Welcome to the Cyber-TA
Daily Malware Binary DIGEST Summary Page



04 July 2008

All data collection and analyses summarized in this page were 100% AUTO-GENERATED.

DEVELOPERS: Vinod Yegneswaran (SRI), Phillip Porras (SRI), Hassen Saidi (SRI)
Monirul Sharif (Georgia-Tech), Arvind Narayanan (University of Texas at Austin)

The data on this website is provided for research purposes only. It is provided
for your personal use only and is supplied AS IS, WITHOUT WARRANTY OF ANY KIND.
Use or reliance on this data is at your own risk.



Packed
MD5
UnPacket
MD5
Victim
OS
AntiVirus
Hit-Cnt
First
Encounter
Last
Encounter
Freq
Cnt
Behavioral
Clusters
Unpacked
Egg.asm
Packer
Fingerprint
API
Resolution
String
Cnt
Syscall
Trace
53bfe15e91
[Firefox:366 hits: 06-17 to 07-03]
8cf35e2a50
NEW
none[4]
none [none]
WinXP 31 of 33 03:01:44 03:01:44 1 none none:none
none:none
tElock|
none|none
none
none
trace
none
53bfe15e91
[Firefox:366 hits: 06-17 to 07-03]
73f1082158
[Firefox:163 hits: 06-18 to 07-03]
none[4]
73f1082158[1]
Win2K-f
WinXP
0 of 32 00:49:18 19:40:03 11 none none:none
ASM:Graph
tElock|
Armadillo|
47% none
lines=81
trace
trace
b068451179
NEW
b959a8bf1f
NEW
none[none]
none [none]
WinXP 31 of 33 23:22:53 23:22:53 1 none none:none
none:none
none|none
none|none
none
none
none
none
53bfe15e91
[Firefox:366 hits: 06-17 to 07-03]
none[4] Win2K-f
WinXP
33 of 33 00:21:36 22:59:22 24 none none:none
tElock| none trace
4e09d669b4
NEW
none[none] Win2K-f 32 of 33 11:53:35 11:53:35 1 none none:none
none|none none none
53bfe15e91
[Firefox:366 hits: 06-17 to 07-03]
b7082104e4
[Firefox:25 hits: 06-18 to 07-03]
none[4]
none [4]
WinXP 8 of 33 21:11:43 21:11:43 1 none none:none
none:none
tElock|
tElock|
none
none
trace
trace
2e04b06527
NEW
5c054291de
NEW
none[4]
5c054291de[1]
WinXP 30 of 33 10:43:21 10:43:21 1 none none:none
ASM:Graph
tElock|
Armadillo|
47% none
lines=82
trace
trace
8e2a6d8756
NEW
none[none] WinXP 31 of 33 19:46:58 19:46:58 1 none none:none
none|none none none
168aab35a3
[Firefox:27 hits: 06-17 to 07-03]
none[4] Win2K-f
WinXP
31 of 33 00:42:03 21:30:39 8 none none:none
tElock| none trace
7bdeb65dd2
NEW
b5919931fe
[Firefox:53 hits: 06-20 to 07-03]
e2b84629ac
NEW
none[none]
b5919931fe[1]
none [none]
Win2K-f 31 of 33 06:51:32 06:51:32 1 none none:none
ASM:Graph
none:none
none|none
ASProtect|
none|none
none
lines=90
none
none
trace
none
d42c1cc7c0
[Firefox:310 hits: 05-01 to 07-01]
af9ca5bed1 [0] WinXP 29 of 29 00:58:20 15:55:07 2 none ASM:Graph
PolyEnE| 100% lines=54 trace
2419ef9026
NEW
none[none] WinXP 29 of 33 10:52:08 10:52:08 1 none none:none
none|none none none
8846af9408
NEW
none[none] WinXP 31 of 33 03:13:15 03:13:15 1 none none:none
none|none none none
743e51a884
[Firefox: 2 hits: 07-01 to 07-03]
none[none] WinXP 31 of 31 20:01:51 20:01:51 1 none none:none
none|none none none
c83d445337
NEW
none[none] Win2K-f 25 of 33 16:15:36 16:15:36 1 none none:none
none|none none none
03f912899b
[Firefox:29 hits: 12-14 to 07-03]
