Welcome to the Cyber-TA
Daily Malware Binary DIGEST Summary Page



07 January 2011

All data collection and analyses summarized in this page were 100% AUTO-GENERATED.

DEVELOPERS: Vinod Yegneswaran (SRI), Phillip Porras (SRI), Hassen Saidi (SRI)
Monirul Sharif (Georgia-Tech), Arvind Narayanan (University of Texas at Austin)

The data on this website is provided for research purposes only. It is provided
for your personal use only and is supplied AS IS, WITHOUT WARRANTY OF ANY KIND.
Use or reliance on this data is at your own risk.



Packed
MD5
UnPacket
MD5
Victim
OS
AntiVirus
Hit-Cnt
First
Encounter
Last
Encounter
Freq
Cnt
Behavioral
Clusters
Unpacked
Egg.asm
Packer
Fingerprint
API
Resolution
String
Cnt
Syscall
Trace
20b49c1408
NEW
d486fafc6f
NEW
none[none]
none [none]
Win2K-f 41 of 43 13:43:30 13:43:30 1 none none:none
none:none
none|none
none|none
none
none
none
none
53bfe15e91
NEW
73f1082158
NEW
1473091351 [0]
none [0]
Win2K-f
WinXP
0 of 32 09:58:08 18:55:04 4 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=75
embedded dns
lines=90
trace
trace
8530ce5693
NEW
none[none] WinXP 42 of 43 17:42:44 17:42:44 1 none none:none
none|none none none
53bfe15e91
NEW
1473091351 [0] Win2K-f
WinXP
33 of 33 06:03:21 20:15:24 9 none ASM:Graph
tElock| 96% lines=75
embedded dns
trace
682a384fe9
NEW
none[3] Win2K-f 31 of 41 03:27:24 03:27:24 1 none none:none
none|none none trace
0b095f0cef
NEW
none[none] Win2K-f 40 of 41 15:41:09 15:41:09 1 none none:none
none|none none none
b8e6f4caf7
NEW
fb92b91fe7
NEW
f81eac6379 [0]
fe88ab8768[0]
Win2K-f 39 of 39 08:11:02 08:11:02 1 none none:none
none:none
tElock|
Armadillo|
none
none
trace
trace
866ac9b262
NEW
none[none] WinXP 39 of 41 01:26:25 01:26:25 1 none none:none
none|none none none
71e6f60517
NEW
ab4e3226c4
NEW
1ef1781501 [0]
c2d0313e73[0]
Win2K-f 40 of 41 18:52:32 18:52:32 1 none ASM:Graph
none:none
Armadillo|
tElock|
lines=91
none
trace
trace
07fabc79ef
NEW
none[0] Win2K-f 0 of 32 13:24:24 13:24:24 1 none none:none
Armadillo| 0% lines=90 trace
df17a625ee
NEW
none[0] WinXP 29 of 29 10:36:56 10:36:56 1 none none:none
ASPack| 72% lines=298
embedded dns
trace
53bfe15e91
NEW
97437a0627
NEW
1473091351 [0]
none [none]
Win2K-f 38 of 41 06:03:21 06:03:21 1 none ASM:Graph
none:none
tElock|
none|none
lines=75
embedded dns
none
trace
none
b8e6f4caf7
NEW
f81eac6379 [0] Win2K-f 39 of 40 08:11:02 08:11:02 1 none none:none
tElock| none trace
b502f83a7c
NEW
28f5be93b0 [0] WinXP 32 of 32 01:41:30 02:31:05 2 none ASM:Graph
PolyEnE| 99% lines=73 trace
5d445c59d8
NEW
892e12db7b [0] WinXP 39 of 41 15:03:49 15:03:49 1 none ASM:Graph
tElock| 96% lines=64
embedded dns
trace
38ed850a0e
NEW
46990f37cd [0] Win2K-f 34 of 38 17:07:57 17:07:57 1 none ASM:Graph
Armadillo| 0% lines=91 trace
c19c8a2776
NEW
none[none] WinXP 42 of 43 06:43:25 06:43:25 1 none none:none
none|none none none
5818023061
NEW
