Welcome to the Cyber-TA
Daily Malware Binary DIGEST Summary Page



25 December 2008

All data collection and analyses summarized in this page were 100% AUTO-GENERATED.

DEVELOPERS: Vinod Yegneswaran (SRI), Phillip Porras (SRI), Hassen Saidi (SRI)
Monirul Sharif (Georgia-Tech), Arvind Narayanan (University of Texas at Austin)

The data on this website is provided for research purposes only. It is provided
for your personal use only and is supplied AS IS, WITHOUT WARRANTY OF ANY KIND.
Use or reliance on this data is at your own risk.



Packed
MD5
UnPacket
MD5
Victim
OS
AntiVirus
Hit-Cnt
First
Encounter
Last
Encounter
Freq
Cnt
Behavioral
Clusters
Unpacked
Egg.asm
Packer
Fingerprint
API
Resolution
String
Cnt
Syscall
Trace
ee4c5c80ea
NEW
28944e2541 [0] Win2K-f 35 of 39 08:03:26 08:03:26 1 none ASM:Graph
tElock| 100% lines=42 trace
2881209768
[Firefox:11 hits: 10-22 to 11-12]
efd3ca730e [0] WinXP 35 of 36 06:05:35 06:05:35 1 none ASM:Graph
PolyEnE| 100% lines=57 trace
3862324588
[Firefox:98 hits: 11-29 to 12-24]
none[3] Win2K-f 7 of 37 03:34:17 11:07:12 2 none none:none
UPX| none trace
15717cd327
[Firefox:10 hits: 11-05 to 12-21]
5b359cd0eb [0] WinXP 33 of 36 02:38:57 02:38:57 1 none ASM:Graph
PeCompact| 95% lines=2438
embedded dns
trace
0fadd81286
[Firefox: 2 hits: 12-07 to 12-14]
none[3] Win2K-f 10 of 38 07:44:10 07:44:10 1 none none:none
StarForce| none trace
fcb4920986
[Firefox:37 hits: 11-21 to 12-24]
none[3] Win2K-f 2 of 37 07:48:36 17:24:28 2 none none:none
UPX| none trace
dc331fb791
[Firefox:1008 hits: 11-24 to 12-24]
none[3] Win2K-f 3 of 37 00:14:06 23:26:22 29 none none:none
UPX| none trace
bd35d4d98f
[Firefox:33 hits: 11-27 to 12-24]
none[3] Win2K-f 7 of 37 12:53:17 12:53:17 1 none none:none
Armadillo| none trace
9a9f93c4d2
[Firefox: 4 hits: 12-23 to 12-23]
none[3] Win2K-f 16 of 39 15:02:36 15:02:36 1 none none:none
UPX| none trace
917c085aca
[Firefox:264 hits: 11-25 to 12-24]
none[3] Win2K-f 3 of 37 00:50:32 23:31:38 10 none none:none
Armadillo| none trace
4f6b51ea3b
[Firefox: 7 hits: 12-19 to 12-24]
none[3] Win2K-f 8 of 38 02:28:12 20:30:43 9 none none:none
MEW| none trace
9c4ad5fe13
[Firefox: 5 hits: 12-19 to 12-24]
none[3] Win2K-f 21 of 38 16:05:47 16:13:31 2 none none:none
StarForce| none trace
8ce32ded17
[Firefox:173 hits: 11-26 to 12-24]
none[3] Win2K-f 4 of 37 00:59:33 19:56:28 9 none none:none
Armadillo| none trace
e560a08def
NEW
20f792095e [0] WinXP 34 of 39 02:15:18 02:15:18 1 none ASM:Graph
none|none 5% lines=245 trace
85af8690d4
NEW
none[3] Win2K-f 14 of 39 04:46:00 04:46:00 1 none none:none
UPX| none trace
a12cab51ef
[Firefox:370 hits: 05-01 to 12-24]
none[0] WinXP 29 of 29 19:17:35 19:17:35 1 none none:none
