Welcome to the Cyber-TA
Daily Malware Binary DIGEST Summary Page



30 May 2008

All data collection and analyses summarized in this page were 100% AUTO-GENERATED.

DEVELOPERS: Vinod Yegneswaran (SRI), Phillip Porras (SRI), Hassen Saidi (SRI)
Monirul Sharif (Georgia-Tech), Arvind Narayanan (University of Texas at Austin)

The data on this website is provided for research purposes only. It is provided
for your personal use only and is supplied AS IS, WITHOUT WARRANTY OF ANY KIND.
Use or reliance on this data is at your own risk.



Packed
MD5
UnPacket
MD5
Victim
OS
AntiVirus
Hit-Cnt
First
Encounter
Last
Encounter
Freq
Cnt
Behavioral
Clusters
Unpacked
Egg.asm
Packer
Fingerprint
API
Resolution
String
Cnt
Syscall
Trace
a56ca31c9c
NEW
54161f9b6a [0] WinXP 30 of 31 18:18:41 18:18:41 1 none none:none
PEQuake| none trace
f0e02bee5f
[Firefox: 8 hits: 04-27 to 05-30]
79dc713bfc [0] Win2K-f 22 of 31 09:16:43 09:16:43 1 none none:none
none|none none trace
05ec072edf
[Firefox: 4 hits: 05-30 to 06-01]
05ec072edf [1] Win2K-f 3 of 32 22:12:57 22:15:05 2 none ASM:Graph
StarForce| 46% lines=86 trace
0befa50d95
NEW
0befa50d95 [1] Win2K-f 21 of 31 09:42:32 09:42:32 1 none ASM:Graph
StarForce| 50% lines=6 trace
859e6786f0
[Firefox: 2 hits: 05-30 to 05-31]
8a20bd6e7b
NEW
859e6786f0 [1]
none [4]
Win2K-f 14 of 32 20:06:36 20:06:36 1 none ASM:Graph
none:none
StarForce|
FSG|
lines=95
none
trace
trace
859e6786f0
[Firefox: 2 hits: 05-30 to 05-31]
859e6786f0 [1] Win2K-f 8 of 31 20:06:36 20:06:36 1 none ASM:Graph
StarForce| 45% lines=95 trace
3f5ec58a6b
[Firefox:26 hits: 04-24 to 06-02]
4a77430a59 [0] WinXP 30 of 32 05:33:05 05:33:05 1 none ASM:Graph
PolyEnE| 99% lines=70 trace
d6df3972a0
[Firefox:216 hits: 05-02 to 05-30]
39eeef52a4 [0] WinXP 29 of 29 07:09:36 07:09:36 1 none ASM:Graph
PolyEnE| 100% lines=65 trace
996c9c3a01
[Firefox: 7 hits: 04-03 to 05-30]
4b6453fcf3 [0] Win2K-f 32 of 32 04:15:08 04:15:08 1 none none:none
MEW| none trace
8eeb4f73ba
NEW
551c3f8505 [0] Win2K-f 23 of 31 05:50:18 05:50:18 1 none none:none
none|none none trace
96ee6e8255
[Firefox: 2 hits: 04-04 to 05-30]
301f2b7bf3 [0] WinXP 31 of 32 10:13:36 10:13:36 1 none ASM:Graph
PolyEnE| 99% lines=68 trace
75fcd4fc07
NEW
73a7fa699a [0] WinXP 25 of 31 10:03:17 10:03:17 1 none none:none
none|none none trace
382279b44f
[Firefox: 7 hits: 05-22 to 06-01]
049e62d55b [0] Win2K-f 19 of 32 06:06:41 06:06:41 1 none none:none
Armadillo| none trace
07177edf82
[Firefox: 3 hits: 05-17 to 05-30]
ca4413b3c2 [0] WinXP 0 of 0 01:46:41 01:46:41 1 none none:none
PolyEnE| none trace
fd57febe23
[Firefox: 4 hits: 05-19 to 06-01]
none[4] WinXP 31 of 32 01:18:45 01:18:47 2 none none:none
PolyEnE| none trace
cd05c2e205
[Firefox: 3 hits: 05-01 to 05-30]
2a2b48cd59 [0] Win2K-f 26 of 31 08:59:56 08:59:56 1 none none:none
none|none none trace
18b909f0ea
[Firefox: 2 hits: 05-01 to 05-30]
none[4] Win2K-f 30 of 32 09:57:28 09:57:28 1 none none:none
