Welcome to the Cyber-TA
Daily Malware Binary DIGEST Summary Page



02 October 2008

All data collection and analyses summarized in this page were 100% AUTO-GENERATED.

DEVELOPERS: Vinod Yegneswaran (SRI), Phillip Porras (SRI), Hassen Saidi (SRI)
Monirul Sharif (Georgia-Tech), Arvind Narayanan (University of Texas at Austin)

The data on this website is provided for research purposes only. It is provided
for your personal use only and is supplied AS IS, WITHOUT WARRANTY OF ANY KIND.
Use or reliance on this data is at your own risk.



Packed
MD5
UnPacket
MD5
Victim
OS
AntiVirus
Hit-Cnt
First
Encounter
Last
Encounter
Freq
Cnt
Behavioral
Clusters
Unpacked
Egg.asm
Packer
Fingerprint
API
Resolution
String
Cnt
Syscall
Trace
79fdac8c50
[Firefox: 3 hits: 09-16 to 10-01]
none[none] WinXP 34 of 36 14:03:15 14:03:15 1 none none:none
none|none none none
53bfe15e91
[Firefox:2701 hits: 06-17 to 10-01]
73f1082158
[Firefox:1348 hits: 06-18 to 10-01]
none[4]
73f1082158[1]
Win2K-f
WinXP
0 of 32 00:36:12 23:34:31 17 none none:none
ASM:Graph
tElock|
Armadillo|
47% none
lines=81
trace
trace
22999be88c
[Firefox:28 hits: 04-05 to 10-01]
eda2056971 [0] WinXP 31 of 32 01:11:55 01:11:55 1 none ASM:Graph
PolyEnE| 100% lines=154
embedded dns
trace
53bfe15e91
[Firefox:2701 hits: 06-17 to 10-01]
none[4] Win2K-f
WinXP
33 of 33 00:13:22 23:34:31 44 none none:none
tElock| none trace
0bfa79dc19
[Firefox:17 hits: 07-22 to 10-01]
none[none] WinXP 31 of 33 11:35:03 11:35:03 1 none none:none
none|none none none
f04fb66461
[Firefox: 4 hits: 09-12 to 09-26]
none[none] WinXP 35 of 36 20:51:55 20:51:55 1 none none:none
none|none none none
53bfe15e91
[Firefox:2701 hits: 06-17 to 10-01]
b7082104e4
[Firefox:161 hits: 06-18 to 10-01]
none[4]
none [4]
Win2K-f 8 of 33 19:08:02 21:50:02 2 none none:none
none:none
tElock|
tElock|
none
none
trace
trace
7f89b38665
[Firefox:19 hits: 08-02 to 10-01]
none[none] Win2K-f 32 of 36 15:05:27 15:05:27 1 none none:none
none|none none none
47f8cf336a
NEW
none[none] WinXP 0 of 0 20:18:18 20:18:18 1 none none:none
none|none none none
c736218316
NEW
none[none] WinXP 36 of 36 17:14:34 17:14:34 1 none none:none
none|none none none
226df4e471
NEW
none[none] WinXP 36 of 36 05:30:09 05:30:09 1 none none:none
none|none none none
0f7b6b4c31
[Firefox: 5 hits: 08-09 to 09-13]
168aab35a3
[Firefox:150 hits: 06-17 to 10-01]
none[none]
none [4]
WinXP
Win2K-f
31 of 33 03:07:45 20:03:53 2 none none:none
none:none
none|none
tElock|
none
none
none
trace
1e24e409d6
NEW
none[none] WinXP 34 of 36 00:40:19 00:40:19 1 none none:none
none|none none none
b5919931fe
