Welcome to the Cyber-TA
Daily Malware Binary DIGEST Summary Page



17 July 2008

All data collection and analyses summarized in this page were 100% AUTO-GENERATED.

DEVELOPERS: Vinod Yegneswaran (SRI), Phillip Porras (SRI), Hassen Saidi (SRI)
Monirul Sharif (Georgia-Tech), Arvind Narayanan (University of Texas at Austin)

The data on this website is provided for research purposes only. It is provided
for your personal use only and is supplied AS IS, WITHOUT WARRANTY OF ANY KIND.
Use or reliance on this data is at your own risk.



Packed
MD5
UnPacket
MD5
Victim
OS
AntiVirus
Hit-Cnt
First
Encounter
Last
Encounter
Freq
Cnt
Behavioral
Clusters
Unpacked
Egg.asm
Packer
Fingerprint
API
Resolution
String
Cnt
Syscall
Trace
53bfe15e91
[Firefox:702 hits: 06-17 to 07-16]
73f1082158
[Firefox:339 hits: 06-18 to 07-16]
none[4]
73f1082158[1]
WinXP
Win2K-f
0 of 32 01:00:50 23:47:39 15 none none:none
ASM:Graph
tElock|
Armadillo|
47% none
lines=81
trace
trace
62848131e5
NEW
98cd9b1699
NEW
b44801de4f
NEW
ba05388a97
NEW
none[none]
none [none]
none [none]
none [none]
Win2K-f 23 of 33 13:51:32 13:51:32 1 none none:none
none:none
none:none
none:none
none|none
none|none
none|none
none|none
none
none
none
none
none
none
none
none
afbe7867fa
NEW
none[none] Win2K-f 30 of 33 16:53:08 16:53:08 1 none none:none
none|none none none
dfcd73f7a7
[Firefox: 7 hits: 07-03 to 07-16]
none[none] Win2K-f 30 of 33 07:13:14 07:13:14 1 none none:none
none|none none none
53bfe15e91
[Firefox:702 hits: 06-17 to 07-16]
none[4] WinXP
Win2K-f
33 of 33 01:00:50 23:47:39 27 none none:none
tElock| none trace
53bfe15e91
[Firefox:702 hits: 06-17 to 07-16]
b7082104e4
[Firefox:49 hits: 06-18 to 07-16]
none[4]
none [4]
Win2K-f 8 of 33 21:36:27 21:36:27 1 none none:none
none:none
tElock|
tElock|
none
none
trace
trace
063528c808
NEW
none[none] Win2K-f 24 of 33 09:55:13 09:55:13 1 none none:none
none|none none none
8e4e9c46a1
NEW
none[none] WinXP 33 of 33 15:18:54 15:18:54 1 none none:none
none|none none none
4c3df24b32
[Firefox:92 hits: 06-17 to 07-16]
8390780c27
[Firefox:19 hits: 06-18 to 07-15]
4c3df24b32 [1]
none [4]
Win2K-f 30 of 32 03:03:07 03:03:07 1 none ASM:Graph
none:none
Armadillo|
tElock|
lines=81
none
trace
trace
8a93930ea8
[Firefox: 7 hits: 07-06 to 07-14]
bc94f66052
[Firefox: 7 hits: 07-06 to 07-14]
none[none]
none [none]
WinXP 32 of 33 02:37:27 02:37:27 1 none none:none
none:none
none|none
none|none
none
none
none
none
fce9309509
[Firefox: 2 hits: 07-03 to 07-09]
none[none] WinXP 30 of 33 18:35:10 18:35:10 1 none none:none
none|none none none
2b8c0ae381
NEW
none[none] WinXP 32 of 33 00:15:29 00:15:29 1 none none:none
none|none none none
9974f322de
NEW
none[none] WinXP 30 of 33 17:00:04 17:00:04 1 none none:none
none|none none none
8ae2cc2e80
[Firefox:62 hits: 05-06 to 07-09]
c24ca14cda [0] WinXP 29 of 29 16:11:44 16:11:44 1 none ASM:Graph
PolyEnE| 99% lines=68 trace
168aab35a3
[Firefox:56 hits: 06-17 to 07-16]
none[4] WinXP 31 of 33 02:43:19 02:43:19 1 none none:none
tElock| none trace
2aa59ba425
[Firefox:43 hits: 06-30 to 06-19]
2aa59ba425 [1] Win2K-f 28 of 30 10:22:28 10:22:28 1 none ASM:Graph
ASPack| lines=10 trace
03f912899b
[Firefox:46 hits: 12-14 to 07-16]
83893bd25d [0] WinXP 32 of 32 11:19:49 15:45:27 2 none ASM:Graph
none|none 100% lines=65 trace
8414083c68
NEW
none[none] WinXP 29 of 33 16:49:03 16:49:03 1 none none:none
none|none none none
7fdfe363d5
[Firefox:2945 hits: 12-31 to 07-16]
10862ea8b8 [0] Win2K-f
WinXP
