Welcome to the Cyber-TA
Daily Malware Binary DIGEST Summary Page



16 July 2008

All data collection and analyses summarized in this page were 100% AUTO-GENERATED.

DEVELOPERS: Vinod Yegneswaran (SRI), Phillip Porras (SRI), Hassen Saidi (SRI)
Monirul Sharif (Georgia-Tech), Arvind Narayanan (University of Texas at Austin)

The data on this website is provided for research purposes only. It is provided
for your personal use only and is supplied AS IS, WITHOUT WARRANTY OF ANY KIND.
Use or reliance on this data is at your own risk.



Packed
MD5
UnPacket
MD5
Victim
OS
AntiVirus
Hit-Cnt
First
Encounter
Last
Encounter
Freq
Cnt
Behavioral
Clusters
Unpacked
Egg.asm
Packer
Fingerprint
API
Resolution
String
Cnt
Syscall
Trace
8ae058b2d0
[Firefox: 5 hits: 05-01 to 06-27]
e6a9383b75 [0] WinXP 30 of 32 16:26:58 16:26:58 1 none ASM:Graph
none|none 97% lines=59 trace
53bfe15e91
[Firefox:680 hits: 06-17 to 07-15]
73f1082158
[Firefox:326 hits: 06-18 to 07-15]
none[4]
73f1082158[1]
WinXP
Win2K-f
0 of 32 02:07:06 18:44:26 13 none none:none
ASM:Graph
tElock|
Armadillo|
47% none
lines=81
trace
trace
53bfe15e91
[Firefox:680 hits: 06-17 to 07-15]
none[4] WinXP
Win2K-f
33 of 33 02:07:06 19:07:41 22 none none:none
tElock| none trace
dfcd73f7a7
[Firefox: 6 hits: 07-03 to 07-13]
none[none] Win2K-f 30 of 33 00:39:23 00:39:23 1 none none:none
none|none none none
2b402a57aa
NEW
none[none] WinXP 33 of 33 10:11:27 10:11:27 1 none none:none
none|none none none
d01b5333e5
NEW
none[none] WinXP 33 of 33 04:10:51 04:10:51 1 none none:none
none|none none none
3a671a0880
NEW
none[none] WinXP 33 of 33 06:19:25 06:19:25 1 none none:none
none|none none none
df17a625ee
[Firefox:488 hits: 05-04 to 07-15]
9bbdd086c5 [0] WinXP 29 of 29 21:17:57 21:17:57 1 none ASM:Graph
ASPack| 49% lines=186
embedded dns
trace
23c32fbd78
[Firefox: 9 hits: 05-03 to 07-15]
none[4] Win2K-f 16 of 31 05:02:36 05:02:36 1 none none:none
PeCompact| none trace
53bfe15e91
[Firefox:680 hits: 06-17 to 07-15]
b7082104e4
[Firefox:47 hits: 06-18 to 07-15]
none[4]
none [4]
Win2K-f
WinXP
8 of 33 02:36:14 13:49:53 2 none none:none
none:none
tElock|
tElock|
none
none
trace
trace
5aeb9abc92
[Firefox: 2 hits: 12-27 to 07-15]
none[none] Win2K-f 26 of 32 14:10:27 14:10:27 1 none none:none
none|none none none
5913ead1a1
[Firefox: 3 hits: 06-18 to 07-13]
ac99506c36
[Firefox: 3 hits: 06-18 to 07-13]
5913ead1a1 [1]
none [4]
WinXP 31 of 33 11:07:08 12:26:19 2 none ASM:Graph
none:none
Armadillo|
tElock|
lines=82
none
trace
trace
f12583a6d2
[Firefox:97 hits: 07-13 to 07-15]
none[none] Win2K-f 20 of 32 04:08:40 15:24:50 2 none none:none
none|none none none
a1d26a15e6
NEW
none[none] WinXP 32 of 32 09:31:21 09:31:21 1 none none:none
none|none none none
ee53a27fe7
NEW
