Welcome to the Cyber-TA
Daily Malware Binary DIGEST Summary Page



18 November 2008

All data collection and analyses summarized in this page were 100% AUTO-GENERATED.

DEVELOPERS: Vinod Yegneswaran (SRI), Phillip Porras (SRI), Hassen Saidi (SRI)
Monirul Sharif (Georgia-Tech), Arvind Narayanan (University of Texas at Austin)

The data on this website is provided for research purposes only. It is provided
for your personal use only and is supplied AS IS, WITHOUT WARRANTY OF ANY KIND.
Use or reliance on this data is at your own risk.



Packed
MD5
UnPacket
MD5
Victim
OS
AntiVirus
Hit-Cnt
First
Encounter
Last
Encounter
Freq
Cnt
Behavioral
Clusters
Unpacked
Egg.asm
Packer
Fingerprint
API
Resolution
String
Cnt
Syscall
Trace
4c3df24b32
[Firefox:250 hits: 06-17 to 11-16]
ff2150aa95
[Firefox: 9 hits: 07-03 to 11-14]
4c3df24b32 [1]
none [none]
Win2K-f 30 of 33 21:06:24 21:06:24 1 none ASM:Graph
none:none
Armadillo|
none|none
lines=81
none
trace
none
1e3cef226f
[Firefox:14 hits: 11-04 to 11-16]
none[none] WinXP 35 of 36 19:43:28 19:44:03 2 none none:none
none|none none none
41b9df60db
[Firefox:10 hits: 11-03 to 11-16]
a09e03283d
NEW
cada8d5adf
[Firefox: 9 hits: 11-03 to 11-16]
none[none]
none [none]
none [none]
Win2K-f 15 of 36 18:42:31 18:42:31 1 none none:none
none:none
none:none
none|none
none|none
none|none
none
none
none
none
none
none
da00a8e7a1
[Firefox:36 hits: 08-05 to 11-03]
f685f8e027
[Firefox:40 hits: 06-18 to 11-03]
none[none]
f685f8e027[1]
WinXP 28 of 33 18:32:04 18:32:04 1 none none:none
ASM:Graph
none|none
Armadillo|
48% none
lines=82
none
trace
a917b38976
[Firefox: 9 hits: 10-14 to 11-14]
none[none] WinXP 35 of 36 14:48:12 14:48:12 1 none none:none
none|none none none
fcd4bae1af
[Firefox: 4 hits: 10-27 to 10-31]
none[none] WinXP 34 of 36 11:40:00 11:43:33 2 none none:none
none|none none none
53bfe15e91
[Firefox:4017 hits: 06-17 to 11-17]
73f1082158
[Firefox:1992 hits: 06-18 to 11-17]
none[4]
73f1082158[1]
WinXP
Win2K-f
0 of 32 12:32:26 21:22:02 12 none none:none
ASM:Graph
tElock|
Armadillo|
47% none
lines=81
trace
trace
141fdddae5
NEW
79ffce1bee
NEW
none[none]
none [none]
Win2K-f
WinXP
34 of 36 22:36:03 22:38:51 2 none none:none
none:none
none|none
none|none
none
none
none
none
53bfe15e91
[Firefox:4017 hits: 06-17 to 11-17]
none[4] WinXP
Win2K-f
33 of 33 11:50:27 21:43:28 20 none none:none
tElock| none trace
2c0902a088
[Firefox: 3 hits: 11-12 to 11-14]
435638f87d
[Firefox: 3 hits: 11-12 to 11-14]
none[none]
none [none]
WinXP 7 of 36 16:57:32 16:57:32 1 none none:none
none:none
none|none
none|none
none
none
none
none
a8c074e136
[Firefox:10 hits: 08-21 to 11-07]
fc22cbd605
[Firefox:10 hits: 08-21 to 11-07]
none[none]
none [none]
WinXP 32 of 36 11:49:05 11:49:05 1 none none:none
none:none
none|none
none|none
none
none
none
none
87e1117f2a
[Firefox:33 hits: 07-18 to 11-08]
none[none] Win2K-f 32 of 33 18:25:02 18:25:02 1 none none:none
none|none none none
4b440bbb53
[Firefox: 7 hits: 11-10 to 11-16]
none[none] WinXP 34 of 36 14:29:56 14:29:56 1 none none:none
none|none none none
428ae15458
[Firefox:26 hits: 10-14 to 11-16]
