Welcome to the Cyber-TA
Daily Malware Binary DIGEST Summary Page



09 July 2008

All data collection and analyses summarized in this page were 100% AUTO-GENERATED.

DEVELOPERS: Vinod Yegneswaran (SRI), Phillip Porras (SRI), Hassen Saidi (SRI)
Monirul Sharif (Georgia-Tech), Arvind Narayanan (University of Texas at Austin)

The data on this website is provided for research purposes only. It is provided
for your personal use only and is supplied AS IS, WITHOUT WARRANTY OF ANY KIND.
Use or reliance on this data is at your own risk.



Packed
MD5
UnPacket
MD5
Victim
OS
AntiVirus
Hit-Cnt
First
Encounter
Last
Encounter
Freq
Cnt
Behavioral
Clusters
Unpacked
Egg.asm
Packer
Fingerprint
API
Resolution
String
Cnt
Syscall
Trace
4baf939568
NEW
6c080c6d8c
NEW
none[none]
none [none]
Win2K-f 30 of 33 06:39:33 06:39:33 1 none none:none
none:none
none|none
none|none
none
none
none
none
53bfe15e91
[Firefox:509 hits: 06-17 to 07-08]
73f1082158
[Firefox:241 hits: 06-18 to 07-08]
none[4]
73f1082158[1]
Win2K-f
WinXP
0 of 32 05:28:33 16:19:03 7 none none:none
ASM:Graph
tElock|
Armadillo|
47% none
lines=81
trace
trace
3b2958417b
NEW
none[none] WinXP 33 of 33 04:04:45 17:03:10 2 none none:none
none|none none none
f58222344f
[Firefox:14 hits: 12-31 to 06-22]
2a56436a64 [0] WinXP 28 of 31 04:52:36 04:52:36 1 none ASM:Graph
PolyEnE| 54% lines=265
embedded dns
trace
53bfe15e91
[Firefox:509 hits: 06-17 to 07-08]
none[4] Win2K-f
WinXP
33 of 33 04:20:26 22:00:45 15 none none:none
tElock| none trace
53bfe15e91
[Firefox:509 hits: 06-17 to 07-08]
b7082104e4
[Firefox:31 hits: 06-18 to 07-08]
none[4]
none [4]
Win2K-f 8 of 33 16:30:51 16:30:51 1 none none:none
none:none
tElock|
tElock|
none
none
trace
trace
e07c29c4ae
[Firefox:74 hits: 06-19 to 07-08]
e7a5a1fc24
NEW
e07c29c4ae [1]
none [none]
WinXP 31 of 33 20:14:45 20:14:45 1 none ASM:Graph
none:none
FSG|
none|none
lines=92
none
trace
none
0a44ba387c
NEW
6f88847c49
NEW
none[none]
none [none]
Win2K-f 29 of 33 05:26:06 05:26:06 1 none none:none
none:none
none|none
none|none
none
none
none
none
6d6b985d68
NEW
none[none] Win2K-f 31 of 33 22:19:30 22:19:30 1 none none:none
none|none none none
fce9309509
NEW
none[none] WinXP 30 of 33 21:33:44 21:33:44 1 none none:none
none|none none none
177f319a98
NEW
none[none] Win2K-f 29 of 33 04:31:39 04:31:39 1 none none:none
none|none none none
6d6b985d68
NEW
d51f383cdb
NEW
none[none]
none [none]
Win2K-f 24 of 33 22:19:30 22:19:30 1 none none:none
none:none
none|none
none|none
none
none
none
none
168aab35a3
[Firefox:43 hits: 06-17 to 07-08]
none[4] Win2K-f 31 of 33 23:11:51 23:11:51 1 none none:none
