Welcome to the Cyber-TA
Daily Malware Binary DIGEST Summary Page



11 July 2008

All data collection and analyses summarized in this page were 100% AUTO-GENERATED.

DEVELOPERS: Vinod Yegneswaran (SRI), Phillip Porras (SRI), Hassen Saidi (SRI)
Monirul Sharif (Georgia-Tech), Arvind Narayanan (University of Texas at Austin)

The data on this website is provided for research purposes only. It is provided
for your personal use only and is supplied AS IS, WITHOUT WARRANTY OF ANY KIND.
Use or reliance on this data is at your own risk.



Packed
MD5
UnPacket
MD5
Victim
OS
AntiVirus
Hit-Cnt
First
Encounter
Last
Encounter
Freq
Cnt
Behavioral
Clusters
Unpacked
Egg.asm
Packer
Fingerprint
API
Resolution
String
Cnt
Syscall
Trace
6c080c6d8c
NEW
none[none] Win2K-f 30 of 33 20:59:37 20:59:37 1 none none:none
none|none none none
7ba9e53288
NEW
none[none] WinXP 31 of 33 23:41:14 23:41:14 1 none none:none
none|none none none
744e090fa5
NEW
d7c12e2354
NEW
none[none]
none [none]
Win2K-f 31 of 33 06:22:34 06:22:34 1 none none:none
none:none
none|none
none|none
none
none
none
none
53bfe15e91
[Firefox:551 hits: 06-17 to 07-10]
f685f8e027
[Firefox: 2 hits: 06-18 to 06-20]
none[4]
f685f8e027[1]
Win2K-f 28 of 33 00:24:19 00:24:19 1 none none:none
ASM:Graph
tElock|
Armadillo|
48% none
lines=82
trace
trace
5126de19b5
NEW
85cf2bf2c3
NEW
none[none]
none [none]
Win2K-f 30 of 33 15:13:27 15:13:27 1 none none:none
none:none
none|none
none|none
none
none
none
none
53bfe15e91
[Firefox:551 hits: 06-17 to 07-10]
73f1082158
[Firefox:265 hits: 06-18 to 07-10]
none[4]
73f1082158[1]
Win2K-f
WinXP
0 of 32 00:17:22 23:33:12 18 none none:none
ASM:Graph
tElock|
Armadillo|
47% none
lines=81
trace
trace
53bfe15e91
[Firefox:551 hits: 06-17 to 07-10]
none[4] Win2K-f
WinXP
33 of 33 00:17:22 23:47:55 30 none none:none
tElock| none trace
996e7053d5
NEW
none[none] WinXP 33 of 33 14:36:14 14:36:14 1 none none:none
none|none none none
5097c25982
NEW
none[none] WinXP 32 of 33 08:27:50 08:27:50 1 none none:none
none|none none none
55d0af189c
NEW
none[none] WinXP 32 of 32 01:58:58 01:58:58 1 none none:none
none|none none none
d70e9267fe
[Firefox: 3 hits: 06-24 to 07-08]
none[4] Win2K-f 31 of 33 23:46:56 23:46:56 1 none none:none
PolyEnE| none trace
53bfe15e91
[Firefox:551 hits: 06-17 to 07-10]
b7082104e4
[Firefox:32 hits: 06-18 to 07-09]
none[4]
none [4]
Win2K-f 8 of 33 10:46:34 23:47:55 3 none none:none
none:none
tElock|
tElock|
none
none
trace
trace
5913ead1a1
NEW
ac99506c36
NEW
5913ead1a1 [1]
none [4]
Win2K-f 31 of 33 10:03:45 10:03:45 1 none ASM:Graph
none:none
Armadillo|
tElock|
lines=82
none
trace
trace
a08f3b74a4
