Welcome to the Cyber-TA
Daily Malware Binary DIGEST Summary Page



22 September 2008

All data collection and analyses summarized in this page were 100% AUTO-GENERATED.

DEVELOPERS: Vinod Yegneswaran (SRI), Phillip Porras (SRI), Hassen Saidi (SRI)
Monirul Sharif (Georgia-Tech), Arvind Narayanan (University of Texas at Austin)

The data on this website is provided for research purposes only. It is provided
for your personal use only and is supplied AS IS, WITHOUT WARRANTY OF ANY KIND.
Use or reliance on this data is at your own risk.



Packed
MD5
UnPacket
MD5
Victim
OS
AntiVirus
Hit-Cnt
First
Encounter
Last
Encounter
Freq
Cnt
Behavioral
Clusters
Unpacked
Egg.asm
Packer
Fingerprint
API
Resolution
String
Cnt
Syscall
Trace
85c039695d
NEW
none[none] Win2K-f 0 of 0 15:34:05 15:34:05 1 none none:none
none|none none none
da00a8e7a1
[Firefox:17 hits: 08-05 to 09-21]
f685f8e027
[Firefox:21 hits: 06-18 to 09-21]
none[none]
f685f8e027[1]
WinXP
Win2K-f
28 of 33 11:48:33 16:41:54 2 none none:none
ASM:Graph
none|none
Armadillo|
48% none
lines=82
none
trace
9c037c69f6
[Firefox: 3 hits: 04-21 to 06-03]
none[3] WinXP 27 of 32 19:40:33 19:40:33 1 none none:none
ASPack| none trace
53bfe15e91
[Firefox:2354 hits: 06-17 to 09-21]
73f1082158
[Firefox:1168 hits: 06-18 to 09-21]
none[4]
73f1082158[1]
Win2K-f
WinXP
0 of 32 00:59:57 23:37:57 17 none none:none
ASM:Graph
tElock|
Armadillo|
47% none
lines=81
trace
trace
22999be88c
[Firefox:20 hits: 04-05 to 09-21]
eda2056971 [0] WinXP 31 of 32 07:43:54 07:43:54 1 none ASM:Graph
PolyEnE| 100% lines=154
embedded dns
trace
c3bc53e727
[Firefox: 2 hits: 09-14 to 09-15]
none[none] WinXP 33 of 36 10:47:27 10:47:27 1 none none:none
none|none none none
61181cf4cb
NEW
none[none] WinXP 0 of 0 16:53:00 16:53:24 2 none none:none
none|none none none
1fcc146d70
[Firefox:46 hits: 01-02 to 09-21]
258fafe892 [0] WinXP 29 of 29 12:39:28 15:16:31 2 none ASM:Graph
PolyEnE| 99% lines=68 trace
e90f8b883b
NEW
none[none] WinXP 0 of 0 10:27:16 10:27:16 1 none none:none
none|none none none
53bfe15e91
[Firefox:2354 hits: 06-17 to 09-21]
none[4] WinXP
Win2K-f
33 of 33 00:19:23 23:37:57 36 none none:none
tElock| none trace
4f64b12bec
NEW
none[none] WinXP 0 of 0 06:13:54 06:13:54 1 none none:none
none|none none none
e4ed963a77
[Firefox: 3 hits: 09-18 to 09-20]
none[none] WinXP 36 of 36 16:11:12 16:11:36 2 none none:none
none|none none none
f04fb66461
[Firefox: 2 hits: 09-12 to 09-12]
none[none] WinXP 35 of 36 02:28:56 02:28:56 1 none none:none
none|none none none
c295ae7d97
NEW
dd1fe232e8
NEW
none[none]
none [none]
Win2K-f 32 of 36 22:07:52 22:07:52 1 none none:none
none:none
none|none
none|none
none
none