tElock| none trace
8ae2cc2e80
[Firefox:61 hits: 05-06 to 07-08]
c24ca14cda [0] WinXP 29 of 29 07:26:55 07:26:55 1 none ASM:Graph
PolyEnE| 99% lines=68 trace
a12cab51ef
[Firefox:1103 hits: 05-01 to 07-07]
40f7f463c4 [0] WinXP 29 of 29 15:04:43 15:04:43 1 none ASM:Graph
ASPack| 54% lines=281
embedded dns
trace
9dab636a01
[Firefox: 3 hits: 07-09 to 11-18]
none[none] WinXP 29 of 29 06:30:58 06:30:58 1 none none:none
none|none none none
03f912899b
[Firefox:37 hits: 12-14 to 07-08]
83893bd25d [0] WinXP 32 of 32 08:12:34 09:53:56 2 none ASM:Graph
none|none 100% lines=65 trace
1801222e74
NEW
none[none] WinXP 33 of 33 14:26:02 14:26:02 1 none none:none
none|none none none
cce9566ceb
[Firefox:20 hits: 06-12 to 07-07]
none[4] WinXP 31 of 32 06:59:35 15:49:22 2 none none:none
PolyEnE| none trace
9d571adc3c
[Firefox: 2 hits: 07-04 to 07-06]
a704164588
[Firefox: 2 hits: 07-04 to 07-06]
none[none]
none [none]
WinXP 31 of 33 06:32:39 06:32:39 1 none none:none
none:none
none|none
none|none
none
none
none
none
ae4bed1aa9
[Firefox: 4 hits: 06-21 to 07-05]
bc51bd8226
[Firefox: 4 hits: 06-21 to 07-05]
ae4bed1aa9 [1]
none [4]
WinXP 29 of 32 03:44:40 03:44:40 1 none ASM:Graph
none:none
Armadillo|
PolyEnE|
lines=81
none
trace
trace
2d51a863df
NEW
65c9f5c345
NEW
none[none]
none [none]
Win2K-f 31 of 33 02:37:44 02:37:44 1 none none:none
none:none
none|none
none|none
none
none
none
none
e07c29c4ae
[Firefox:74 hits: 06-19 to 07-08]
e7a5a1fc24
NEW
ef4f675355
NEW
e07c29c4ae [1]
none [none]
none [none]
WinXP 31 of 33 20:14:45 20:14:45 1 none ASM:Graph
none:none
none:none
FSG|
none|none
none|none
lines=92
none
none
trace
none
none
0a44ba387c
NEW
none[none] Win2K-f 32 of 33 05:26:06 05:26:06 1 none none:none
none|none none none
168aab35a3
[Firefox:43 hits: 06-17 to 07-08]
4c3df24b32
[Firefox:68 hits: 06-17 to 07-08]
none[4]
4c3df24b32[1]
Win2K-f
WinXP
0 of 33 02:36:19 23:11:51 3 none none:none
ASM:Graph
tElock|
Armadillo|
47% none
lines=81
trace
trace
3ed16ae12d
[Firefox: 3 hits: 06-19 to 07-05]
3ed16ae12d [1] WinXP 3 of 33 14:12:23 14:12:23 1 none ASM:Graph
Armadillo| 47% lines=81 trace
79afa2f19b
NEW
a95d521f60
NEW
none[none]
none [none]
Win2K-f 32 of 33 03:04:02 03:04:02 1 none none:none
none:none
none|none
none|none
none
none
none
none
6d86a1ff5a
[Firefox: 9 hits: 06-25 to 07-08]
none[none] Win2K-f 28 of 33 10:57:14 10:57:14 1 none none:none
none|none none none
741e3b03b3
[Firefox:128 hits: 09-28 to 07-08]
e0197e8a64 [0] WinXP 31 of 32 00:15:50 16:36:57 6 none ASM:Graph
none|none 100% lines=62 trace
5f11b319ef
NEW
a3f631e410
NEW
none[none]
none [none]
Win2K-f 31 of 33 12:13:13 12:13:13 1 none none:none