[Firefox:182 hits: 06-18 to 07-10]
aa5bf057fc
NEW
a08f3b74a4 [1]
none [none]
Win2K-f 32 of 33 07:12:45 07:12:45 1 none ASM:Graph
none:none
Armadillo|
none|none
lines=81
none
trace
none
8a93930ea8
[Firefox: 5 hits: 07-06 to 07-10]
bc94f66052
[Firefox: 5 hits: 07-06 to 07-10]
none[none]
none [none]
Win2K-f 32 of 33 08:02:30 08:02:30 1 none none:none
none:none
none|none
none|none
none
none
none
none
4c3df24b32
[Firefox:75 hits: 06-17 to 07-10]
8390780c27
[Firefox:15 hits: 06-18 to 07-10]
4c3df24b32 [1]
none [4]
Win2K-f 30 of 32 02:51:09 02:51:09 1 none ASM:Graph
none:none
Armadillo|
tElock|
lines=81
none
trace
trace
d86f2db5f5
NEW
none[none] Win2K-f 18 of 33 01:37:08 01:37:08 1 none none:none
none|none none none
716df12201
NEW
f4654210bb
NEW
none[none]
none [none]
WinXP 2 of 33 20:33:18 20:33:18 1 none none:none
none:none
none|none
none|none
none
none
none
none
7bdeb65dd2
NEW
e2b84629ac
NEW
none[none]
none [none]
Win2K-f 31 of 33 17:23:40 17:23:40 1 none none:none
none:none
none|none
none|none
none
none
none
none
b5919931fe
[Firefox:103 hits: 06-20 to 07-10]
bca9e0fb5f
[Firefox:10 hits: 06-18 to 07-10]
b5919931fe [1]
none [4]
Win2K-f 31 of 32 09:27:46 09:27:46 1 none ASM:Graph
none:none
ASProtect|
PolyEnE|
lines=90
none
trace
trace
533d15b5ce
[Firefox: 5 hits: 06-21 to 07-07]
none[4] Win2K-f 30 of 33 04:44:48 04:44:48 1 none none:none
tElock| none trace
a12cab51ef
[Firefox:1106 hits: 05-01 to 07-10]
40f7f463c4 [0] WinXP 29 of 29 11:52:07 14:35:05 2 none ASM:Graph
ASPack| 54% lines=281
embedded dns
trace
1b94c1cc14
[Firefox: 2 hits: 07-01 to 07-06]
none[none] Win2K-f 31 of 33 05:52:58 05:52:58 1 none none:none
none|none none none
4c3df24b32
[Firefox:75 hits: 06-17 to 07-10]
4c3df24b32 [1] Win2K-f 0 of 33 02:51:09 02:51:09 1 none ASM:Graph
Armadillo| 47% lines=81 trace
3ed16ae12d
[Firefox: 4 hits: 06-19 to 07-09]
3ed16ae12d [1] WinXP 3 of 33 05:11:32 05:11:32 1 none ASM:Graph
Armadillo| 47% lines=81 trace
6c080c6d8c
NEW
b5349a2a0f
NEW
none[none]
none [none]
Win2K-f 30 of 33 20:59:37 20:59:37 1 none none:none
none:none
none|none
none|none
none
none
none
none
6d86a1ff5a
[Firefox:12 hits: 06-25 to 07-10]
none[none] Win2K-f
WinXP
28 of 33 01:58:44 22:50:15 2 none none:none
none|none none none
4d244a981f
[Firefox: 7 hits: 03-30 to 07-10]
b66b85d85f [0] WinXP 30 of 31 04:12:55 04:12:55 1 none ASM:Graph
PolyEnE| 100% lines=129 trace
741e3b03b3
[Firefox:142 hits: 09-28 to 07-10]
e0197e8a64 [0] WinXP 31 of 32 05:44:45 17:00:56 5 none ASM:Graph
none|none 100% lines=62 trace
6d86a1ff5a
[Firefox:12 hits: 06-25 to 07-10]
7f6e032fc0
[Firefox:12 hits: 06-25 to 07-10]
none[none]
none [none]