none
none
53bfe15e91
[Firefox:2354 hits: 06-17 to 09-21]
b5919931fe
[Firefox:628 hits: 06-20 to 09-21]
b7082104e4
[Firefox:141 hits: 06-18 to 09-21]
none[4]
b5919931fe[1]
none [4]
Win2K-f
WinXP
8 of 33 02:34:10 21:54:23 4 none none:none
ASM:Graph
none:none
tElock|
ASProtect|
tElock|
none
lines=90
none
trace
trace
trace
5aeb9abc92
[Firefox:14 hits: 07-15 to 09-19]
none[none] WinXP 26 of 32 20:13:44 20:13:44 1 none none:none
none|none none none
d28bf8aa1a
[Firefox: 6 hits: 09-12 to 09-13]
none[none] WinXP 36 of 36 10:07:32 10:07:32 1 none none:none
none|none none none
371da6aedc
NEW
none[none] WinXP 36 of 36 12:34:00 12:59:07 4 none none:none
none|none none none
834a520346
NEW
none[none] WinXP 0 of 0 17:15:35 17:15:35 1 none none:none
none|none none none
47f8cf336a
NEW
none[none] WinXP 0 of 0 15:01:40 15:01:40 1 none none:none
none|none none none
168aab35a3
[Firefox:133 hits: 06-17 to 09-20]
none[4] Win2K-f 31 of 33 13:46:51 13:46:51 1 none none:none
tElock| none trace
c295ae7d97
NEW
none[none] Win2K-f 33 of 36 22:07:52 22:07:52 1 none none:none
none|none none none
d218d71e66
NEW
none[none] Win2K-f 0 of 0 21:08:08 21:08:08 1 none none:none
none|none none none
d42c1cc7c0
[Firefox:131 hits: 01-01 to 09-21]
af9ca5bed1 [0] WinXP 29 of 29 02:40:45 02:41:07 2 none ASM:Graph
PolyEnE| 100% lines=54 trace
53bfe15e91
[Firefox:2354 hits: 06-17 to 09-21]
b6cf789b7d
[Firefox: 3 hits: 07-22 to 08-21]
none[4]
none [none]
WinXP 25 of 34 13:33:09 13:33:09 1 none none:none
none:none
tElock|
none|none
none
none
trace
none
e90f8b883b
NEW
f0e937602b
NEW
none[none]
none [none]
WinXP 0 of 0 10:27:16 10:27:16 1 none none:none
none:none
none|none
none|none
none
none
none
none
00835ad53f
NEW
none[none] WinXP 0 of 0 05:28:45 05:28:45 1 none none:none
none|none none none
03f912899b
[Firefox:134 hits: 01-08 to 09-21]
83893bd25d [0] WinXP 32 of 32 04:59:14 15:33:51 2 none ASM:Graph
none|none 100% lines=65 trace
d218d71e66
NEW
fc2c568173
NEW
none[none]
none [none]
Win2K-f 0 of 0 21:08:08 21:08:08 1 none none:none
none:none
none|none
none|none
none
none
none
none
6d86a1ff5a
[Firefox:36 hits: 06-25 to 09-20]
none[none] Win2K-f 28 of 33 10:40:53 14:04:37 2 none none:none
none|none none none
741e3b03b3
[Firefox:388 hits: 01-05 to 09-21]
e0197e8a64 [0] WinXP 31 of 32 06:39:33 22:36:28 3 none ASM:Graph
none|none 100% lines=62 trace
f353d4eed9
[Firefox: 6 hits: 09-17 to 09-20]
none[none] WinXP 35 of 36 03:03:06 16:06:17 5 none none:none
none|none none none
11cd4bb3ff
NEW
c8c94cc597
NEW
none[none]
none [none]
WinXP 35 of 36 18:53:54 18:53:54 1 none none:none
none:none
none|none
none|none
none
none
none
none
6d86a1ff5a
[Firefox:36 hits: 06-25 to 09-20]