83893bd25d [0] WinXP 32 of 32 14:19:06 14:19:06 1 none ASM:Graph
none|none 100% lines=65 trace
36ba291c44
NEW
91301d094b
NEW
none[none]
none [none]
WinXP 29 of 33 08:47:37 08:47:37 1 none none:none
none:none
none|none
none|none
none
none
none
none
9d571adc3c
NEW
a704164588
NEW
none[none]
none [none]
Win2K-f 31 of 33 17:00:41 17:00:41 1 none none:none
none:none
none|none
none|none
none
none
none
none
cce9566ceb
[Firefox:16 hits: 06-12 to 07-03]
none[4] WinXP 31 of 32 07:21:14 13:45:02 2 none none:none
PolyEnE| none trace
fc3634d9ec
NEW
none[none] Win2K-f 16 of 33 11:09:46 11:09:46 1 none none:none
none|none none none
7fdfe363d5
[Firefox:2817 hits: 12-31 to 07-03]
10862ea8b8 [0] WinXP
Win2K-f
25 of 28 00:43:26 23:02:41 22 none ASM:Graph
FSG| 95% lines=1933
embedded dns
trace
168aab35a3
[Firefox:27 hits: 06-17 to 07-03]
4c3df24b32
[Firefox:45 hits: 06-17 to 07-03]
none[4]
4c3df24b32[1]
Win2K-f
WinXP
0 of 33 06:22:44 11:08:48 5 none none:none
ASM:Graph
tElock|
Armadillo|
47% none
lines=81
trace
trace
48bc07f9ed
[Firefox: 2 hits: 06-21 to 06-25]
a5308d87d0
[Firefox: 4 hits: 06-21 to 06-27]
none[4]
a5308d87d0[1]
Win2K-f 29 of 33 22:32:04 22:32:04 1 none none:none
ASM:Graph
PolyEnE|
Armadillo|
47% none
lines=81
trace
trace
168aab35a3
[Firefox:27 hits: 06-17 to 07-03]
667f0c59f3
NEW
none[4]
none [none]
Win2K-f 31 of 33 00:42:03 00:42:03 1 none none:none
none:none
tElock|
none|none
none
none
trace
none
6d86a1ff5a
[Firefox: 2 hits: 06-25 to 06-26]
none[none] WinXP 28 of 33 12:52:53 12:52:53 1 none none:none
none|none none none
6d86a1ff5a
[Firefox: 2 hits: 06-25 to 06-26]
7f6e032fc0
[Firefox: 2 hits: 06-25 to 06-26]
none[none]
none [none]
WinXP 31 of 33 12:52:53 12:52:53 1 none none:none
none:none
none|none
none|none
none
none
none
none
831f4ee0a7
[Firefox:674 hits: 07-11 to 07-03]
eb7546c600 [0] WinXP 29 of 29 03:09:33 18:42:38 4 none ASM:Graph
none|none 100% lines=61 trace
36ba291c44
NEW
none[none] WinXP 31 of 33 08:47:37 08:47:37 1 none none:none
none|none none none
48bc07f9ed
[Firefox: 2 hits: 06-21 to 06-25]
none[4] Win2K-f 30 of 33 22:32:04 22:32:04 1 none none:none
PolyEnE| none trace
470e7533c6
NEW
none[none] Win2K-f 0 of 0 10:42:07 10:42:07 1 none none:none
none|none none none
f9bf3a1e43
NEW
f9bf3a1e43 [1] WinXP 0 of 0 01:00:28 01:00:28 1 none ASM:Graph
Armadillo| 47% lines=81 trace
168aab35a3
[Firefox:27 hits: 06-17 to 07-03]
acd2a6266d
[Firefox: 3 hits: 06-19 to 07-03]
none[4]
acd2a6266d[1]
WinXP 30 of 33 21:30:39 21:30:39 1 none none:none
ASM:Graph
tElock|
Armadillo|
47% none
lines=82
trace
trace
53bfe15e91
[Firefox:366 hits: 06-17 to 07-03]
73f1082158
[Firefox:163 hits: 06-18 to 07-03]
b5919931fe
[Firefox:53 hits: 06-20 to 07-03]
none[4]
73f1082158[1]
b5919931fe[1]
Win2K-f 0 of 32 04:00:29 19:40:03 8 none none:none
ASM:Graph
ASM:Graph
tElock|
Armadillo|
ASProtect|
48% none
lines=81
lines=90
trace
trace
trace
2905d384e2
[Firefox: 2 hits: 07-03 to 07-03]
none[none] WinXP 29 of 33 11:41:03 11:41:03 1 none none:none