[Firefox:713 hits: 06-20 to 10-01]
bca9e0fb5f
[Firefox:33 hits: 06-18 to 10-01]
b5919931fe [1]
none [4]
Win2K-f 31 of 32 01:30:39 01:30:39 1 none ASM:Graph
none:none
ASProtect|
PolyEnE|
lines=90
none
trace
trace
4efe664269
NEW
a12cab51ef
[Firefox:554 hits: 01-01 to 10-01]
none[none]
40f7f463c4[0]
WinXP 29 of 29 21:04:46 21:04:46 1 none none:none
ASM:Graph
none|none
ASPack|
54% none
lines=281
embedded dns
none
trace
a85b7b6e78
NEW
none[none] WinXP 35 of 36 07:28:00 07:28:00 1 none none:none
none|none none none
03f912899b
[Firefox:148 hits: 01-08 to 09-30]
83893bd25d [0] WinXP 32 of 32 03:52:17 03:52:17 1 none ASM:Graph
none|none 100% lines=65 trace
1a3f65aa8d
NEW
none[none] WinXP 35 of 36 09:26:25 09:28:12 2 none none:none
none|none none none
0f7b6b4c31
[Firefox: 5 hits: 08-09 to 09-13]
none[none] WinXP
Win2K-f
34 of 36 03:07:45 20:03:53 2 none none:none
none|none none none
4e4f880828
NEW
f51803bfc5 [0] Win2K-f 31 of 31 12:17:13 12:17:13 1 none ASM:Graph
FSG| 100% lines=49 trace
4c3df24b32
[Firefox:206 hits: 06-17 to 10-01]
4c3df24b32 [1] WinXP 0 of 33 08:31:14 08:31:14 1 none ASM:Graph
Armadillo| 47% lines=81 trace
4efe664269
NEW
none[none] WinXP 0 of 36 21:04:46 21:04:46 1 none none:none
none|none none none
6d86a1ff5a
[Firefox:39 hits: 06-25 to 09-29]
none[none] WinXP 28 of 33 06:47:26 06:47:26 1 none none:none
none|none none none
741e3b03b3
[Firefox:425 hits: 01-05 to 10-01]
e0197e8a64 [0] WinXP 31 of 32 01:59:57 13:47:18 9 none ASM:Graph
none|none 100% lines=62 trace
f353d4eed9
[Firefox:27 hits: 09-17 to 09-30]
none[none] WinXP 35 of 36 04:27:58 04:27:58 1 none none:none
none|none none none
29ae13a587
NEW
none[none] Win2K-f 33 of 36 06:11:24 06:11:24 1 none none:none
none|none none none
53bfe15e91
[Firefox:2701 hits: 06-17 to 10-01]
73f1082158
[Firefox:1348 hits: 06-18 to 10-01]
7e48a22ada
NEW
none[4]
73f1082158[1]
none [none]
WinXP 0 of 36 12:43:54 12:43:54 1 none none:none
ASM:Graph
none:none
tElock|
Armadillo|
none|none
none
lines=81
none
trace
trace
none
0bfa79dc19
[Firefox:17 hits: 07-22 to 10-01]
8dfb3b619f
[Firefox:18 hits: 07-22 to 10-01]
none[none]
none [none]
WinXP 29 of 34 11:35:03 11:35:03 1 none none:none
none:none
none|none
none|none
none
none
none
none
6d86a1ff5a
[Firefox:39 hits: 06-25 to 09-29]
7f6e032fc0
[Firefox:39 hits: 06-25 to 09-29]
none[none]
none [none]
WinXP 31 of 33 06:47:26 06:47:26 1 none none:none
none:none
none|none
none|none
none
none
none
none
53bfe15e91
[Firefox:2701 hits: 06-17 to 10-01]
bea8cb1865
[Firefox:20 hits: 08-11 to 09-29]
none[4]
none [none]
Win2K-f
WinXP
32 of 36 00:38:13 15:44:13 3 none none:none
none:none