Win2K-f
WinXP
31 of 33 01:58:44 22:50:15 2 none none:none
none:none
none|none
none|none
none
none
none
none
67e640fc3e
NEW
none[none] Win2K-f 24 of 33 13:44:49 13:44:49 1 none none:none
none|none none none
831f4ee0a7
[Firefox:690 hits: 07-11 to 07-10]
eb7546c600 [0] WinXP 29 of 29 03:12:44 03:12:44 1 none ASM:Graph
none|none 100% lines=61 trace
533d15b5ce
[Firefox: 5 hits: 06-21 to 07-07]
58c343a8d8
[Firefox: 5 hits: 06-21 to 07-07]
none[4]
58c343a8d8[1]
Win2K-f 28 of 33 04:44:48 04:44:48 1 none none:none
ASM:Graph
tElock|
Armadillo|
47% none
lines=82
trace
trace
81264c16dd
NEW
9a91743938
NEW
none[none]
none [none]
Win2K-f 29 of 33 14:44:04 14:44:04 1 none none:none
none:none
none|none
none|none
none
none
none
none
2ba0c64b36
NEW
none[none] WinXP 31 of 33 21:24:23 21:24:23 1 none none:none
none|none none none
8a93930ea8
[Firefox: 5 hits: 07-06 to 07-10]
none[none] Win2K-f 24 of 33 08:02:30 08:02:30 1 none none:none
none|none none none
7e30e79ece
NEW
none[none] WinXP 33 of 33 10:21:55 10:21:55 1 none none:none
none|none none none
5364c612fa
NEW
53bfe15e91
[Firefox:551 hits: 06-17 to 07-10]
b5919931fe
[Firefox:103 hits: 06-20 to 07-10]
none[none]
none [4]
b5919931fe[1]
Win2K-f 0 of 32 00:17:22 22:26:52 5 none none:none
none:none
ASM:Graph
none|none
tElock|
ASProtect|
48% none
none
lines=90
none
trace
trace
93385541f3
[Firefox: 6 hits: 06-22 to 06-30]
none[4] WinXP 32 of 32 05:37:20 10:50:08 2 none none:none
none|none none trace
dd98c3c108
[Firefox: 5 hits: 06-24 to 07-06]
dd98c3c108 [1] Win2K-f 29 of 33 21:49:47 21:49:47 1 none ASM:Graph
Armadillo| 47% lines=82 trace
2110c8100f
[Firefox: 7 hits: 06-19 to 07-10]
b5919931fe
[Firefox:103 hits: 06-20 to 07-10]
e818015a89
[Firefox: 6 hits: 06-23 to 07-10]
none[4]
b5919931fe[1]
e818015a89[1]
Win2K-f 0 of 0 14:49:18 14:49:18 1 none none:none
ASM:Graph
ASM:Graph
PolyEnE|
ASProtect|
Armadillo|
47% none
lines=90
lines=81
trace
trace
trace
1a2c0e6130
[Firefox:472 hits: 12-31 to 07-10]
048df78048 [0] WinXP 29 of 29 04:12:07 14:11:01 4 none ASM:Graph
none|none 100% lines=61 trace
29ee96abb2
NEW
9d293b3f67
NEW
a014934a72
[Firefox:68 hits: 06-28 to 07-09]
none[none]
none [none]
none [none]
Win2K-f 27 of 33 10:54:21 10:54:21 1 none none:none
none:none
none:none
none|none
none|none
none|none
none
none
none
none
none
none
53bfe15e91
[Firefox:551 hits: 06-17 to 07-10]
a08f3b74a4
[Firefox:182 hits: 06-18 to 07-10]
none[4]
a08f3b74a4[1]
Win2K-f
WinXP
0 of 33 01:12:53 17:09:10 8 none none:none
ASM:Graph
tElock|
Armadillo|
47% none
lines=81
trace
trace
90719ceab6
NEW
none[none] WinXP 32 of 33 15:08:32 15:08:34 2 none none:none
none|none none none