ASPack| 54% lines=281
embedded dns
trace
216ec67841
[Firefox:146 hits: 11-20 to 12-24]
none[3] Win2K-f 2 of 37 06:58:29 23:02:48 4 none none:none
StarForce| none trace
d60e538e72
[Firefox:1368 hits: 11-22 to 12-24]
none[3] Win2K-f 2 of 37 00:42:44 23:20:58 26 none none:none
UPX| none trace
043cc45dd2
NEW
9c22beb86f [0] WinXP 37 of 39 16:29:10 16:29:10 1 none ASM:Graph
PolyEnE| 100% lines=93
embedded dns
trace
9dab636a01
[Firefox: 5 hits: 07-09 to 11-15]
2d99d89d23 [0] WinXP 29 of 29 03:19:11 03:19:11 1 none ASM:Graph
PolyEnE| 100% lines=93
embedded dns
trace
bf9f26628c
[Firefox:19 hits: 10-11 to 11-16]
e6b30a6578 [0] WinXP 35 of 36 07:35:38 07:44:28 2 none ASM:Graph
PolyEnE| 100% lines=68 trace
4e6c4dd8b1
[Firefox:32 hits: 11-25 to 12-23]
none[3] Win2K-f 4 of 37 15:27:29 19:14:51 2 none none:none
StarForce| none trace
409ef22885
[Firefox:650 hits: 11-22 to 12-24]
none[3] Win2K-f 2 of 37 00:20:35 18:52:08 10 none none:none
UPX| none trace
7f60162c2c
[Firefox:713 hits: 05-01 to 12-22]
none[0] WinXP 25 of 25 19:31:41 19:31:41 1 none none:none
PolyEnE| 100% lines=93
embedded dns
trace
ee4c5c80ea
NEW
f37bd4ab26
NEW
28944e2541 [0]
c78cfe6339[0]
Win2K-f 36 of 39 08:03:26 08:03:26 1 none ASM:Graph
ASM:Graph
tElock|
tElock|
96% lines=42
lines=64
embedded dns
trace
trace
71afca1665
[Firefox:64 hits: 11-23 to 12-24]
none[3] Win2K-f 2 of 37 12:58:15 22:43:46 4 none none:none
StarForce| none trace
b1c85cee4b
[Firefox:42 hits: 10-27 to 11-20]
1bc52546bb [0] WinXP 34 of 36 14:47:33 14:47:33 1 none ASM:Graph
PolyEnE| 99% lines=68 trace
e9fcd6f257
NEW
2e05bc2272 [0] WinXP 33 of 35 15:31:39 15:31:39 1 none ASM:Graph
PolyEnE| 100% lines=68 trace
4f88618d4f
[Firefox:70 hits: 11-29 to 12-24]
none[3] Win2K-f 8 of 37 03:18:22 16:33:11 2 none none:none
UPX| none trace
e1a2e3980d
[Firefox: 8 hits: 12-05 to 12-24]
none[3] Win2K-f 9 of 38 05:36:17 06:37:27 2 none none:none
UPX| none trace
1bc6f71969
NEW
2e8726a3e7 [0] WinXP 36 of 38 12:02:16 12:02:16 1 none ASM:Graph
PolyEnE| 100% lines=134 trace
a08f3b74a4
[Firefox:1471 hits: 06-18 to 12-22]
none[0] Win2K-f 0 of 33 23:51:19 23:51:19 1 none none:none
Armadillo| 0% lines=90 trace
7587773eea
[Firefox:622 hits: 11-30 to 12-24]
none[3] Win2K-f 7 of 37 01:40:09 22:08:58 22 none none:none
StarForce| none trace
223d8089f8
[Firefox:493 hits: 11-21 to 12-24]
none[3] Win2K-f 2 of 37 07:22:23 23:51:11 17 none none:none
StarForce| none trace
fdd12eb852
NEW
none[3] Win2K-f 7 of 37 12:42:24 12:42:24 1 none none:none
UPX| none trace
d9cb288f31
[Firefox:11827 hits: 11-20 to 12-24]
45603a001c [0] Win2K-f 3 of 37 00:08:06 23:58:55 355 none ASM:Graph
UPX| 92% lines=174
embedded dns
trace