tElock|
none|none
none
none
trace
none
831f4ee0a7
[Firefox:576 hits: 01-01 to 10-01]
eb7546c600 [0] WinXP 29 of 29 04:45:09 07:29:15 2 none ASM:Graph
none|none 100% lines=61 trace
aa9a5814b5
[Firefox: 3 hits: 08-18 to 09-16]
d65dae6c35
[Firefox: 3 hits: 08-18 to 09-16]
none[none]
none [none]
Win2K-f 33 of 36 06:03:12 06:03:12 1 none none:none
none:none
none|none
none|none
none
none
none
none
17028f1eda
[Firefox:38 hits: 04-18 to 09-28]
none[3] WinXP 31 of 32 09:30:36 09:30:36 1 none none:none
tElock| none trace
53bfe15e91
[Firefox:2701 hits: 06-17 to 10-01]
a08f3b74a4
[Firefox:944 hits: 06-18 to 10-01]
b5919931fe
[Firefox:713 hits: 06-20 to 10-01]
none[4]
a08f3b74a4[1]
b5919931fe[1]
Win2K-f 0 of 32 00:36:12 22:05:34 14 none none:none
ASM:Graph
ASM:Graph
tElock|
Armadillo|
ASProtect|
48% none
lines=81
lines=90
trace
trace
trace
bfec7d0b0b
[Firefox:13 hits: 08-06 to 09-27]
none[none] WinXP 35 of 36 07:18:56 07:18:56 1 none none:none
none|none none none
93385541f3
[Firefox:30 hits: 06-22 to 09-30]
none[4] WinXP 32 of 32 06:59:52 06:59:52 1 none none:none
none|none none trace
1a88bd5450
NEW
none[none] WinXP 32 of 36 14:54:17 14:54:17 1 none none:none
none|none none none
53bfe15e91
[Firefox:2701 hits: 06-17 to 10-01]
57ce4acac2
[Firefox:222 hits: 06-17 to 10-01]
none[4]
57ce4acac2[1]
Win2K-f 0 of 33 00:36:06 00:36:06 1 none none:none
ASM:Graph
tElock|
Armadillo|
47% none
lines=81
trace
trace
9f83d5113f
NEW
none[none] WinXP 30 of 36 17:08:21 17:08:21 1 none none:none
none|none none none
40870345c3
[Firefox: 5 hits: 09-22 to 10-01]
none[none] Win2K-f 0 of 0 16:40:40 16:40:40 1 none none:none
none|none none none
1a2c0e6130
[Firefox:443 hits: 12-31 to 10-01]
048df78048 [0] WinXP 29 of 29 05:10:05 18:04:50 3 none ASM:Graph
none|none 100% lines=61 trace
53bfe15e91
[Firefox:2701 hits: 06-17 to 10-01]
a08f3b74a4
[Firefox:944 hits: 06-18 to 10-01]
none[4]
a08f3b74a4[1]
Win2K-f
WinXP
0 of 33 00:13:22 23:23:01 22 none none:none
ASM:Graph
tElock|
Armadillo|
47% none
lines=81
trace
trace
92c8e458d8
[Firefox: 5 hits: 02-24 to 08-14]
4ba645ac3a [0] WinXP 32 of 32 20:53:04 20:53:04 1 none ASM:Graph
none|none 100% lines=62 trace
b872c76081
[Firefox:31 hits: 09-13 to 09-30]
none[none] WinXP 36 of 36 03:36:01 15:08:16 5 none none:none
none|none none none
7f89b38665
[Firefox:19 hits: 08-02 to 10-01]
a51a50404e
[Firefox:19 hits: 08-02 to 10-01]
none[none]
none [none]
Win2K-f 34 of 36 15:05:27 15:05:27 1 none none:none
none:none
none|none
none|none
none
none
none
none
a0139d7ad8
[Firefox:130 hits: 01-03 to 10-01]
d9e9662db1 [0] WinXP 29 of 29 07:10:36 07:10:36 1 none ASM:Graph