bce12aa21f
[Firefox:23 hits: 05-12 to 07-07]
none[4] WinXP 31 of 33 01:21:48 01:21:48 1 none none:none
PolyEnE| none trace
a483ba8aa1
[Firefox: 4 hits: 07-09 to 07-09]
none[none] WinXP 33 of 33 01:10:22 01:10:22 1 none none:none
none|none none none
484fba02dc
NEW
none[none] WinXP 30 of 33 13:39:02 13:39:02 1 none none:none
none|none none none
5601dcf617
NEW
d0c1f3c8c7
NEW
none[none]
none [none]
Win2K-f 30 of 32 22:07:08 22:07:08 1 none none:none
none:none
none|none
none|none
none
none
none
none
2d52cb56a4
NEW
none[none] WinXP 31 of 33 18:53:50 18:53:50 1 none none:none
none|none none none
744e090fa5
NEW
none[none] Win2K-f 30 of 33 06:22:34 06:22:34 1 none none:none
none|none none none
bcced879a4
NEW
none[none] Win2K-f 32 of 33 20:19:55 20:19:55 1 none none:none
none|none none none
83b1886c68
NEW
none[none] WinXP 33 of 33 16:31:44 16:31:44 1 none none:none
none|none none none
3516e33174
NEW
none[none] Win2K-f 32 of 33 21:20:59 21:20:59 1 none none:none
none|none none none
5364c612fa
NEW
none[none] Win2K-f 30 of 32 22:26:52 22:26:52 1 none none:none
none|none none none
8a75955033
[Firefox: 7 hits: 06-20 to 07-10]
9276c8b36b
[Firefox: 7 hits: 06-20 to 07-10]
none[4]
9276c8b36b[1]
WinXP 28 of 32 20:06:58 20:06:58 1 none none:none
ASM:Graph
tElock|
Armadillo|
47% none
lines=81
trace
trace
3373948767
[Firefox: 5 hits: 07-03 to 07-07]
c73f738c30
[Firefox: 5 hits: 07-03 to 07-07]
none[none]
none [none]
WinXP 29 of 33 11:27:30 11:27:30 1 none none:none
none:none
none|none
none|none
none
none
none
none
df17a625ee
[Firefox:482 hits: 05-04 to 07-10]
9bbdd086c5 [0] WinXP 29 of 29 12:01:52 12:01:52 1 none ASM:Graph
ASPack| 49% lines=186
embedded dns
trace
0dc39cd3c1
[Firefox: 3 hits: 06-27 to 07-10]
none[none] Win2K-f 0 of 0 17:55:35 17:55:35 1 none none:none
none|none none none
b22b2e6f96
[Firefox: 2 hits: 09-12 to 03-07]
none[4] WinXP 22 of 32 12:51:20 12:51:20 1 none none:none
ASPack| none trace
1b94c1cc14
[Firefox: 2 hits: 07-01 to 07-06]
62728ad1cd
[Firefox: 2 hits: 07-01 to 07-06]
none[none]
none [none]
Win2K-f 29 of 33 05:52:58 05:52:58 1 none none:none
none:none
none|none
none|none
none
none
none
none
716df12201
NEW
none[none] WinXP 32 of 33 20:33:18 20:33:18 1 none none:none
none|none none none
7f66e51c85
NEW
9d12fe9d3b
NEW
none[none]
none [none]
Win2K-f 29 of 32 14:15:25 14:15:25 1 none none:none
none:none
none|none
none|none
none
none
none
none
986b59708d
[Firefox:302 hits: 05-03 to 06-26]
8a00217866 [0] WinXP 29 of 29 09:07:03 09:07:03 1 none ASM:Graph
PolyEnE| 100% lines=57 trace
435321cd07
NEW
dbea9045a1
NEW
none[none]
none [none]
Win2K-f 28 of 32 11:40:19 11:40:19 1 none none:none