none[none] WinXP 35 of 36 13:12:05 13:12:05 1 none none:none
none|none none none
2c0902a088
[Firefox: 3 hits: 11-12 to 11-14]
none[none] WinXP 6 of 36 16:57:32 16:57:32 1 none none:none
none|none none none
3f4618b880
[Firefox: 3 hits: 11-08 to 11-13]
none[none] WinXP 34 of 36 16:20:10 16:20:34 2 none none:none
none|none none none
3049a62223
NEW
none[none] WinXP 34 of 36 14:05:36 14:05:36 1 none none:none
none|none none none
d73bdf4a0e
[Firefox:32 hits: 10-27 to 11-16]
none[none] Win2K-f 21 of 36 16:17:32 16:17:32 1 none none:none
none|none none none
06a5e31b47
[Firefox:15 hits: 10-28 to 11-14]
none[none] WinXP 35 of 36 13:16:50 13:16:50 1 none none:none
none|none none none
542616a8fe
[Firefox: 2 hits: 10-20 to 10-20]
none[none] WinXP 35 of 36 17:26:08 17:26:08 1 none none:none
none|none none none
986b59708d
[Firefox:116 hits: 04-07 to 11-16]
8a00217866 [0] WinXP 29 of 29 15:04:16 15:04:16 1 none ASM:Graph
PolyEnE| 100% lines=57 trace
cce8ebff69
[Firefox: 2 hits: 10-11 to 10-27]
none[none] WinXP 35 of 36 21:57:46 21:57:46 1 none none:none
none|none none none
6b3beaea1a
[Firefox:34 hits: 10-21 to 11-15]
none[none] WinXP 35 of 36 13:00:42 14:32:25 3 none none:none
none|none none none
f74a5dfcc8
NEW
none[none] WinXP 35 of 36 22:44:54 22:44:54 1 none none:none
none|none none none
533d15b5ce
[Firefox:46 hits: 06-21 to 11-15]
none[4] Win2K-f 30 of 33 22:00:11 22:00:52 2 none none:none
tElock| none trace
5818023061
[Firefox: 5 hits: 04-01 to 11-15]
a227e5e49d [0] WinXP 32 of 32 12:16:27 12:16:27 1 none ASM:Graph
PolyEnE| 99% lines=68 trace
a12cab51ef
[Firefox:396 hits: 04-01 to 11-16]
40f7f463c4 [0] WinXP 29 of 29 14:04:48 19:53:05 2 none ASM:Graph
ASPack| 54% lines=281
embedded dns
trace
289d74b4ce
[Firefox:17 hits: 11-03 to 11-16]
none[none] WinXP 35 of 36 18:45:43 18:45:43 1 none none:none
none|none none none
41b9df60db
[Firefox:10 hits: 11-03 to 11-16]
a09e03283d
NEW
none[none]
none [none]
Win2K-f 31 of 36 18:42:31 18:42:31 1 none none:none
none:none
none|none
none|none
none
none
none
none
b52d214d08
[Firefox:60 hits: 10-05 to 11-16]
none[none] WinXP 35 of 36 15:26:05 15:26:05 1 none none:none
none|none none none
a1c572df66
[Firefox: 2 hits: 11-04 to 11-09]
none[none] WinXP 29 of 36 12:54:23 12:55:31 2 none none:none
none|none none none
fe22b8315f
[Firefox:14 hits: 06-19 to 11-10]
none[4] WinXP 32 of 33 21:45:43 21:45:43 1 none none:none
StarForce| none trace
e50d19ea22
[Firefox: 8 hits: 10-21 to 11-14]
none[none] WinXP 33 of 35 12:09:21 12:09:21 1 none none:none
none|none none none
d10f05f78a
NEW
none[none] WinXP 34 of 36 21:37:12 21:37:34 2 none none:none
none|none none none
4c3df24b32
[Firefox:250 hits: 06-17 to 11-16]
4c3df24b32 [1] Win2K-f 0 of 33 21:06:24 21:06:24 1 none ASM:Graph
Armadillo| 47% lines=81 trace
57ce4acac2
[Firefox:352 hits: 06-17 to 11-16]
83f26f5044
[Firefox:40 hits: 06-20 to 11-15]
57ce4acac2 [1]
none [4]
Win2K-f 29 of 32 22:24:24 22:24:24 1 none ASM:Graph
none:none
Armadillo|
tElock|
lines=81
none
trace
trace
7f60162c2c
[Firefox:756 hits: 12-31 to 11-15]
1aad8e4632 [0] WinXP 25 of 25 12:45:52 12:47:52 2 none ASM:Graph