PolyEnE| 99% lines=68 trace
32a0d7d0e0
[Firefox:22 hits: 01-11 to 09-17]
d791762796 [0] WinXP 29 of 29 04:15:21 04:15:44 2 none ASM:Graph
tElock| 100% lines=81
embedded dns
trace
3a813df3ed
[Firefox: 9 hits: 02-04 to 09-28]
7759abbf55 [0] WinXP 28 of 29 09:43:23 09:43:23 1 none ASM:Graph
PolyEnE| 100% lines=93
embedded dns
trace
12e484a198
[Firefox: 2 hits: 10-01 to 10-01]
none[none] Win2K-f 32 of 36 15:20:46 15:20:46 1 none none:none
none|none none none
18270a0f74
NEW
none[none] WinXP 24 of 36 18:46:52 18:46:52 1 none none:none
none|none none none
cc263a661d
[Firefox: 9 hits: 09-24 to 10-01]
none[none] WinXP 36 of 36 15:30:55 19:51:38 3 none none:none
none|none none none
3373948767
[Firefox:28 hits: 07-03 to 10-01]
b5919931fe
[Firefox:713 hits: 06-20 to 10-01]
c73f738c30
[Firefox:28 hits: 07-03 to 10-01]
none[none]
b5919931fe[1]
none [none]
Win2K-f 29 of 33 17:35:57 17:35:57 1 none none:none
ASM:Graph
none:none
none|none
ASProtect|
none|none
none
lines=90
none
none
trace
none
4c3df24b32
[Firefox:206 hits: 06-17 to 10-01]
6a4845ca11
[Firefox:12 hits: 06-27 to 09-21]
4c3df24b32 [1]
none [none]
WinXP 0 of 0 08:31:14 08:31:14 1 none ASM:Graph
none:none
Armadillo|
none|none
lines=81
none
trace
none
40870345c3
[Firefox: 5 hits: 09-22 to 10-01]
6c539a9f23
[Firefox: 5 hits: 09-22 to 10-01]
none[none]
none [none]
Win2K-f 0 of 0 16:40:40 16:40:40 1 none none:none
none:none
none|none
none|none
none
none
none
none
df17a625ee
[Firefox:261 hits: 01-01 to 10-01]
9bbdd086c5 [0] WinXP 29 of 29 06:38:22 12:01:39 2 none ASM:Graph
ASPack| 49% lines=186
embedded dns
trace
c05385e600
[Firefox:19 hits: 01-20 to 09-30]
6a383b021d [0] WinXP 29 of 29 23:08:41 23:08:41 1 none ASM:Graph
PolyEnE| 99% lines=68 trace
12e484a198
[Firefox: 2 hits: 10-01 to 10-01]
2e43dc0077
[Firefox: 2 hits: 10-01 to 10-01]
none[none]
none [none]
Win2K-f 34 of 36 15:20:46 15:20:46 1 none none:none
none:none
none|none
none|none
none
none
none
none
0ada72d805
[Firefox:21 hits: 01-16 to 09-24]
239ec78f15 [0] WinXP 29 of 29 01:57:59 01:57:59 1 none ASM:Graph
ASPack| 54% lines=281
embedded dns
trace
b5919931fe
[Firefox:713 hits: 06-20 to 10-01]
bca9e0fb5f
[Firefox:33 hits: 06-18 to 10-01]
e53a9ea82e
[Firefox:33 hits: 06-18 to 10-01]
b5919931fe [1]
none [4]
e53a9ea82e[1]
Win2K-f 23 of 33 01:30:39 01:30:39 1 none ASM:Graph
none:none
ASM:Graph
ASProtect|
PolyEnE|
Armadillo|
47% lines=90
none
lines=81
trace
trace
trace
53bfe15e91
[Firefox:2701 hits: 06-17 to 10-01]
a08f3b74a4
[Firefox:944 hits: 06-18 to 10-01]
e07c29c4ae
[Firefox:538 hits: 06-19 to 10-01]
none[4]
a08f3b74a4[1]
e07c29c4ae[1]
