Welcome to the Cyber-TA
Daily Malware Binary DIGEST Summary Page



21 December 2008

All data collection and analyses summarized in this page were 100% AUTO-GENERATED.

DEVELOPERS: Vinod Yegneswaran (SRI), Phillip Porras (SRI), Hassen Saidi (SRI)
Monirul Sharif (Georgia-Tech), Arvind Narayanan (University of Texas at Austin)

The data on this website is provided for research purposes only. It is provided
for your personal use only and is supplied AS IS, WITHOUT WARRANTY OF ANY KIND.
Use or reliance on this data is at your own risk.



Packed
MD5
UnPacket
MD5
Victim
OS
AntiVirus
Hit-Cnt
First
Encounter
Last
Encounter
Freq
Cnt
Behavioral
Clusters
Unpacked
Egg.asm
Packer
Fingerprint
API
Resolution
String
Cnt
Syscall
Trace
409ef22885
[Firefox:595 hits: 11-22 to 12-20]
none[3] Win2K-f 2 of 37 01:59:46 22:38:54 7 none none:none
UPX| none trace
15717cd327
[Firefox: 9 hits: 11-05 to 12-01]
5b359cd0eb [0] Win2K-f 33 of 36 16:54:49 16:54:49 1 none ASM:Graph
PeCompact| 95% lines=2438
embedded dns
trace
f63e70fa11
[Firefox: 7 hits: 10-22 to 10-28]
4f3f7ff5ac [0] WinXP 34 of 35 15:16:16 15:18:35 2 none ASM:Graph
PolyEnE| 100% lines=68 trace
29abb49a9a
NEW
bed847a713 [0] WinXP 36 of 38 14:01:34 14:01:34 1 none ASM:Graph
PolyEnE| 100% lines=68 trace
3862324588
[Firefox:79 hits: 11-29 to 12-20]
none[3] Win2K-f 7 of 37 04:22:47 20:52:07 5 none none:none
UPX| none trace
53bfe15e91
[Firefox:4110 hits: 06-17 to 12-20]
73f1082158
[Firefox:2043 hits: 06-18 to 12-20]
1473091351 [0]
none [0]
WinXP
Win2K-f
0 of 32 06:31:46 14:25:48 2 none ASM:Graph
none:none
tElock|
Armadillo|
0% lines=75
embedded dns
lines=90
trace
trace
fcb4920986
[Firefox:31 hits: 11-21 to 12-20]
none[3] Win2K-f 2 of 37 18:36:01 18:36:01 1 none none:none
UPX| none trace
dc331fb791
[Firefox:855 hits: 11-24 to 12-20]
none[3] Win2K-f 3 of 37 00:44:58 23:54:32 37 none none:none
UPX| none trace
53bfe15e91
[Firefox:4110 hits: 06-17 to 12-20]
1473091351 [0] WinXP
Win2K-f
33 of 33 06:31:46 14:25:48 2 none ASM:Graph
tElock| 96% lines=75
embedded dns
trace
6fba91932b
NEW
736a9255f6 [0] WinXP 36 of 38 12:07:45 12:07:45 1 none ASM:Graph
PolyEnE| 100% lines=68 trace
3a607f4951
NEW
none[3] Win2K-f 9 of 38 22:53:33 22:53:33 1 none none:none
UPX| none trace
bd35d4d98f
[Firefox:27 hits: 11-27 to 12-20]
none[3] Win2K-f 7 of 37 14:00:24 14:00:24 1 none none:none
Armadillo| none trace
917c085aca
[Firefox:230 hits: 11-25 to 12-20]
none[3] Win2K-f 3 of 37 00:59:24 23:42:19 5 none none:none
Armadillo| none trace
71afca1665
[Firefox:59 hits: 11-23 to 12-20]
none[3] Win2K-f 2 of 37 03:10:30 03:10:30 1 none none:none
StarForce| none trace
4f6b51ea3b
NEW
none[3] Win2K-f 8 of 38 12:26:21 12:26:21 1 none none:none
MEW| none trace
986b59708d
[Firefox:115 hits: 05-08 to 12-09]
none[0] WinXP 29 of 29 11:06:37 16:33:14 2 none none:none
PolyEnE| 100% lines=57 trace
0fccd68408
[Firefox: 4 hits: 11-26 to 12-07]
none[3] Win2K-f 8 of 37 09:59:39 09:59:39 1 none none:none
UPX| none trace
8ce32ded17
[Firefox:122 hits: 11-26 to 12-20]
none[3] Win2K-f 4 of 37 04:29:41 22:56:39 14 none none:none
Armadillo| none trace
4f88618d4f
[Firefox:58 hits: 11-29 to 12-20]
none[3] Win2K-f 8 of 37 05:44:24 17:20:37 5 none none:none
UPX| none trace
e1a2e3980d
[Firefox: 4 hits: 12-05 to 12-19]
none[3] Win2K-f 9 of 38 20:36:52 23:59:30 2 none none:none
UPX| none trace
7587773eea
[Firefox:514 hits: 11-30 to 12-20]
none[3] Win2K-f 7 of 37 02:58:03 23:37:59 27 none none:none
StarForce| none trace
223d8089f8
[Firefox:446 hits: 11-21 to 12-20]
none[3] Win2K-f 2 of 37 03:41:27 23:51:10 8 none none:none
StarForce| none trace
216ec67841
[Firefox:128 hits: 11-20 to 12-20]
none[3] Win2K-f 2 of 37 04:04:36 20:04:51 4 none none:none
StarForce| none trace
d60e538e72
[Firefox:1246 hits: 11-22 to 12-20]
none[3] Win2K-f 2 of 37 00:31:32 21:18:15 28 none none:none
UPX| none trace
41f6a6f759
NEW
none[3] Win2K-f 11 of 38 16:28:26 16:28:26 1 none none:none
StarForce| none trace
d9cb288f31
[Firefox:10431 hits: 11-20 to 12-20]
45603a001c [0] Win2K-f 3 of 37 00:05:35 23:53:54 364 none ASM:Graph
UPX| 92% lines=174
embedded dns
trace