none:none
none|none
none|none
none
none
none
none
2110c8100f
[Firefox: 7 hits: 06-19 to 07-10]
none[4] Win2K-f 29 of 32 14:49:18 14:49:18 1 none none:none
PolyEnE| none trace
27b945de66
[Firefox: 9 hits: 06-20 to 07-06]
none[4] WinXP 31 of 32 03:32:27 03:32:27 1 none none:none
none|none none trace
b2aa60cb38
NEW
none[none] Win2K-f 30 of 33 09:26:41 09:26:41 1 none none:none
none|none none none
d6df3972a0
[Firefox:218 hits: 05-02 to 07-03]
39eeef52a4 [0] WinXP 29 of 29 07:28:12 07:28:57 2 none ASM:Graph
PolyEnE| 100% lines=65 trace
b5919931fe
[Firefox:103 hits: 06-20 to 07-10]
bca9e0fb5f
[Firefox:10 hits: 06-18 to 07-10]
e53a9ea82e
[Firefox:10 hits: 06-18 to 07-10]
b5919931fe [1]
none [4]
e53a9ea82e[1]
Win2K-f 23 of 33 09:27:46 09:27:46 1 none ASM:Graph
none:none
ASM:Graph
ASProtect|
PolyEnE|
Armadillo|
47% lines=90
none
lines=81
trace
trace
trace
5126de19b5
NEW
none[none] Win2K-f
WinXP
29 of 33 15:13:27 15:14:55 2 none none:none
none|none none none
2ba0c64b36
NEW
5481cd6a4f
NEW
none[none]
none [none]
WinXP 30 of 33 21:24:23 21:24:23 1 none none:none
none:none
none|none
none|none
none
none
none
none
29ee96abb2
NEW
none[none] Win2K-f 31 of 33 10:54:21 10:54:21 1 none none:none
none|none none none
53bfe15e91
[Firefox:551 hits: 06-17 to 07-10]
73f1082158
[Firefox:265 hits: 06-18 to 07-10]
e07c29c4ae
[Firefox:80 hits: 06-19 to 07-10]
none[4]
73f1082158[1]
e07c29c4ae[1]
WinXP 0 of 33 04:23:45 15:07:22 2 none none:none
ASM:Graph
ASM:Graph
tElock|
Armadillo|
FSG|
48% none
lines=81
lines=92
trace
trace
trace
8a75955033
[Firefox: 7 hits: 06-20 to 07-10]
none[4] WinXP 29 of 32 20:06:58 20:06:58 1 none none:none
tElock| none trace
435321cd07
NEW
none[none] Win2K-f 32 of 33 11:40:19 11:40:19 1 none none:none
none|none none none
5913ead1a1
NEW
5913ead1a1 [1] Win2K-f 29 of 33 10:03:45 10:03:45 1 none ASM:Graph
Armadillo| 48% lines=82 trace
7bdeb65dd2
NEW
none[none] Win2K-f 31 of 33 17:23:40 17:23:40 1 none none:none
none|none none none
442989bf73
NEW
none[none] WinXP 32 of 33 12:51:10 12:51:10 1 none none:none
none|none none none
8178c88f5e
[Firefox: 4 hits: 07-08 to 07-10]
none[none] WinXP 33 of 33 03:32:02 03:32:02 1 none none:none
none|none none none
5601dcf617
NEW
none[none] Win2K-f 30 of 33 22:07:08 22:07:08 1 none none:none
none|none none none
0dc39cd3c1
[Firefox: 3 hits: 06-27 to 07-10]
a120847406
[Firefox: 3 hits: 06-27 to 07-10]
none[none]
none [none]
Win2K-f 32 of 33 17:55:35 17:55:35 1 none none:none
none:none
none|none
none|none
none
none
none
none
7f60162c2c
[Firefox:1406 hits: 12-31 to 07-10]
1aad8e4632 [0] WinXP 25 of 25 03:48:19 23:57:31 4 none ASM:Graph
