none
none
none
none
none
none
lines=91
none
none
none
none
none
none
trace
none
53bfe15e91
NEW
a08f3b74a4
NEW
1473091351 [0]
none [0]
Win2K-f
WinXP
0 of 33 03:17:33 21:52:33 6 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=75
embedded dns
lines=90
trace
trace
1e12f5145a
NEW
617af909de [0] WinXP 39 of 41 19:00:26 19:00:26 1 none ASM:Graph
Armadillo| 0% lines=91 trace
278df56902
NEW
36bb7118f0
NEW
none[none]
none [none]
Win2K-f 25 of 41 06:13:36 06:13:36 1 none none:none
none:none
none|none
none|none
none
none
none
none
3df86eba85
NEW
f0c55dd699 [0] WinXP 41 of 42 17:30:36 17:38:35 2 none none:none
PolyEnE| none trace
d20f157117
NEW
738f555183 [0] WinXP 34 of 34 02:30:56 13:01:19 4 none ASM:Graph
PolyEnE| 99% lines=68 trace
b8076e37ae
NEW
52953fed05 [0] Win2K-f 28 of 41 02:59:27 02:59:27 1 none none:none
StarForce| none trace
38ed850a0e
NEW
b9297745a1
NEW
46990f37cd [0]
4294884d84[0]
WinXP 35 of 38 12:40:27 12:40:27 1 none ASM:Graph
ASM:Graph
Armadillo|
tElock|
96% lines=91
lines=64
embedded dns
trace
trace
09a070e67a
NEW
278df56902
NEW
3e90ae8532
NEW
40306feecb
NEW
827e44840a
NEW
9d85d68cde
NEW
bea8cb1865
NEW
d802244b8f
NEW
e676b20138
NEW
none[none]
none [none]
none [none]
none [none]
none [none]
none [none]
154de51a66[0]
none [none]
none [none]
Win2K-f 1 of 43 05:56:47 05:56:47 1 none none:none
none:none
none:none
none:none
none:none
none:none
ASM:Graph
none:none
none:none
none|none
none|none
none|none
none|none
none|none
none|none
Armadillo|
none|none
none|none
none
none
none
none
none
none
lines=91
none
none
none
none
none
none
none
none
trace
none
none
0441fdb31a
NEW
09a070e67a
NEW
none[none]
none [none]
Win2K-f 25 of 43 05:56:47 20:45:25 2 none none:none
none:none
none|none
none|none
none
none
none
none
0563ea7af7
NEW
bc2e11a802 [0] Win2K-f 39 of 41 07:35:55 07:35:55 1 none ASM:Graph
tElock| 96% lines=65
embedded dns
trace