7f6e032fc0
[Firefox:36 hits: 06-25 to 09-20]
none[none]
none [none]
Win2K-f 31 of 33 10:40:53 14:04:37 2 none none:none
none:none
none|none
none|none
none
none
none
none
168aab35a3
[Firefox:133 hits: 06-17 to 09-20]
bba5ec5f4d
NEW
none[4]
none [none]
Win2K-f 0 of 0 13:46:51 13:46:51 1 none none:none
none:none
tElock|
none|none
none
none
trace
none
831f4ee0a7
[Firefox:549 hits: 01-01 to 09-21]
eb7546c600 [0] WinXP 29 of 29 02:26:04 23:13:41 5 none ASM:Graph
none|none 100% lines=61 trace
53bfe15e91
[Firefox:2354 hits: 06-17 to 09-21]
bea8cb1865
[Firefox:13 hits: 08-11 to 09-21]
none[4]
none [none]
WinXP 32 of 36 00:19:23 00:19:23 1 none none:none
none:none
tElock|
none|none
none
none
trace
none
05b1ed9c9c
NEW
0c87a74ebe
NEW
none[none]
none [none]
WinXP 0 of 0 17:53:35 17:53:35 1 none none:none
none:none
none|none
none|none
none
none
none
none
1437f988ed
NEW
none[none] WinXP 0 of 0 17:06:23 17:06:23 1 none none:none
none|none none none
335cd761e7
NEW
none[none] WinXP 0 of 0 16:06:04 16:06:04 1 none none:none
none|none none none
17028f1eda
[Firefox:34 hits: 04-18 to 09-20]
none[3] WinXP 31 of 32 10:18:05 10:18:05 1 none none:none
tElock| none trace
53bfe15e91
[Firefox:2354 hits: 06-17 to 09-21]
73f1082158
[Firefox:1168 hits: 06-18 to 09-21]
b5919931fe
[Firefox:628 hits: 06-20 to 09-21]
none[4]
73f1082158[1]
b5919931fe[1]
Win2K-f 0 of 32 05:31:11 23:37:57 7 none none:none
ASM:Graph
ASM:Graph
tElock|
Armadillo|
ASProtect|
48% none
lines=81
lines=90
trace
trace
trace
53bfe15e91
[Firefox:2354 hits: 06-17 to 09-21]
57ce4acac2
[Firefox:195 hits: 06-17 to 09-21]
none[4]
57ce4acac2[1]
WinXP 0 of 33 01:56:09 01:56:09 1 none none:none
ASM:Graph
tElock|
Armadillo|
47% none
lines=81
trace
trace
6ec2a8994b
[Firefox:23 hits: 06-18 to 09-18]
b5919931fe
[Firefox:628 hits: 06-20 to 09-21]
bcf66a38c8
[Firefox:10 hits: 07-30 to 09-18]
none[4]
b5919931fe[1]
none [none]
Win2K-f 2 of 35 05:31:11 05:31:11 1 none none:none
ASM:Graph
none:none
tElock|
ASProtect|
none|none
none
lines=90
none
trace
trace
none
40870345c3
NEW
none[none] WinXP 0 of 0 14:10:32 14:10:32 1 none none:none
none|none none none
bd36561f92
NEW
daf1667907
NEW
none[none]
none [none]
Win2K-f 0 of 0 20:29:05 20:29:05 1 none none:none
none:none
none|none
none|none
none
none
none
none
1a2c0e6130
[Firefox:407 hits: 12-31 to 09-21]
048df78048 [0] WinXP 29 of 29 05:04:33 12:39:00 3 none ASM:Graph
none|none 100% lines=61 trace
53bfe15e91
[Firefox:2354 hits: 06-17 to 09-21]
a08f3b74a4
[Firefox:820 hits: 06-18 to 09-21]
none[4]
a08f3b74a4[1]
Win2K-f
WinXP
0 of 33 00:30:36 22:21:30 14 none none:none
ASM:Graph
tElock|
Armadillo|
47% none
lines=81
trace