none|none none none
b5919931fe
[Firefox:53 hits: 06-20 to 07-03]
dd98c3c108
NEW
b5919931fe [1]
dd98c3c108[1]
Win2K-f 29 of 33 04:00:29 10:53:07 2 none ASM:Graph
ASM:Graph
ASProtect|
Armadillo|
47% lines=90
lines=82
trace
trace
53bfe15e91
[Firefox:366 hits: 06-17 to 07-03]
57ce4acac2
[Firefox:33 hits: 06-17 to 07-03]
none[4]
57ce4acac2[1]
Win2K-f 0 of 33 05:22:16 20:27:48 2 none none:none
ASM:Graph
tElock|
Armadillo|
47% none
lines=81
trace
trace
c87b5f785d
NEW
none[none] Win2K-f 30 of 33 17:08:39 17:08:39 1 none none:none
none|none none none
8c4361f20f
NEW
none[none] WinXP 32 of 33 16:08:40 16:08:40 1 none none:none
none|none none none
1a2c0e6130
[Firefox:448 hits: 12-31 to 07-03]
048df78048 [0] WinXP 29 of 29 01:25:37 20:12:06 2 none ASM:Graph
none|none 100% lines=61 trace
12df83cb4f
[Firefox: 4 hits: 06-19 to 06-26]
12df83cb4f [1] Win2K-f
WinXP
28 of 33 09:31:51 20:13:57 2 none ASM:Graph
Armadillo| 47% lines=82 trace
1f368577c7
NEW
none[none] Win2K-f 30 of 33 08:31:07 08:31:07 1 none none:none
none|none none none
4ca3056804
NEW
4ca3056804 [1] Win2K-f 1 of 33 00:21:36 00:21:36 1 none ASM:Graph
Armadillo| 47% lines=81 trace
53bfe15e91
[Firefox:366 hits: 06-17 to 07-03]
a08f3b74a4
[Firefox:127 hits: 06-18 to 07-03]
none[4]
a08f3b74a4[1]
WinXP
Win2K-f
0 of 33 03:39:24 22:59:22 8 none none:none
ASM:Graph
tElock|
Armadillo|
47% none
lines=81
trace
trace
e99c44b96a
NEW
none[none] WinXP 30 of 33 04:04:36 04:04:36 1 none none:none
none|none none none
567f5c8db2
NEW
none[none] Win2K-f 30 of 33 10:59:24 10:59:24 1 none none:none
none|none none none
12df83cb4f
[Firefox: 4 hits: 06-19 to 06-26]
2e7dc3f066
[Firefox: 4 hits: 06-19 to 06-26]
12df83cb4f [1]
none [4]
Win2K-f
WinXP
30 of 33 09:31:51 20:13:57 2 none ASM:Graph
none:none
Armadillo|
tElock|
lines=82
none
trace
trace
bce12aa21f
[Firefox:20 hits: 05-12 to 07-03]
none[4] WinXP 31 of 33 00:07:04 00:07:04 1 none none:none
PolyEnE| none trace
8354fa612f
NEW
none[none] Win2K-f 30 of 32 21:59:40 21:59:40 1 none none:none
none|none none none
0144eaab60
NEW
none[none] Win2K-f 31 of 33 12:33:18 12:33:18 1 none none:none
none|none none none
9aa3d60ce0
NEW
none[none] Win2K-f 31 of 33 02:43:38 02:43:38 1 none none:none
none|none none none
3193f092d9
NEW
none[none] Win2K-f 31 of 33 04:50:52 06:06:17 2 none none:none
none|none none none
b5919931fe
[Firefox:53 hits: 06-20 to 07-03]
dd98c3c108
NEW
e98746deb1
NEW
b5919931fe [1]
dd98c3c108[1]
none [4]
Win2K-f 31 of 33 04:00:29 10:53:07 2 none ASM:Graph
ASM:Graph
none:none
ASProtect|
Armadillo|
tElock|
lines=90
lines=82
none
trace
trace
trace
1e5df7ba74
[Firefox:26 hits: 03-24 to 06-28]
a5331b711f [0] WinXP 31 of 32 15:49:20 15:49:20 1 none ASM:Graph
PolyEnE| 99% lines=68 trace
127c76380b
NEW
none[none] Win2K-f 9 of 33 18:26:07 18:26:07 1 none none:none
none|none none none
df17a625ee
[Firefox:478 hits: 05-04 to 07-01]
9bbdd086c5 [0] WinXP 29 of 29 07:04:32 07:04:32 1 none ASM:Graph
ASPack| 49% lines=186