25 of 28 00:08:37 23:36:43 20 none ASM:Graph
FSG| 95% lines=1933
embedded dns
trace
4c3df24b32
[Firefox:92 hits: 06-17 to 07-16]
4c3df24b32 [1] WinXP
Win2K-f
0 of 33 02:43:19 03:03:07 2 none ASM:Graph
Armadillo| 47% lines=81 trace
741e3b03b3
[Firefox:160 hits: 09-28 to 07-15]
e0197e8a64 [0] WinXP 31 of 32 02:43:07 23:26:23 6 none ASM:Graph
none|none 100% lines=62 trace
5f11b319ef
[Firefox: 4 hits: 07-07 to 07-15]
a3f631e410
[Firefox: 4 hits: 07-07 to 07-15]
none[none]
none [none]
WinXP 31 of 33 05:21:29 05:21:29 1 none none:none
none:none
none|none
none|none
none
none
none
none
831f4ee0a7
[Firefox:703 hits: 07-11 to 07-16]
eb7546c600 [0] WinXP 29 of 29 01:17:25 19:57:26 9 none ASM:Graph
none|none 100% lines=61 trace
8a93930ea8
[Firefox: 7 hits: 07-06 to 07-14]
none[none] WinXP 24 of 33 02:37:27 02:37:27 1 none none:none
none|none none none
5f11b319ef
[Firefox: 4 hits: 07-07 to 07-15]
none[none] WinXP 24 of 33 05:21:29 05:21:29 1 none none:none
none|none none none
17028f1eda
[Firefox:21 hits: 09-29 to 07-10]
none[3] WinXP 31 of 32 14:08:18 14:08:18 1 none none:none
tElock| none trace
53bfe15e91
[Firefox:702 hits: 06-17 to 07-16]
73f1082158
[Firefox:339 hits: 06-18 to 07-16]
b5919931fe
[Firefox:131 hits: 06-20 to 07-16]
none[4]
73f1082158[1]
b5919931fe[1]
Win2K-f 0 of 32 11:46:24 22:56:05 2 none none:none
ASM:Graph
ASM:Graph
tElock|
Armadillo|
ASProtect|
48% none
lines=81
lines=90
trace
trace
trace
7ef46e4e16
[Firefox:13 hits: 11-28 to 05-06]
ef2e743fd2 [0] WinXP 31 of 32 09:56:24 09:56:29 2 none ASM:Graph
PolyEnE| 99% lines=74 trace
53bfe15e91
[Firefox:702 hits: 06-17 to 07-16]
57ce4acac2
[Firefox:60 hits: 06-17 to 07-16]
none[4]
57ce4acac2[1]
WinXP
Win2K-f
0 of 33 01:47:56 18:19:46 3 none none:none
ASM:Graph
tElock|
Armadillo|
47% none
lines=81
trace
trace
99c1c370c4
[Firefox: 2 hits: 07-09 to 07-16]
none[none] Win2K-f 31 of 33 22:32:09 22:32:09 1 none none:none
none|none none none
1a2c0e6130
[Firefox:487 hits: 12-31 to 07-16]
048df78048 [0] WinXP 29 of 29 03:04:56 17:45:39 3 none ASM:Graph
none|none 100% lines=61 trace
62848131e5
NEW
98cd9b1699
NEW
b44801de4f
NEW
ba05388a97
NEW
c5622bb285
[Firefox: 8 hits: 06-23 to 07-10]
none[none]
none [none]
none [none]
none [none]
none [4]
Win2K-f 0 of 0 13:51:32 13:51:32 1 none none:none
none:none
none:none
none:none
none:none
none|none
none|none
none|none
none|none
none|none
none
none
none
none
none
none
none
none
none
trace
53bfe15e91
[Firefox:702 hits: 06-17 to 07-16]
a08f3b74a4
[Firefox:225 hits: 06-18 to 07-16]
none[4]
a08f3b74a4[1]
WinXP
Win2K-f
0 of 33 01:09:29 20:15:10 10 none none:none
ASM:Graph
tElock|
Armadillo|
47% none
lines=81
trace
trace
277b6d3bba
NEW
none[none] WinXP 30 of 33 14:21:02 14:27:53 2 none none:none
none|none none none
bce12aa21f
[Firefox:25 hits: 05-12 to 07-13]
none[4] WinXP 31 of 33 13:30:51 13:31:42 2 none none:none
PolyEnE| none trace
a0139d7ad8
[Firefox:451 hits: 05-02 to 07-12]
d9e9662db1 [0] WinXP 29 of 29 17:21:34 17:21:34 1 none ASM:Graph
PolyEnE| 99% lines=68 trace
32a0d7d0e0
[Firefox:47 hits: 05-04 to 07-12]
d791762796 [0] WinXP 29 of 29 10:50:36 10:50:36 1 none ASM:Graph
tElock| 100% lines=81
embedded dns
trace
588b7eb87d
NEW
none[none] WinXP 25 of 32 09:54:32 09:54:32 1 none none:none
none|none none none
62848131e5
NEW
none[none] Win2K-f 22 of 33 13:51:32 13:51:32 1 none none:none
none|none none none
16874933ea
[Firefox:18 hits: 06-18 to 07-15]
76ee340669
[Firefox:18 hits: 06-18 to 07-15]
16874933ea [1]
none [4]
Win2K-f
WinXP