trace
b872c76081
[Firefox:14 hits: 09-13 to 09-21]
none[none] WinXP 36 of 36 11:31:15 13:51:02 2 none none:none
none|none none none
bd0c947bd4
NEW
none[none] WinXP 0 of 0 09:53:34 09:53:34 1 none none:none
none|none none none
71a1c77303
NEW
none[none] WinXP 0 of 0 18:18:37 18:18:37 1 none none:none
none|none none none
e97aedd0ab
NEW
none[none] WinXP 0 of 0 06:49:33 06:49:33 1 none none:none
none|none none none
a0139d7ad8
[Firefox:107 hits: 01-03 to 09-21]
d9e9662db1 [0] WinXP 29 of 29 07:37:47 19:35:35 3 none ASM:Graph
PolyEnE| 99% lines=68 trace
40870345c3
NEW
6c539a9f23
NEW
none[none]
none [none]
WinXP 0 of 0 14:10:32 14:10:32 1 none none:none
none:none
none|none
none|none
none
none
none
none
df17a625ee
[Firefox:244 hits: 01-01 to 09-21]
9bbdd086c5 [0] WinXP 29 of 29 02:52:02 02:52:02 1 none ASM:Graph
ASPack| 49% lines=186
embedded dns
trace
6ec2a8994b
[Firefox:23 hits: 06-18 to 09-18]
none[4] Win2K-f 30 of 33 05:31:11 05:31:11 1 none none:none
tElock| none trace
492341416e
NEW
none[none] WinXP 0 of 0 13:32:46 13:32:46 1 none none:none
none|none none none
11cd4bb3ff
NEW
none[none] WinXP 23 of 36 18:53:54 18:53:54 1 none none:none
none|none none none
1f59c01aef
[Firefox: 8 hits: 08-01 to 09-19]
none[none] Win2K-f 34 of 36 15:30:46 15:30:46 1 none none:none
none|none none none
27b945de66
[Firefox:22 hits: 06-20 to 09-21]
none[4] WinXP 31 of 32 23:23:18 23:23:18 1 none none:none
none|none none trace
bd36561f92
NEW
none[none] Win2K-f 0 of 0 20:29:05 20:29:05 1 none none:none
none|none none none
1f59c01aef
[Firefox: 8 hits: 08-01 to 09-19]
dc92683d9a
[Firefox:15 hits: 06-19 to 09-19]
none[none]
dc92683d9a[1]
Win2K-f 29 of 33 15:30:46 15:30:46 1 none none:none
ASM:Graph
none|none
Armadillo|
47% none
lines=82
none
trace
0347304e75
NEW
none[none] WinXP 0 of 0 17:37:36 17:37:36 1 none none:none
none|none none none
a9cfbd1b0c
[Firefox: 7 hits: 09-12 to 09-21]
none[none] WinXP 36 of 36 05:41:44 05:41:49 2 none none:none
none|none none none
d6158c8ce9
NEW
none[none] WinXP 36 of 36 05:34:29 05:34:55 2 none none:none
none|none none none
53bfe15e91
[Firefox:2354 hits: 06-17 to 09-21]
73f1082158
[Firefox:1168 hits: 06-18 to 09-21]
e07c29c4ae
[Firefox:483 hits: 06-19 to 09-21]
none[4]
73f1082158[1]
e07c29c4ae[1]
WinXP 0 of 33 09:30:36 18:28:12 2 none none:none
ASM:Graph
ASM:Graph
tElock|
Armadillo|
FSG|
48% none
lines=81
lines=92
trace
trace
trace
efeb24872b
[Firefox: 3 hits: 09-19 to 09-19]
none[none] WinXP 34 of 36 19:19:45 19:19:45 1 none none:none
none|none none none
0f99623be1
NEW
none[none] WinXP 0 of 0 07:11:40 07:11:40 1 none none:none
none|none none none
5b30479c4d
NEW
none[none] WinXP 0 of 0 15:26:05 15:26:05 1 none none:none