PolyEnE| 100% lines=93
embedded dns
trace
741e3b03b3
[Firefox:549 hits: 04-15 to 11-16]
e0197e8a64 [0] WinXP 31 of 32 17:10:27 21:02:42 2 none ASM:Graph
none|none 100% lines=62 trace
41b9df60db
[Firefox:10 hits: 11-03 to 11-16]
none[none] Win2K-f 21 of 36 18:42:31 18:42:31 1 none none:none
none|none none none
831f4ee0a7
[Firefox:488 hits: 04-01 to 11-15]
eb7546c600 [0] WinXP 29 of 29 17:07:50 20:36:24 2 none ASM:Graph
none|none 100% lines=61 trace
533d15b5ce
[Firefox:46 hits: 06-21 to 11-15]
58c343a8d8
[Firefox:50 hits: 06-21 to 11-15]
none[4]
58c343a8d8[1]
Win2K-f 28 of 33 22:00:11 22:00:52 2 none none:none
ASM:Graph
tElock|
Armadillo|
47% none
lines=82
trace
trace
a8c074e136
[Firefox:10 hits: 08-21 to 11-07]
none[none] WinXP 34 of 36 11:49:05 11:49:05 1 none none:none
none|none none none
da00a8e7a1
[Firefox:36 hits: 08-05 to 11-03]
none[none] WinXP 34 of 36 18:32:04 18:32:04 1 none none:none
none|none none none
02e2629711
NEW
none[none] Win2K-f 18 of 36 14:52:04 14:52:04 1 none none:none
none|none none none
985b9b9708
[Firefox: 4 hits: 10-25 to 11-10]
none[none] WinXP 34 of 35 23:52:37 23:52:37 1 none none:none
none|none none none
7d99b0e910
[Firefox:1116 hits: 12-31 to 11-16]
7a70e1b592 [0] WinXP 26 of 28 13:20:39 21:45:29 5 none ASM:Graph
PolyEnE| 99% lines=68 trace
17028f1eda
[Firefox:58 hits: 04-18 to 11-05]
none[3] WinXP 31 of 32 15:27:11 15:27:11 1 none none:none
tElock| none trace
57ce4acac2
[Firefox:352 hits: 06-17 to 11-16]
57ce4acac2 [1] WinXP
Win2K-f
0 of 33 13:14:30 22:24:24 4 none ASM:Graph
Armadillo| 47% lines=81 trace
1094c6aece
NEW
none[none] WinXP 34 of 36 11:23:54 11:23:54 1 none none:none
none|none none none
1a2c0e6130
[Firefox:436 hits: 12-31 to 11-16]
048df78048 [0] WinXP 29 of 29 17:12:54 17:12:54 1 none ASM:Graph
none|none 100% lines=61 trace
8838a477a0
NEW
none[none] WinXP 34 of 36 21:11:48 21:11:48 1 none none:none
none|none none none
53bfe15e91
[Firefox:4017 hits: 06-17 to 11-17]
a08f3b74a4
[Firefox:1441 hits: 06-18 to 11-16]
none[4]
a08f3b74a4[1]
WinXP
Win2K-f
0 of 33 11:50:27 21:43:28 6 none none:none
ASM:Graph
tElock|
Armadillo|
47% none
lines=81
trace
trace
b27d73bfcb
[Firefox:58 hits: 10-10 to 11-16]
none[none] WinXP 35 of 36 16:27:15 16:27:17 2 none none:none
none|none none none
c91dfdf79a
[Firefox: 8 hits: 10-20 to 11-10]
none[none] WinXP 34 of 36 19:42:18 19:42:18 1 none none:none
none|none none none
7ecf59459a
NEW
none[none] WinXP 34 of 36 18:03:04 18:03:04 1 none none:none
none|none none none
141fdddae5
NEW
none[none] Win2K-f
WinXP
32 of 36 22:36:03 22:38:51 2 none none:none
none|none none none
a0139d7ad8
[Firefox:180 hits: 04-10 to 11-15]
d9e9662db1 [0] WinXP 29 of 29 13:55:18 13:55:18 1 none ASM:Graph
PolyEnE| 99% lines=68 trace
87e1117f2a
[Firefox:33 hits: 07-18 to 11-08]
b4fe4581c3
[Firefox:33 hits: 07-18 to 11-08]
none[none]
none [none]
Win2K-f 29 of 33 18:25:02 18:25:02 1 none none:none
none:none
none|none
none|none
none
none
none
none
6b1c6d0395
[Firefox:10 hits: 09-18 to 11-12]
none[none] WinXP 34 of 36 21:51:23 21:51:23 1 none none:none
none|none none none