33 of 33 04:31:20 06:38:03 2 none ASM:Graph
none:none
Armadillo|
PolyEnE|
lines=82
none
trace
trace
2b402a57aa
NEW
none[none] WinXP 33 of 33 21:04:55 21:04:55 1 none none:none
none|none none none
3373948767
[Firefox: 6 hits: 07-03 to 07-11]
c73f738c30
[Firefox: 6 hits: 07-03 to 07-11]
none[none]
none [none]
Win2K-f 29 of 33 00:15:46 00:15:46 1 none none:none
none:none
none|none
none|none
none
none
none
none
986b59708d
[Firefox:304 hits: 05-03 to 07-13]
8a00217866 [0] WinXP 29 of 29 23:37:28 23:37:28 1 none ASM:Graph
PolyEnE| 100% lines=57 trace
16874933ea
[Firefox:18 hits: 06-18 to 07-15]
16874933ea [1] Win2K-f
WinXP
29 of 33 04:31:20 06:38:03 2 none ASM:Graph
Armadillo| 48% lines=82 trace
1fe9468d89
NEW
none[none] WinXP 29 of 33 09:59:47 10:00:04 2 none none:none
none|none none none
168aab35a3
[Firefox:56 hits: 06-17 to 07-16]
4c3df24b32
[Firefox:92 hits: 06-17 to 07-16]
e07c29c4ae
[Firefox:102 hits: 06-19 to 07-16]
none[4]
4c3df24b32[1]
e07c29c4ae[1]
WinXP 0 of 33 01:47:56 02:43:19 2 none none:none
ASM:Graph
ASM:Graph
tElock|
Armadillo|
FSG|
48% none
lines=81
lines=92
trace
trace
trace
5ba106150e
NEW
801e729de2
NEW
none[none]
none [none]
Win2K-f 31 of 33 17:40:58 17:40:58 1 none none:none
none:none
none|none
none|none
none
none
none
none
99c1c370c4
[Firefox: 2 hits: 07-09 to 07-16]
ac59067d9b
[Firefox: 2 hits: 07-09 to 07-16]
none[none]
none [none]
Win2K-f 31 of 33 22:32:09 22:32:09 1 none none:none
none:none
none|none
none|none
none
none
none
none
3e0057047b
NEW
none[none] WinXP 30 of 33 12:03:09 12:03:09 1 none none:none
none|none none none
8178c88f5e
[Firefox: 7 hits: 07-08 to 07-16]
none[none] WinXP 33 of 33 04:40:59 04:40:59 1 none none:none
none|none none none
7f60162c2c
[Firefox:1420 hits: 12-31 to 07-16]
1aad8e4632 [0] WinXP 25 of 25 06:57:39 06:57:39 1 none ASM:Graph
PolyEnE| 100% lines=93
embedded dns
trace
ea096a2bdf
NEW
none[none] WinXP 31 of 32 06:29:03 16:32:18 3 none none:none
none|none none none
62848131e5
NEW
98cd9b1699
NEW
none[none]
none [none]
Win2K-f 31 of 33 13:51:32 13:51:32 1 none none:none
none:none
none|none
none|none
none
none
none
none
3373948767
[Firefox: 6 hits: 07-03 to 07-11]
none[none] Win2K-f 30 of 33 00:15:46 00:15:46 1 none none:none
none|none none none
62848131e5
NEW
98cd9b1699
NEW
b44801de4f
NEW
none[none]
none [none]
none [none]
Win2K-f 23 of 33 13:51:32 13:51:32 1 none none:none
none:none
none:none
none|none
none|none
none|none
none
none
none
none
none
none
5ba106150e
NEW
none[none] Win2K-f 29 of 33 17:40:58 17:40:58 1 none none:none
none|none none none
965c2ca7e5
[Firefox: 2 hits: 07-10 to 07-11]
none[none] WinXP 31 of 33 06:47:03 06:47:03 1 none none:none
none|none none none
7d99b0e910
[Firefox:3208 hits: 12-31 to 07-16]
7a70e1b592 [0] WinXP 26 of 28 08:24:18 15:50:22 4 none ASM:Graph
PolyEnE| 99% lines=68 trace
366148f7b7
[Firefox: 7 hits: 07-06 to 07-16]
none[none] WinXP 31 of 33 15:07:46 15:07:46 1 none none:none
none|none none none
511dcda8ce
NEW
none[none] Win2K-f 32 of 33 08:49:08 08:49:08 1 none none:none
none|none none none
c83fa9ee1f
NEW
none[none] WinXP 31 of 32 18:20:07 18:20:07 1 none none:none
none|none none none
3e0057047b
NEW
dd11f9e8ab
NEW
none[none]
none [none]
WinXP 32 of 33 12:03:09 12:03:09 1 none none:none
none:none
none|none
none|none
none
none
none
none
b5c46c6fb0
NEW
none[none] Win2K-f 30 of 33 06:26:35 06:26:35 1 none none:none
none|none none none
573d7d0455
NEW
none[none] WinXP 32 of 33 04:40:14 04:40:37 2 none none:none
none|none none none