none[0] WinXP 32 of 32 06:30:02 06:36:58 2 none none:none
PolyEnE| 99% lines=68 trace
41c4e767de
NEW
none[none] Win2K-f 40 of 43 02:57:42 02:57:42 1 none none:none
none|none none none
99b248336f
NEW
c64bd1a776 [0] Win2K-f 34 of 36 05:34:07 05:34:07 1 none ASM:Graph
Armadillo| 0% lines=91 trace
216ec67841
NEW
none[3] Win2K-f 2 of 37 19:41:50 19:41:50 1 none none:none
StarForce| none trace
10c560fc02
NEW
none[none] Win2K-f 40 of 41 18:48:31 18:48:31 1 none none:none
none|none none none
41c4e767de
NEW
e46acdf784
NEW
none[none]
none [none]
Win2K-f 41 of 42 02:57:42 02:57:42 1 none none:none
none:none
none|none
none|none
none
none
none
none
20b49c1408
NEW
none[none] Win2K-f 39 of 40 13:43:30 13:43:30 1 none none:none
none|none none none
218ce30f5c
NEW
none[3] Win2K-f 18 of 35 23:52:37 23:52:37 1 none none:none
none|none none trace
7b57508def
NEW
none[none] WinXP 0 of 0 14:38:23 14:38:23 1 none none:none
none|none none none
d11b1f56f9
NEW
none[none] WinXP 40 of 41 12:00:40 12:00:40 1 none none:none
none|none none none
af98e8e637
NEW
none[none] Win2K-f 2 of 43 22:59:58 22:59:58 1 none none:none
none|none none none
b55df243e2
NEW
none[none] Win2K-f 40 of 43 00:09:51 00:09:51 1 none none:none
none|none none none
bcf30127be
NEW
none[none] WinXP 42 of 43 03:30:36 03:30:36 1 none none:none
none|none none none
500518ab72
NEW
none[none] WinXP 42 of 43 04:52:40 04:52:40 1 none none:none
none|none none none
c49ada611f
NEW
e9a389fd5b
NEW
none[none]
none [none]
Win2K-f 40 of 43 04:45:21 04:45:21 1 none none:none
none:none
none|none
none|none
none
none
none
none
4410d5ed68
NEW
none[none] WinXP 39 of 43 22:08:15 22:08:15 1 none none:none
none|none none none
7f60162c2c
NEW
none[0] WinXP 25 of 25 03:58:08 03:58:08 1 none none:none
PolyEnE| 100% lines=93
embedded dns
trace
c49ada611f
NEW
none[none] Win2K-f 41 of 42 04:45:21 04:45:21 1 none none:none
none|none none none
43b8f21924
NEW
none[3] Win2K-f 32 of 41 12:28:57 12:28:57 1 none none:none
none|none none trace
741e3b03b3
NEW
none[0] WinXP 31 of 32 00:24:44 00:24:44 1 none none:none
none|none 32% lines=61 trace
10c560fc02
NEW
1b8d146832
NEW
none[none]
none [none]
Win2K-f 40 of 41 18:48:31 18:48:31 1 none none:none
none:none
none|none
none|none
none
none
none
none
68b5e580f0
NEW
none[none] Win2K-f 38 of 41 16:13:40 16:13:40 1 none none:none
none|none none none
831f4ee0a7
NEW
none[0] WinXP 29 of 29 20:03:54 22:27:57 2 none none:none
none|none 33% lines=60 trace
d08635ca20
NEW
none[none] Win2K-f 40 of 41 22:25:56 22:25:56 1 none none:none
none|none none none
5d445c59d8
NEW
8a54950abb
NEW
892e12db7b [0]
f6b9e43917[0]
WinXP 37 of 40 15:03:49 15:03:49 1 none ASM:Graph
ASM:Graph
tElock|
Armadillo|
0% lines=64
embedded dns
lines=91
trace
trace
0afff56a4c
NEW
none[none] Win2K-f 41 of 43 15:32:20 15:32:20 1 none none:none
none|none none none
34cd9e2f76
NEW
none[none] Win2K-f 37 of 41 11:45:55 11:45:55 1 none none:none