none[none] WinXP 30 of 33 09:54:36 09:54:36 1 none none:none
none|none none none
168aab35a3
[Firefox:54 hits: 06-17 to 07-14]
none[4] WinXP 31 of 33 05:43:51 21:39:03 2 none none:none
tElock| none trace
041f8c47c9
NEW
none[none] WinXP 32 of 33 08:03:34 08:03:34 1 none none:none
none|none none none
5cf8610602
NEW
none[none] WinXP 33 of 33 14:21:54 14:21:54 1 none none:none
none|none none none
a12cab51ef
[Firefox:1119 hits: 05-01 to 07-15]
40f7f463c4 [0] WinXP 29 of 29 06:37:05 18:04:22 3 none ASM:Graph
ASPack| 54% lines=281
embedded dns
trace
53bfe15e91
[Firefox:680 hits: 06-17 to 07-15]
73f1082158
[Firefox:326 hits: 06-18 to 07-15]
e07c29c4ae
[Firefox:100 hits: 06-19 to 07-15]
none[4]
73f1082158[1]
e07c29c4ae[1]
WinXP 0 of 33 02:07:06 18:44:26 2 none none:none
ASM:Graph
ASM:Graph
tElock|
Armadillo|
FSG|
48% none
lines=81
lines=92
trace
trace
trace
c78281a815
[Firefox: 3 hits: 06-20 to 07-07]
none[4] Win2K-f 29 of 32 14:49:22 14:49:22 1 none none:none
PolyEnE| none trace
99c1c370c4
NEW
ac59067d9b
NEW
none[none]
none [none]
Win2K-f 31 of 33 15:08:47 15:08:47 1 none none:none
none:none
none|none
none|none
none
none
none
none
03f912899b
[Firefox:44 hits: 12-14 to 07-13]
83893bd25d [0] WinXP 32 of 32 12:54:26 16:27:55 2 none ASM:Graph
none|none 100% lines=65 trace
85ef47d231
NEW
none[none] WinXP 33 of 33 06:49:49 06:49:49 1 none none:none
none|none none none
5913ead1a1
[Firefox: 3 hits: 06-18 to 07-13]
5913ead1a1 [1] WinXP 29 of 33 11:07:08 12:26:19 2 none ASM:Graph
Armadillo| 48% lines=82 trace
cce9566ceb
[Firefox:30 hits: 06-12 to 07-15]
none[4] WinXP 31 of 32 04:03:36 04:03:36 1 none none:none
PolyEnE| none trace
261ec21a14
NEW
none[none] Win2K-f 30 of 33 03:06:56 03:06:56 1 none none:none
none|none none none
8178c88f5e
[Firefox: 6 hits: 07-08 to 07-12]
none[none] WinXP 33 of 33 23:48:44 23:48:44 1 none none:none
none|none none none
7fdfe363d5
[Firefox:2933 hits: 12-31 to 07-15]
10862ea8b8 [0] Win2K-f
WinXP
25 of 28 00:26:20 21:41:11 12 none ASM:Graph
FSG| 95% lines=1933
embedded dns
trace
168aab35a3
[Firefox:54 hits: 06-17 to 07-14]
4c3df24b32
[Firefox:91 hits: 06-17 to 07-15]
none[4]
4c3df24b32[1]
WinXP 0 of 33 05:43:51 05:43:51 1 none none:none
ASM:Graph
tElock|
Armadillo|
47% none
lines=81
trace
trace
7f60162c2c
[Firefox:1419 hits: 12-31 to 07-15]
1aad8e4632 [0] WinXP 25 of 25 17:58:14 17:58:14 1 none ASM:Graph
PolyEnE| 100% lines=93
embedded dns
trace
57ce4acac2
[Firefox:58 hits: 06-17 to 07-14]
83f26f5044
[Firefox: 8 hits: 06-20 to 07-12]
57ce4acac2 [1]
none [4]
Win2K-f 29 of 32 14:19:34 14:19:34 1 none ASM:Graph
none:none
Armadillo|
tElock|
lines=81
none
trace
trace
168aab35a3
[Firefox:54 hits: 06-17 to 07-14]
667f0c59f3
[Firefox: 3 hits: 07-04 to 07-14]
none[4]
