Welcome to the Cyber-TA
Daily Malware Binary DIGEST Summary Page



07 June 2008

All data collection and analyses summarized in this page were 100% AUTO-GENERATED.

DEVELOPERS: Vinod Yegneswaran (SRI), Phillip Porras (SRI), Hassen Saidi (SRI)
Monirul Sharif (Georgia-Tech), Arvind Narayanan (University of Texas at Austin)

The data on this website is provided for research purposes only. It is provided
for your personal use only and is supplied AS IS, WITHOUT WARRANTY OF ANY KIND.
Use or reliance on this data is at your own risk.



Packed
MD5
UnPacket
MD5
Victim
OS
AntiVirus
Hit-Cnt
First
Encounter
Last
Encounter
Freq
Cnt
Behavioral
Clusters
Unpacked
Egg.asm
Packer
Fingerprint
API
Resolution
String
Cnt
Syscall
Trace
23c6886399
[Firefox: 3 hits: 06-03 to 06-06]
none[4] WinXP 30 of 32 17:55:35 17:55:35 1 none none:none
PolyEnE| none trace
df17a625ee
[Firefox:455 hits: 05-04 to 06-06]
9bbdd086c5 [0] WinXP 29 of 29 13:08:37 18:34:43 2 none ASM:Graph
ASPack| 49% lines=186
embedded dns
trace
93282471f7
[Firefox:20 hits: 04-28 to 05-21]
95951dee58 [0] Win2K-f 19 of 30 00:51:46 00:51:46 1 none ASM:Graph
ASProtect| 0% lines=0 trace
3f5ec58a6b
[Firefox:26 hits: 04-24 to 06-02]
4a77430a59 [0] WinXP 30 of 32 00:06:00 00:10:26 2 none ASM:Graph
PolyEnE| 99% lines=70 trace
ce537f8a8e
NEW
none[4] Win2K-f 29 of 33 02:14:47 02:14:47 1 none none:none
none|none none trace
a50330e92d
NEW
a50330e92d [1] Win2K-f 2 of 32 09:24:20 09:24:20 1 none ASM:Graph
none|none 18% lines=10 trace
af98fe0c94
[Firefox:74 hits: 04-27 to 06-06]
480d076a0a [0] WinXP 20 of 31 02:34:44 02:34:44 1 none ASM:Graph
ASProtect| 57% lines=422
embedded dns
trace
d12e4a3f7d
NEW
none[4] Win2K-f 27 of 32 04:48:37 04:48:37 1 none none:none
none|none none trace
ab48a97a5d
[Firefox: 7 hits: 12-28 to 05-21]
81e9c5d188 [0] WinXP 12 of 31 07:24:32 07:24:32 1 none ASM:Graph
ASProtect| 57% lines=419
embedded dns
trace
85f06e20ac
NEW
none[4] WinXP 28 of 32 08:27:46 08:27:46 1 none none:none
none|none none trace
6c4c3242ba
[Firefox:11 hits: 05-31 to 06-06]
47300e90ee [0] Win2K-f 15 of 31 15:18:36 15:18:36 1 none none:none
none|none none trace
d42c1cc7c0
[Firefox:284 hits: 05-01 to 06-05]
af9ca5bed1 [0] WinXP 29 of 29 06:15:30 06:15:30 1 none ASM:Graph
PolyEnE| 100% lines=54 trace
b33fe0a961
NEW
none[4] WinXP 29 of 32 15:51:01 15:51:01 1 none none:none
PolyEnE| none trace
a12cab51ef
[Firefox:1037 hits: 05-01 to 06-06]
40f7f463c4 [0] WinXP 29 of 29 12:19:30 12:19:30 1 none ASM:Graph
ASPack| 54% lines=281
embedded dns
trace
7fdfe363d5
[Firefox:2638 hits: 12-31 to 06-06]
10862ea8b8 [0] WinXP 25 of 28 05:15:34 05:15:34 1 none ASM:Graph
FSG| 95% lines=1933
embedded dns
trace
7f60162c2c
[Firefox:1316 hits: 12-31 to 06-06]
1aad8e4632 [0] WinXP 25 of 25 21:47:02 21:47:02 1 none ASM:Graph
PolyEnE| 100% lines=93
embedded dns
trace
4f0719aad0
NEW
none[4] WinXP 20 of 33 10:19:39 10:19:39 1 none none:none
StarForce| none trace
69059a59e5
NEW
none[4] Win2K-f 19 of 32 08:16:22 08:16:22 1 none none:none
StarForce| none trace
b4ad631671
[Firefox:14 hits: 04-29 to 05-30]
5890f017cc [0] WinXP 18 of 32 21:32:39 21:32:39 1 none ASM:Graph
StarForce| 87% lines=28 trace
0ca18d1183
[Firefox: 3 hits: 04-27 to 05-14]
none[4] Win2K-f 21 of 31 08:28:20 10:37:53 2 none none:none
none|none none trace
831f4ee0a7
[Firefox:619 hits: 07-11 to 06-06]
eb7546c600 [0] WinXP 29 of 29 06:11:08 17:32:24 5 none ASM:Graph
none|none 100% lines=61 trace
5f78ff609d
[Firefox:1499 hits: 04-27 to 06-06]
d4a06bdc3a [0] Win2K-f
WinXP
21 of 32 07:57:57 23:09:57 5 none ASM:Graph
none|none 46% lines=4 trace
4ab5b0788c
[Firefox: 4 hits: 04-21 to 06-06]
272da55ef8 [0] WinXP 29 of 31 03:46:09 03:46:09 1 none ASM:Graph
PolyEnE| 100% lines=114 trace
36db555136
NEW
none[4] Win2K-f 30 of 32 11:28:15 11:28:15 1 none none:none
none|none none trace
7d99b0e910
[Firefox:3027 hits: 12-31 to 06-06]
7a70e1b592 [0] WinXP 26 of 28 14:12:53 18:53:42 4 none ASM:Graph
PolyEnE| 99% lines=68 trace
5ee4121e1e
[Firefox:63 hits: 05-29 to 06-05]
51c1525417 [0] WinXP
Win2K-f
14 of 32 05:19:36 10:51:02 2 none none:none
Obsidium| none trace
890fb4fa10
[Firefox:47 hits: 12-27 to 06-01]
b9c7f08a57 [0] Win2K-f 19 of 32 01:34:07 01:34:07 1 none ASM:Graph
ASProtect| 3% lines=393
embedded dns
trace
0eee786e20
NEW
none[4] WinXP 32 of 32 17:36:41 17:36:41 1 none none:none
PolyEnE| none trace
1a2c0e6130
[Firefox:404 hits: 12-31 to 06-06]
048df78048 [0] WinXP 29 of 29 23:19:01 23:19:01 1 none ASM:Graph
none|none 100% lines=61 trace
f30c325342
NEW
none[4] Win2K-f 23 of 32 07:25:50 07:25:50 1 none none:none
none|none none trace
4c27e2165f
[Firefox: 3 hits: 09-05 to 10-30]
none[4] WinXP 29 of 29 10:49:42 10:49:42 1 none none:none
PolyEnE| none trace
53b36ec898
NEW
none[4] Win2K-f 28 of 32 11:52:24 11:52:24 1 none none:none
none|none none trace
8f367186c3
[Firefox:86 hits: 12-27 to 05-22]
01a06977c4 [0] Win2K-f 14 of 32 13:30:47 13:30:47 1 none ASM:Graph
TXT2COM| 0% lines=0 trace