WinXP 0 of 33 01:12:13 23:23:01 13 none none:none
ASM:Graph
ASM:Graph
tElock|
Armadillo|
FSG|
48% none
lines=81
lines=92
trace
trace
trace
ca47a36342
[Firefox:10 hits: 02-16 to 09-30]
c3a58f69c6 [0] WinXP 26 of 28 00:55:34 00:55:34 1 none ASM:Graph
PolyEnE| 100% lines=89
embedded dns
trace
eca9a5fa95
[Firefox:24 hits: 08-09 to 09-30]
none[none] WinXP 36 of 36 13:15:49 16:14:42 2 none none:none
none|none none none
aa9a5814b5
[Firefox: 3 hits: 08-18 to 09-16]
none[none] Win2K-f 34 of 36 06:03:12 06:03:12 1 none none:none
none|none none none
3cd7958258
[Firefox:27 hits: 06-17 to 09-23]
none[4] WinXP
Win2K-f
30 of 33 01:12:13 18:30:46 2 none none:none
tElock| none trace
13003605cc
[Firefox: 4 hits: 09-15 to 09-27]
none[none] WinXP 0 of 0 16:26:38 16:26:38 1 none none:none
none|none none none
7f60162c2c
[Firefox:659 hits: 12-31 to 10-01]
1aad8e4632 [0] WinXP 25 of 25 01:47:08 14:45:45 4 none ASM:Graph
PolyEnE| 100% lines=93
embedded dns
trace
e8b896b446
NEW
none[none] WinXP 35 of 36 07:55:08 07:55:08 1 none none:none
none|none none none
3cd7958258
[Firefox:27 hits: 06-17 to 09-23]
41efedf70f
[Firefox:26 hits: 06-19 to 09-23]
none[4]
41efedf70f[1]
WinXP
Win2K-f
28 of 32 01:12:13 18:30:46 2 none none:none
ASM:Graph
tElock|
Armadillo|
47% none
lines=82
trace
trace
3373948767
[Firefox:28 hits: 07-03 to 10-01]
none[none] Win2K-f 30 of 33 17:35:57 17:35:57 1 none none:none
none|none none none
a219ed3aeb
[Firefox:25 hits: 08-02 to 09-13]
none[none] WinXP 36 of 36 03:20:48 03:20:48 1 none none:none
none|none none none
7d99b0e910
[Firefox:1216 hits: 12-31 to 10-01]
7a70e1b592 [0] WinXP 26 of 28 01:47:39 23:18:07 11 none ASM:Graph
PolyEnE| 99% lines=68 trace
87bf2f533f
NEW
none[none] WinXP 35 of 36 15:52:34 15:52:34 1 none none:none
none|none none none
ab5e47bf8d
[Firefox:42 hits: 01-02 to 10-01]
none[3] WinXP 29 of 29 23:15:38 23:15:38 1 none none:none
ASPack| none trace
d9a4f2f314
NEW
none[none] WinXP 35 of 36 01:16:36 01:16:36 1 none none:none
none|none none none
cdf8cd94a9
[Firefox:17 hits: 09-14 to 09-27]
none[none] WinXP 35 of 36 18:18:36 18:18:36 1 none none:none
none|none none none
33f39fef3e
NEW
none[none] WinXP 35 of 36 13:54:22 13:54:22 1 none none:none
none|none none none
4efe664269
NEW
a12cab51ef
[Firefox:554 hits: 01-01 to 10-01]
d4d463169e
NEW
none[none]
40f7f463c4[0]
none [none]
WinXP 0 of 36 21:04:46 21:04:46 1 none none:none
ASM:Graph
none:none
none|none
ASPack|
none|none
none
lines=281
embedded dns
none
none
trace
none
6b1c6d0395
[Firefox: 5 hits: 09-18 to 10-01]
none[none] WinXP 34 of 36 20:13:05 20:13:08 2 none none:none
none|none none none