none|none none none
68b5e580f0
NEW
b475ce7c0b
NEW
none[none]
none [none]
Win2K-f 38 of 41 16:13:40 16:13:40 1 none none:none
none:none
none|none
none|none
none
none
none
none
2bc8f15054
NEW
none[none] Win2K-f 40 of 41 03:07:18 03:07:18 1 none none:none
none|none none none
e9fcd6f257
NEW
2e05bc2272 [0] WinXP 33 of 35 08:26:50 08:26:50 1 none ASM:Graph
PolyEnE| 100% lines=68 trace
0563ea7af7
NEW
7e1532574f
NEW
bc2e11a802 [0]
e6930769d0[0]
Win2K-f 39 of 41 10:31:33 10:31:33 1 none ASM:Graph
ASM:Graph
tElock|
Armadillo|
0% lines=65
embedded dns
lines=91
trace
trace
7d99b0e910
NEW
none[0] WinXP 26 of 28 00:35:05 22:23:13 9 none none:none
PolyEnE| 99% lines=68 trace
9f59b22e8a
NEW
ab9c4b5f21
NEW
d789c8d157
NEW
none[none]
5fe48b2dcc[0]
5f6572479f[0]
WinXP 31 of 33 08:33:34 08:33:34 1 none none:none
ASM:Graph
ASM:Graph
none|none
Armadillo|
PolyEnE|
95% none
lines=42
lines=113
embedded dns
none
trace
trace
4aa9b2104a
NEW
none[none] WinXP 42 of 42 09:07:58 09:07:58 1 none none:none
none|none none none
2bc8f15054
NEW
9956124c58
NEW
none[none]
none [none]
Win2K-f 41 of 43 03:07:18 03:07:18 1 none none:none
none:none
none|none
none|none
none
none
none
none
71e6f60517
NEW
1ef1781501 [0] Win2K-f 40 of 41 18:52:32 18:52:32 1 none ASM:Graph
Armadillo| 0% lines=91 trace
218ce30f5c
NEW
a08f3b74a4
NEW
none[3]
none [0]
WinXP
Win2K-f
0 of 33 06:10:28 23:52:37 4 none none:none
none:none
none|none
Armadillo|
0% none
lines=90
trace
trace
9f59b22e8a
NEW
ab9c4b5f21
NEW
none[none]
5fe48b2dcc[0]
WinXP 39 of 41 08:33:34 08:33:34 1 none none:none
ASM:Graph
none|none
Armadillo|
0% none
lines=42
none
trace
d08635ca20
NEW
e2479cbb98
NEW
none[none]
none [none]
Win2K-f 39 of 40 22:25:56 22:25:56 1 none none:none
none:none
none|none
none|none
none
none
none
none
38ed850a0e
NEW
b9297745a1
NEW
46990f37cd [0]
4294884d84[0]
Win2K-f 35 of 38 17:07:57 17:07:57 1 none ASM:Graph
ASM:Graph
Armadillo|
tElock|
96% lines=91
lines=64
embedded dns
trace
trace
ce28648035
NEW
126d2f4655 [0] Win2K-f 34 of 39 06:21:19 06:21:19 1 none ASM:Graph
none|none 98% lines=546 trace
34cd9e2f76
NEW
376a6b6ecd
NEW
none[none]
none [none]
Win2K-f 40 of 41 11:45:55 11:45:55 1 none none:none
none:none
none|none
none|none
none
none
none
none
34cd9e2f76
NEW
376a6b6ecd
NEW
9f59b22e8a
NEW
none[none]
none [none]
none [none]
Win2K-f
WinXP
13 of 43 05:34:07 11:45:55 3 none none:none
none:none
none:none
none|none
none|none
none|none
none
none
none
none
none
none
8a2553433c
NEW
none[none] WinXP 38 of 42 05:36:24 05:36:24 1 none none:none
none|none none none
99b248336f
NEW
9d677c3f70
NEW
c64bd1a776 [0]
77e75ff10f[0]
Win2K-f 29 of 32 05:34:07 05:34:07 1 none ASM:Graph
ASM:Graph
Armadillo|
tElock|
95% lines=91
lines=120
embedded dns
trace
trace
0563ea7af7
NEW
bc2e11a802 [0] Win2K-f 39 of 41 10:31:33 10:31:33 1 none ASM:Graph
tElock| 96% lines=65
embedded dns
trace