PolyEnE| 100% lines=93
embedded dns
trace
5097c25982
NEW
a8b87527e7
NEW
none[none]
none [none]
WinXP 29 of 33 08:27:50 08:27:50 1 none none:none
none:none
none|none
none|none
none
none
none
none
3373948767
[Firefox: 5 hits: 07-03 to 07-07]
none[none] WinXP 30 of 33 11:27:30 11:27:30 1 none none:none
none|none none none
7ba9e53288
NEW
d2e7fab9c3
NEW
none[none]
none [none]
WinXP 29 of 33 23:41:14 23:41:14 1 none none:none
none:none
none|none
none|none
none
none
none
none
965c2ca7e5
NEW
none[none] WinXP 31 of 33 20:11:16 20:11:16 1 none none:none
none|none none none
67e640fc3e
NEW
795b90d8a8
NEW
none[none]
none [none]
Win2K-f 4 of 33 13:44:49 13:44:49 1 none none:none
none:none
none|none
none|none
none
none
none
none
7f66e51c85
NEW
none[none] Win2K-f 32 of 33 14:15:25 14:15:25 1 none none:none
none|none none none
f7db239714
NEW
none[none] WinXP 31 of 32 05:42:08 05:42:08 1 none none:none
none|none none none
dc20b6fe59
[Firefox: 5 hits: 06-23 to 07-08]
dc20b6fe59 [1] Win2K-f 0 of 0 14:07:40 14:07:40 1 none ASM:Graph
Armadillo| 47% lines=81 trace
dc20b6fe59
[Firefox: 5 hits: 06-23 to 07-08]
f97070ef2b
[Firefox: 5 hits: 06-23 to 07-08]
dc20b6fe59 [1]
none [4]
Win2K-f 0 of 0 14:07:40 14:07:40 1 none ASM:Graph
none:none
Armadillo|
PolyEnE|
lines=81
none
trace
trace
3ed16ae12d
[Firefox: 4 hits: 06-19 to 07-09]
79c01ec060
[Firefox: 8 hits: 06-18 to 07-09]
3ed16ae12d [1]
none [4]
WinXP 33 of 33 05:11:32 05:11:32 1 none ASM:Graph
none:none
Armadillo|
tElock|
lines=81
none
trace
trace
7d99b0e910
[Firefox:3178 hits: 12-31 to 07-10]
7a70e1b592 [0] WinXP 26 of 28 06:23:11 20:04:33 5 none ASM:Graph
PolyEnE| 99% lines=68 trace
c87f230134
NEW
none[none] Win2K-f 30 of 33 04:40:55 04:40:55 1 none none:none
none|none none none
b7c507fb59
NEW
none[none] Win2K-f 2 of 33 21:21:15 21:21:15 1 none none:none
none|none none none
366148f7b7
NEW
none[none] WinXP 31 of 33 08:29:36 08:29:36 1 none none:none
none|none none none
81264c16dd
NEW
none[none] Win2K-f 31 of 33 14:44:04 14:44:04 1 none none:none
none|none none none
29ee96abb2
NEW
9d293b3f67
NEW
none[none]
none [none]
Win2K-f 29 of 33 10:54:21 10:54:21 1 none none:none
none:none
none|none
none|none
none
none
none
none
a92e3f8fc8
[Firefox:117 hits: 05-03 to 07-08]
dfe02a1e52 [0] WinXP 26 of 28 04:38:27 04:38:27 1 none ASM:Graph
PolyEnE| 99% lines=68 trace
3516e33174
NEW
d093c44748
NEW
none[none]
none [none]
Win2K-f 29 of 33 21:20:59 21:20:59 1 none none:none
none:none
none|none
none|none
none
none
none
none
dae77d66f3
[Firefox: 2 hits: 07-08 to 07-08]
none[none] WinXP 31 of 32 08:04:27 17:14:12 2 none none:none
none|none none none