embedded dns
trace
470e7533c6
NEW
9b5f91cb49
NEW
none[none]
none [none]
Win2K-f 32 of 33 10:42:07 10:42:07 1 none none:none
none:none
none|none
none|none
none
none
none
none
605fe84c5c
NEW
none[none] Win2K-f
WinXP
10 of 33 00:10:23 14:19:23 9 none none:none
none|none none none
9005e93bd0
NEW
none[none] Win2K-f 2 of 33 03:09:26 03:09:26 1 none none:none
none|none none none
87bd0a062f
NEW
none[none] WinXP 30 of 33 22:09:33 22:09:33 1 none none:none
none|none none none
b068451179
NEW
none[none] WinXP 31 of 33 23:22:53 23:22:53 1 none none:none
none|none none none
87bd0a062f
NEW
c7d6018f97
NEW
e07c29c4ae
[Firefox:57 hits: 06-19 to 07-03]
none[none]
none [none]
e07c29c4ae[1]
WinXP 0 of 33 03:39:24 22:09:33 5 none none:none
none:none
ASM:Graph
none|none
none|none
FSG|
48% none
none
lines=92
none
none
trace
38ba3223fd
NEW
none[none] Win2K-f 31 of 33 10:10:13 10:10:13 1 none none:none
none|none none none
7bdeb65dd2
NEW
none[none] Win2K-f 31 of 33 06:51:32 06:51:32 1 none none:none
none|none none none
8afe0419c3
NEW
none[none] WinXP 24 of 33 03:39:35 03:39:35 1 none none:none
none|none none none
f0b49cdcfc
NEW
none[none] WinXP 33 of 33 11:16:59 11:16:59 1 none none:none
none|none none none
7d99b0e910
[Firefox:3135 hits: 12-31 to 07-03]
7a70e1b592 [0] WinXP 26 of 28 19:48:41 21:25:33 2 none ASM:Graph
PolyEnE| 99% lines=68 trace
063fecc528
NEW
none[none] WinXP 21 of 32 02:07:11 02:07:11 1 none none:none
none|none none none
0dc9350933
NEW
none[none] WinXP 32 of 33 12:28:53 12:28:53 1 none none:none
none|none none none
3e209ce796
NEW
none[4] WinXP 32 of 33 21:49:40 21:49:40 1 none none:none
none|none none trace
13cfd63045
NEW
none[none] WinXP 30 of 33 01:19:44 01:19:44 1 none none:none
none|none none none
75375279a7
NEW
none[none] WinXP 30 of 33 15:41:14 15:41:14 1 none none:none
none|none none none
9d571adc3c
NEW
none[none] Win2K-f 31 of 33 17:00:41 17:00:41 1 none none:none
none|none none none
e8151abf1c
NEW
none[none] Win2K-f 29 of 32 22:06:01 22:06:01 1 none none:none
none|none none none
168aab35a3
[Firefox:27 hits: 06-17 to 07-03]
61426996c3
[Firefox: 2 hits: 06-20 to 06-30]
none[4]
61426996c3[1]
Win2K-f
WinXP
29 of 32 05:15:29 07:58:58 2 none none:none
ASM:Graph
tElock|
Armadillo|
47% none
lines=82
trace
trace
65275a1614
NEW
65275a1614 [1] WinXP 29 of 33 11:39:17 11:39:17 1 none ASM:Graph
Armadillo| 47% lines=82 trace
87bd0a062f
NEW
c7d6018f97
NEW
none[none]
none [none]
WinXP 31 of 33 22:09:33 22:09:33 1 none none:none
none:none
none|none
none|none
none
none
none
none
23992db624
NEW
none[none] Win2K-f 30 of 33 08:45:51 08:45:51 1 none none:none
none|none none none
2e04b06527
NEW
none[4] WinXP 30 of 33 10:43:21 10:43:21 1 none none:none
tElock| none trace
65275a1614
NEW
ec0d7783de
NEW
65275a1614 [1]
none [4]
WinXP 30 of 32 11:39:17 11:39:17 1 none ASM:Graph
none:none
Armadillo|
tElock|
lines=82
none
trace
trace
f240c3512f
NEW
none[none] Win2K-f 31 of 33 14:14:10 14:14:10 1 none none:none
none|none none none