Welcome to the Cyber-TA
Daily Malware Binary DIGEST Summary Page



14 December 2008

All data collection and analyses summarized in this page were 100% AUTO-GENERATED.

DEVELOPERS: Vinod Yegneswaran (SRI), Phillip Porras (SRI), Hassen Saidi (SRI)
Monirul Sharif (Georgia-Tech), Arvind Narayanan (University of Texas at Austin)

The data on this website is provided for research purposes only. It is provided
for your personal use only and is supplied AS IS, WITHOUT WARRANTY OF ANY KIND.
Use or reliance on this data is at your own risk.



Packed
MD5
UnPacket
MD5
Victim
OS
AntiVirus
Hit-Cnt
First
Encounter
Last
Encounter
Freq
Cnt
Behavioral
Clusters
Unpacked
Egg.asm
Packer
Fingerprint
API
Resolution
String
Cnt
Syscall
Trace
409ef22885
[Firefox:496 hits: 11-22 to 12-13]
none[3] Win2K-f 2 of 37 04:52:34 22:39:51 16 none none:none
UPX| none trace
3862324588
[Firefox:38 hits: 11-29 to 12-13]
none[3] Win2K-f 7 of 37 13:22:45 20:15:29 3 none none:none
UPX| none trace
177d98d434
NEW
none[3] Win2K-f 15 of 38 07:36:04 07:36:04 1 none none:none
StarForce| none trace
60bb042604
NEW
5ef5a3f417 [0] WinXP 36 of 38 02:35:05 02:35:05 1 none ASM:Graph
PolyEnE| 100% lines=68 trace
0fadd81286
NEW
none[3] Win2K-f 10 of 38 19:17:34 19:17:34 1 none none:none
StarForce| none trace
fcb4920986
[Firefox:20 hits: 11-21 to 12-13]
none[3] Win2K-f 2 of 37 09:42:36 09:42:36 1 none none:none
UPX| none trace
dc331fb791
[Firefox:516 hits: 11-24 to 12-13]
none[3] Win2K-f 3 of 37 00:26:26 23:58:11 41 none none:none
UPX| none trace
741c93f3c1
[Firefox: 4 hits: 11-30 to 12-07]
none[3] Win2K-f 5 of 37 17:17:11 17:17:11 1 none none:none
UPX| none trace
bd35d4d98f
[Firefox:18 hits: 11-27 to 12-13]
none[3] Win2K-f 7 of 37 16:27:03 20:30:36 3 none none:none
Armadillo| none trace
0f16ac4cd7
NEW
3168ae68fc [0] WinXP 33 of 38 14:18:14 14:18:14 1 none ASM:Graph
ASPack| 54% lines=346
embedded dns
trace
917c085aca
[Firefox:156 hits: 11-25 to 12-13]
none[3] Win2K-f 3 of 37 00:45:41 22:29:51 12 none none:none
Armadillo| none trace
507252387e
[Firefox:25 hits: 11-27 to 12-13]
none[3] Win2K-f 7 of 37 14:11:53 14:11:53 1 none none:none
UPX| none trace
7d99b0e910
[Firefox:1026 hits: 05-01 to 12-07]
none[0] WinXP 26 of 28 20:09:44 20:21:15 2 none none:none
PolyEnE| 99% lines=68 trace
8ce32ded17
[Firefox:66 hits: 11-26 to 12-13]
none[3] Win2K-f 4 of 37 04:44:43 16:57:10 8 none none:none
Armadillo| none trace
4f88618d4f
[Firefox:35 hits: 11-29 to 12-13]
none[3] Win2K-f 8 of 37 06:38:23 21:24:05 5 none none:none
UPX| none trace
a7d8bb0915
NEW
none[3] Win2K-f 9 of 38 15:48:17 15:48:17 1 none none:none
UPX| none trace
6d1a9b11e0
NEW
none[3] Win2K-f 10 of 38 19:10:04 19:10:04 1 none none:none
UPX| none trace
7587773eea
[Firefox:274 hits: 11-30 to 12-13]
none[3] Win2K-f 7 of 37 05:20:09 22:26:48 17 none none:none
StarForce| none trace
223d8089f8
[Firefox:352 hits: 11-21 to 12-13]
none[3] Win2K-f 2 of 37 02:38:18 23:41:12 19 none none:none
StarForce| none trace
216ec67841
[Firefox:88 hits: 11-20 to 12-13]
none[3] Win2K-f 2 of 37 00:08:05 19:07:41 5 none none:none
StarForce| none trace
d43da464ad
NEW
1aa4632ad7 [0] WinXP 35 of 38 04:37:21 04:37:21 1 none ASM:Graph
PolyEnE| 100% lines=74
embedded dns
trace
d60e538e72
[Firefox:1024 hits: 11-22 to 12-13]
none[3] Win2K-f 2 of 37 00:11:28 23:49:02 39 none none:none
UPX| none trace
7ead98adbf
NEW
none[3] Win2K-f 10 of 38 16:20:40 16:20:40 1 none none:none
UPX| none trace
e50d19ea22
[Firefox:11 hits: 10-21 to 12-11]
b4a086e5d0 [0] WinXP 33 of 35 07:09:51 07:09:51 1 none ASM:Graph
PolyEnE| 100% lines=73
embedded dns
trace
4e6c4dd8b1
[Firefox:27 hits: 11-25 to 12-13]
none[3] Win2K-f 4 of 37 12:57:44 12:57:44 1 none none:none
StarForce| none trace
d9cb288f31
[Firefox:8080 hits: 11-20 to 12-13]
45603a001c [0] Win2K-f 3 of 37 00:06:41 23:59:02 342 none ASM:Graph
UPX| 92% lines=174
embedded dns
trace