none:none
none|none
none|none
none
none
none
none
6d86a1ff5a
[Firefox: 9 hits: 06-25 to 07-08]
7f6e032fc0
[Firefox: 9 hits: 06-25 to 07-08]
none[none]
none [none]
Win2K-f 31 of 33 10:57:14 10:57:14 1 none none:none
none:none
none|none
none|none
none
none
none
none
2d51a863df
NEW
none[none] Win2K-f 28 of 32 02:37:44 02:37:44 1 none none:none
none|none none none
831f4ee0a7
[Firefox:686 hits: 07-11 to 07-08]
eb7546c600 [0] WinXP 29 of 29 02:21:43 02:51:46 2 none ASM:Graph
none|none 100% lines=61 trace
5f11b319ef
NEW
none[none] Win2K-f 24 of 33 12:13:13 12:13:13 1 none none:none
none|none none none
65275a1614
[Firefox: 7 hits: 06-21 to 07-08]
a014934a72
[Firefox:66 hits: 06-28 to 07-08]
b5919931fe
[Firefox:94 hits: 06-20 to 07-08]
65275a1614 [1]
none [none]
b5919931fe[1]
Win2K-f 0 of 32 06:50:22 21:31:41 2 none ASM:Graph
none:none
ASM:Graph
Armadillo|
none|none
ASProtect|
48% lines=82
none
lines=90
trace
none
trace
57ce4acac2
[Firefox:46 hits: 06-17 to 07-08]
57ce4acac2 [1] Win2K-f 0 of 33 12:00:13 17:42:53 2 none ASM:Graph
Armadillo| 47% lines=81 trace
99c1c370c4
NEW
none[none] Win2K-f 31 of 33 20:48:20 20:48:20 1 none none:none
none|none none none
f5939606bd
NEW
fe384de063
NEW
none[none]
none [none]
WinXP 8 of 33 19:25:26 19:25:26 1 none none:none
none:none
none|none
none|none
none
none
none
none
a38eaf614a
NEW
none[none] Win2K-f 31 of 33 12:17:10 12:17:10 1 none none:none
none|none none none
1a2c0e6130
[Firefox:459 hits: 12-31 to 07-08]
048df78048 [0] WinXP 29 of 29 02:43:46 21:44:27 8 none ASM:Graph
none|none 100% lines=61 trace
a014934a72
[Firefox:66 hits: 06-28 to 07-08]
none[none] Win2K-f
WinXP
27 of 33 21:31:41 21:50:46 2 none none:none
none|none none none
53bfe15e91
[Firefox:509 hits: 06-17 to 07-08]
a08f3b74a4
[Firefox:167 hits: 06-18 to 07-08]
none[4]
a08f3b74a4[1]
Win2K-f
WinXP
0 of 33 04:20:26 22:00:45 6 none none:none
ASM:Graph
tElock|
Armadillo|
47% none
lines=81
trace
trace
a272491856
NEW
f8a6c43c1d
NEW
none[none]
none [none]
Win2K-f 29 of 32 07:21:45 07:21:45 1 none none:none
none:none
none|none
none|none
none
none
none
none
a483ba8aa1
NEW
none[none] WinXP 33 of 33 07:01:19 20:35:17 4 none none:none
none|none none none
6914740929
[Firefox: 2 hits: 06-11 to 07-02]
6914740929 [1] Win2K-f 30 of 32 07:05:29 07:05:29 1 none ASM:Graph
StarForce| 50% lines=19 trace
65494b4a08
[Firefox: 3 hits: 06-29 to 07-06]
none[none] Win2K-f 30 of 33 19:25:54 19:25:54 1 none none:none
none|none none none
971f716c7f
[Firefox: 2 hits: 04-10 to 04-16]
4373aeb95c [0] WinXP 29 of 32 07:38:48 07:38:48 1 none ASM:Graph
PolyEnE| 54% lines=265