none|none none trace
c41adb0708
NEW
7f05b8e623 [0] Win2K-f 27 of 31 09:21:17 09:21:17 1 none none:none
ASProtect| none trace
7f60162c2c
[Firefox:1311 hits: 12-31 to 06-02]
1aad8e4632 [0] WinXP 25 of 25 16:33:50 17:54:17 2 none ASM:Graph
PolyEnE| 100% lines=93
embedded dns
trace
9a52679900
NEW
9a52679900 [1] Win2K-f 4 of 31 06:04:20 06:04:20 1 none ASM:Graph
StarForce| 45% lines=95 trace
a050cd54ff
[Firefox: 3 hits: 05-14 to 05-30]
4f7ceeede0 [0] WinXP 28 of 33 08:10:28 08:10:28 1 none none:none
none|none none trace
b4ad631671
[Firefox:14 hits: 04-29 to 05-30]
5890f017cc [0] WinXP 18 of 32 09:15:37 09:15:37 1 none ASM:Graph
StarForce| 87% lines=28 trace
0befa50d95
NEW
c644a6e74d
[Firefox: 2 hits: 05-11 to 05-30]
0befa50d95 [1]
none [4]
Win2K-f 25 of 31 09:42:32 09:42:32 1 none ASM:Graph
none:none
StarForce|
none|none
lines=6
none
trace
trace
831f4ee0a7
[Firefox:616 hits: 07-11 to 06-01]
eb7546c600 [0] WinXP 29 of 29 07:53:22 07:53:22 1 none ASM:Graph
none|none 100% lines=61 trace
0befa50d95
NEW
c644a6e74d
[Firefox: 2 hits: 05-11 to 05-30]
fd1b0fb7f8
NEW
0befa50d95 [1]
none [4]
none [4]
Win2K-f 12 of 31 09:42:32 09:42:32 1 none ASM:Graph
none:none
none:none
StarForce|
none|none
tElock|
lines=6
none
none
trace
trace
trace
5f78ff609d
[Firefox:1495 hits: 04-27 to 06-01]
d4a06bdc3a [0] Win2K-f
WinXP
21 of 32 09:05:24 10:41:44 3 none ASM:Graph
none|none 46% lines=4 trace
3ae357d17b
[Firefox:712 hits: 05-01 to 05-30]
462a7be171 [0] WinXP 29 of 29 11:57:40 11:57:40 1 none ASM:Graph
PolyEnE| 99% lines=73 trace
7d99b0e910
[Firefox:3018 hits: 12-31 to 06-01]
7a70e1b592 [0] WinXP 26 of 28 07:37:10 20:23:28 9 none ASM:Graph
PolyEnE| 99% lines=68 trace
5ee4121e1e
[Firefox:51 hits: 05-29 to 06-02]
51c1525417 [0] Win2K-f
WinXP
14 of 32 04:20:49 21:56:03 19 none none:none
Obsidium| none trace
cc545e1c99
NEW
97a4355156 [0] WinXP 28 of 31 15:31:45 15:31:45 1 none none:none
none|none none trace
05ec072edf
[Firefox: 4 hits: 05-30 to 06-01]
7287487211
[Firefox: 3 hits: 05-30 to 05-31]
05ec072edf [1]
7287487211[1]
Win2K-f 3 of 31 22:12:57 22:15:05 2 none ASM:Graph
ASM:Graph
StarForce|
StarForce|
46% lines=86
lines=86
trace
trace
1a2c0e6130
[Firefox:399 hits: 12-31 to 06-01]
048df78048 [0] WinXP 29 of 29 22:57:57 22:57:57 1 none ASM:Graph
none|none 100% lines=61 trace
f9452d6a63
NEW
76fba0327d [0] Win2K-f 25 of 31 09:31:32 09:31:32 1 none none:none
none|none none trace
7d6690b46b
[Firefox: 3 hits: 04-10 to 05-30]
55e17adce4 [0] WinXP 28 of 32 12:58:39 12:58:39 1 none ASM:Graph
ASPack| 54% lines=281
embedded dns
trace
a92e3f8fc8
[Firefox:114 hits: 05-03 to 05-30]
dfe02a1e52 [0] WinXP 26 of 28 17:29:12 17:29:12 1 none ASM:Graph
PolyEnE| 99% lines=68 trace
d9903c0088
NEW
none[4] WinXP 23 of 31 04:02:00 04:02:00 1 none none:none
PolyEnE| none trace
a0139d7ad8
[Firefox:438 hits: 05-02 to 06-01]
d9e9662db1 [0] WinXP 29 of 29 19:31:28 19:31:28 1 none ASM:Graph
PolyEnE| 99% lines=68 trace