none|none none none
586c70f63b
NEW
none[none] WinXP 0 of 0 06:42:15 06:42:15 1 none none:none
none|none none none
7f60162c2c
[Firefox:602 hits: 12-31 to 09-21]
1aad8e4632 [0] WinXP 25 of 25 08:06:03 20:29:37 9 none ASM:Graph
PolyEnE| 100% lines=93
embedded dns
trace
b5919931fe
[Firefox:628 hits: 06-20 to 09-21]
b74e792974
[Firefox: 9 hits: 06-18 to 09-21]
b5919931fe [1]
b74e792974[1]
Win2K-f 31 of 33 14:53:44 14:53:44 1 none ASM:Graph
ASM:Graph
ASProtect|
Armadillo|
47% lines=90
lines=82
trace
trace
71b183b0c8
[Firefox: 3 hits: 09-17 to 09-20]
none[none] WinXP 36 of 36 18:54:25 18:54:25 1 none none:none
none|none none none
f9d832dfd2
NEW
none[none] WinXP 0 of 0 14:00:27 14:00:27 1 none none:none
none|none none none
3ae357d17b
[Firefox:173 hits: 01-01 to 09-15]
462a7be171 [0] WinXP 29 of 29 19:55:33 19:55:33 1 none ASM:Graph
PolyEnE| 99% lines=73 trace
b9cdf4ca69
[Firefox: 7 hits: 06-18 to 09-19]
none[4] Win2K-f 31 of 33 07:12:18 07:12:18 1 none none:none
none|none none trace
da00a8e7a1
[Firefox:17 hits: 08-05 to 09-21]
none[none] WinXP
Win2K-f
34 of 36 11:48:33 16:41:54 2 none none:none
none|none none none
4f64b12bec
NEW
ebc7258ea1
NEW
none[none]
none [none]
WinXP 0 of 0 06:13:54 06:13:54 1 none none:none
none:none
none|none
none|none
none
none
none
none
7d99b0e910
[Firefox:1135 hits: 12-31 to 09-21]
7a70e1b592 [0] WinXP 26 of 28 07:13:19 19:47:56 6 none ASM:Graph
PolyEnE| 99% lines=68 trace
1509c8d024
[Firefox:28 hits: 06-17 to 09-21]
f23b040440
[Firefox:18 hits: 06-22 to 09-21]
none[4]
f23b040440[1]
Win2K-f 30 of 32 06:04:03 06:36:18 2 none none:none
ASM:Graph
tElock|
Armadillo|
47% none
lines=82
trace
trace
26e3526604
[Firefox: 2 hits: 09-16 to 09-20]
none[none] WinXP 34 of 36 00:19:39 07:25:29 3 none none:none
none|none none none
92010e1c85
NEW
none[none] WinXP 36 of 36 04:25:46 04:25:50 2 none none:none
none|none none none
3e59f4e680
NEW
none[none] Win2K-f 0 of 0 13:25:22 13:25:22 1 none none:none
none|none none none
05b1ed9c9c
NEW
none[none] WinXP 0 of 0 17:53:35 17:53:35 1 none none:none
none|none none none
b5919931fe
[Firefox:628 hits: 06-20 to 09-21]
b74e792974
[Firefox: 9 hits: 06-18 to 09-21]
f0e73c39a8
[Firefox:10 hits: 06-18 to 09-21]
b5919931fe [1]
b74e792974[1]
none [4]
Win2K-f 31 of 33 14:53:44 14:53:44 1 none ASM:Graph
ASM:Graph
none:none
ASProtect|
Armadillo|
tElock|
lines=90
lines=82
none
trace
trace
trace
1509c8d024
[Firefox:28 hits: 06-17 to 09-21]
none[4] Win2K-f 31 of 33 06:04:03 06:36:18 2 none none:none
tElock| none trace
cdf8cd94a9
[Firefox: 9 hits: 09-14 to 09-20]
none[none] WinXP 35 of 36 07:49:18 21:57:08 3 none none:none
none|none none none