embedded dns
trace
8354fa612f
[Firefox: 2 hits: 06-30 to 07-04]
none[none] Win2K-f 30 of 32 06:18:45 06:18:45 1 none none:none
none|none none none
d02488acb2
NEW
none[none] WinXP 0 of 33 10:15:16 10:15:16 1 none none:none
none|none none none
4fcfdb63e8
NEW
none[none] WinXP 32 of 33 22:29:19 22:29:19 1 none none:none
none|none none none
ea9787a186
[Firefox: 2 hits: 06-20 to 06-21]
none[4] Win2K-f 29 of 32 19:34:00 19:34:00 1 none none:none
PolyEnE| none trace
8fc270a8ba
NEW
b16e6b2c52
NEW
none[none]
none [none]
Win2K-f 29 of 33 18:09:32 18:09:32 1 none none:none
none:none
none|none
none|none
none
none
none
none
f5939606bd
NEW
none[none] WinXP 8 of 32 19:25:26 19:25:26 1 none none:none
none|none none none
05dad8f88a
NEW
none[none] Win2K-f 29 of 33 08:39:06 08:39:06 1 none none:none
none|none none none
a014934a72
[Firefox:66 hits: 06-28 to 07-08]
a172052409
NEW
acd0af7b38
NEW
none[none]
none [none]
none [none]
WinXP 31 of 33 21:50:46 21:50:46 1 none none:none
none:none
none:none
none|none
none|none
none|none
none
none
none
none
none
none
4c3df24b32
[Firefox:68 hits: 06-17 to 07-08]
6a4845ca11
[Firefox: 4 hits: 06-27 to 07-08]
4c3df24b32 [1]
none [none]
WinXP 0 of 0 06:00:58 06:00:58 1 none ASM:Graph
none:none
Armadillo|
none|none
lines=81
none
trace
none
d02488acb2
NEW
df17a625ee
[Firefox:480 hits: 05-04 to 07-08]
none[none]
9bbdd086c5[0]
WinXP 29 of 29 10:15:16 10:15:16 1 none none:none
ASM:Graph
none|none
ASPack|
49% none
lines=186
embedded dns
none
trace
a014934a72
[Firefox:66 hits: 06-28 to 07-08]
a172052409
NEW
none[none]
none [none]
WinXP 29 of 33 21:50:46 21:50:46 1 none none:none
none:none
none|none
none|none
none
none
none
none
b1019195b3
NEW
none[none] WinXP 31 of 33 08:21:02 08:21:02 1 none none:none
none|none none none
8fc270a8ba
NEW
none[none] Win2K-f 31 of 33 18:09:32 18:09:32 1 none none:none
none|none none none
65494b4a08
[Firefox: 3 hits: 06-29 to 07-06]
eeb51a6e9e
[Firefox: 3 hits: 06-29 to 07-06]
none[none]
none [none]
Win2K-f 29 of 33 19:25:54 19:25:54 1 none none:none
none:none
none|none
none|none
none
none
none
none
177f319a98
NEW
f015ea1e14
NEW
none[none]
none [none]
Win2K-f 31 of 33 04:31:39 04:31:39 1 none none:none
none:none
none|none
none|none
none
none
none
none
4baf939568
NEW
none[none] Win2K-f 30 of 33 06:39:33 06:39:33 1 none none:none
none|none none none
a272491856
NEW
none[none] Win2K-f 31 of 33 07:21:45 07:21:45 1 none none:none
none|none none none
53bfe15e91
[Firefox:509 hits: 06-17 to 07-08]
a08f3b74a4
[Firefox:167 hits: 06-18 to 07-08]
e07c29c4ae
[Firefox:74 hits: 06-19 to 07-08]
none[4]
a08f3b74a4[1]
e07c29c4ae[1]