none [none]
WinXP 31 of 33 21:39:03 21:39:03 1 none none:none
none:none
tElock|
none|none
none
none
trace
none
0a0261b96a
[Firefox: 7 hits: 07-16 to 11-13]
none[none] Win2K-f 24 of 29 07:10:58 07:10:58 1 none none:none
none|none none none
277034540e
NEW
ea43badccf
NEW
none[none]
none [none]
Win2K-f 31 of 33 11:27:07 11:27:07 1 none none:none
none:none
none|none
none|none
none
none
none
none
831f4ee0a7
[Firefox:701 hits: 07-11 to 07-15]
eb7546c600 [0] WinXP 29 of 29 05:58:10 09:02:33 2 none ASM:Graph
none|none 100% lines=61 trace
62029f0cf9
NEW
none[none] WinXP 31 of 33 00:38:33 00:38:33 1 none none:none
none|none none none
3ae357d17b
[Firefox:737 hits: 05-01 to 07-10]
462a7be171 [0] WinXP 29 of 29 15:17:02 15:17:02 1 none ASM:Graph
PolyEnE| 99% lines=73 trace
617a73853f
NEW
none[none] WinXP 31 of 33 09:27:08 09:27:08 1 none none:none
none|none none none
7d99b0e910
[Firefox:3204 hits: 12-31 to 07-15]
7a70e1b592 [0] WinXP 26 of 28 12:26:36 15:49:50 4 none ASM:Graph
PolyEnE| 99% lines=68 trace
99c1c370c4
NEW
ac59067d9b
NEW
b5919931fe
[Firefox:128 hits: 06-20 to 07-15]
none[none]
none [none]
b5919931fe[1]
Win2K-f 0 of 32 08:25:04 15:08:47 3 none none:none
none:none
ASM:Graph
none|none
none|none
ASProtect|
48% none
none
lines=90
none
none
trace
93385541f3
[Firefox: 9 hits: 06-22 to 07-12]
none[4] WinXP 32 of 32 08:47:27 08:47:27 1 none none:none
none|none none trace
6261f5268a
NEW
none[none] WinXP 32 of 33 08:50:01 08:50:25 2 none none:none
none|none none none
57ce4acac2
[Firefox:58 hits: 06-17 to 07-14]
57ce4acac2 [1] Win2K-f 0 of 33 06:46:47 14:19:34 2 none ASM:Graph
Armadillo| 47% lines=81 trace
366148f7b7
[Firefox: 5 hits: 07-06 to 07-14]
none[none] WinXP 31 of 33 01:47:13 04:46:36 2 none none:none
none|none none none
511dcda8ce
NEW
none[none] WinXP 32 of 33 21:20:01 21:20:01 1 none none:none
none|none none none
99c1c370c4
NEW
none[none] Win2K-f 31 of 33 15:08:47 15:08:47 1 none none:none
none|none none none
1a2c0e6130
[Firefox:484 hits: 12-31 to 07-15]
048df78048 [0] WinXP 29 of 29 09:52:28 16:12:51 3 none ASM:Graph
none|none 100% lines=61 trace
53bfe15e91
[Firefox:680 hits: 06-17 to 07-15]
a08f3b74a4
[Firefox:219 hits: 06-18 to 07-15]
none[4]
a08f3b74a4[1]
Win2K-f
WinXP
0 of 33 03:56:01 19:07:41 6 none none:none
ASM:Graph
tElock|
Armadillo|
47% none
lines=81
trace
trace
a483ba8aa1
[Firefox: 5 hits: 07-09 to 07-11]
none[none] WinXP 33 of 33 00:43:45 00:43:45 1 none none:none
none|none none none
277034540e
NEW
none[none] Win2K-f 28 of 33 11:27:07 11:27:07 1 none none:none
none|none none none
38fa4c6994
NEW
none[none] WinXP 31 of 33 06:05:57 06:05:57 1 none none:none
none|none none none
f2b9377cac
NEW
none[none] WinXP 31 of 33 01:08:18 01:08:18 1 none none:none
none|none none none