WinXP 0 of 33 15:22:05 21:26:48 3 none none:none
ASM:Graph
ASM:Graph
tElock|
Armadillo|
FSG|
48% none
lines=81
lines=92
trace
trace
trace
99c1c370c4
NEW
ac59067d9b
NEW
none[none]
none [none]
Win2K-f 31 of 33 20:48:20 20:48:20 1 none none:none
none:none
none|none
none|none
none
none
none
none
90eed12dab
NEW
a0fe60597c [0] WinXP 31 of 31 02:33:01 02:33:01 1 none ASM:Graph
none|none 98% lines=84
embedded dns
trace
8178c88f5e
[Firefox: 2 hits: 07-08 to 07-08]
none[none] WinXP 33 of 33 04:32:20 04:32:20 1 none none:none
none|none none none
3ae357d17b
[Firefox:733 hits: 05-01 to 07-07]
462a7be171 [0] WinXP 29 of 29 16:38:23 16:38:51 2 none ASM:Graph
PolyEnE| 99% lines=73 trace
79afa2f19b
NEW
none[none] Win2K-f 28 of 33 03:04:02 03:04:02 1 none none:none
none|none none none
ae4bed1aa9
[Firefox: 4 hits: 06-21 to 07-05]
ae4bed1aa9 [1] WinXP 29 of 33 03:44:40 03:44:40 1 none ASM:Graph
Armadillo| 47% lines=81 trace
7d99b0e910
[Firefox:3164 hits: 12-31 to 07-08]
7a70e1b592 [0] WinXP 26 of 28 05:38:48 13:34:26 6 none ASM:Graph
PolyEnE| 99% lines=68 trace
3ed16ae12d
[Firefox: 3 hits: 06-19 to 07-05]
79c01ec060
[Firefox: 7 hits: 06-18 to 07-05]
3ed16ae12d [1]
none [4]
WinXP 33 of 33 14:12:23 14:12:23 1 none ASM:Graph
none:none
Armadillo|
tElock|
lines=81
none
trace
trace
2c2f04d480
NEW
none[none] WinXP 25 of 33 20:05:27 20:05:27 1 none none:none
none|none none none
bf14e246e6
[Firefox: 6 hits: 07-06 to 07-07]
none[none] Win2K-f 19 of 33 03:07:32 03:07:32 1 none none:none
none|none none none
0661732220
NEW
none[none] Win2K-f 31 of 33 14:26:59 14:26:59 1 none none:none
none|none none none
9d571adc3c
[Firefox: 2 hits: 07-04 to 07-06]
none[none] WinXP 31 of 33 06:32:39 06:32:39 1 none none:none
none|none none none
05dad8f88a
NEW
b50ce44508
NEW
none[none]
none [none]
Win2K-f 30 of 32 08:39:06 08:39:06 1 none none:none
none:none
none|none
none|none
none
none
none
none
65275a1614
[Firefox: 7 hits: 06-21 to 07-08]
65275a1614 [1] Win2K-f 29 of 33 21:31:41 21:31:41 1 none ASM:Graph
Armadillo| 47% lines=82 trace
65275a1614
[Firefox: 7 hits: 06-21 to 07-08]
a014934a72
[Firefox:66 hits: 06-28 to 07-08]
b5919931fe
[Firefox:94 hits: 06-20 to 07-08]
ec0d7783de
[Firefox: 7 hits: 06-21 to 07-08]
65275a1614 [1]
none [none]
b5919931fe[1]
none [4]
Win2K-f 30 of 32 21:31:41 21:31:41 1 none ASM:Graph
none:none
ASM:Graph
none:none
Armadillo|
none|none
ASProtect|
tElock|
lines=82
none
lines=90
none
trace
none
trace
trace
53bfe15e91
[Firefox:509 hits: 06-17 to 07-08]
bcabcc7cc3
NEW
none[4]
none [none]
Win2K-f 30 of 33 05:02:24 05:02:24 1 none none:none
none:none
tElock|
none|none
none
none
trace
none