Welcome to the Cyber-TA
Daily Malware Binary DIGEST Summary Page



28 December 2008

All data collection and analyses summarized in this page were 100% AUTO-GENERATED.

DEVELOPERS: Vinod Yegneswaran (SRI), Phillip Porras (SRI), Hassen Saidi (SRI)
Monirul Sharif (Georgia-Tech), Arvind Narayanan (University of Texas at Austin)

The data on this website is provided for research purposes only. It is provided
for your personal use only and is supplied AS IS, WITHOUT WARRANTY OF ANY KIND.
Use or reliance on this data is at your own risk.



Packed
MD5
UnPacket
MD5
Victim
OS
AntiVirus
Hit-Cnt
First
Encounter
Last
Encounter
Freq
Cnt
Behavioral
Clusters
Unpacked
Egg.asm
Packer
Fingerprint
API
Resolution
String
Cnt
Syscall
Trace
409ef22885
[Firefox:689 hits: 11-22 to 12-27]
none[3] Win2K-f 2 of 37 05:26:29 21:57:25 7 none none:none
UPX| none trace
15717cd327
[Firefox:11 hits: 11-05 to 12-25]
5b359cd0eb [0] WinXP 33 of 36 16:52:35 16:52:35 1 none ASM:Graph
PeCompact| 95% lines=2438
embedded dns
trace
3862324588
[Firefox:103 hits: 11-29 to 12-27]
none[3] Win2K-f 7 of 37 07:09:08 12:58:52 2 none none:none
UPX| none trace
0fadd81286
[Firefox: 3 hits: 12-07 to 12-25]
none[3] Win2K-f 10 of 38 11:26:41 11:26:41 1 none none:none
StarForce| none trace
fcb4920986
[Firefox:43 hits: 11-21 to 12-27]
none[3] Win2K-f 2 of 37 02:18:24 14:54:39 3 none none:none
UPX| none trace
dc331fb791
[Firefox:1119 hits: 11-24 to 12-27]
none[3] Win2K-f 3 of 37 02:13:26 23:39:04 39 none none:none
UPX| none trace
741c93f3c1
[Firefox: 7 hits: 11-30 to 12-27]
none[3] Win2K-f 5 of 37 21:59:50 21:59:50 1 none none:none
UPX| none trace
0a1923ae9e
NEW
none[3] Win2K-f 14 of 39 15:18:27 15:18:27 1 none none:none
Armadillo| none trace
bd35d4d98f
[Firefox:35 hits: 11-27 to 12-27]
none[3] Win2K-f 7 of 37 09:19:47 15:01:50 3 none none:none
Armadillo| none trace
917c085aca
[Firefox:288 hits: 11-25 to 12-27]
none[3] Win2K-f 3 of 37 01:09:40 22:46:03 14 none none:none
Armadillo| none trace
71afca1665
[Firefox:70 hits: 11-23 to 12-26]
none[3] Win2K-f 2 of 37 01:43:27 13:00:55 5 none none:none
StarForce| none trace
4f6b51ea3b
[Firefox:21 hits: 12-19 to 12-27]
none[3] Win2K-f 8 of 38 02:25:49 13:02:11 7 none none:none
MEW| none trace
986b59708d
[Firefox:117 hits: 05-08 to 12-21]
none[0] WinXP 29 of 29 09:01:55 09:01:55 1 none none:none
PolyEnE| 100% lines=57 trace
7d99b0e910
[Firefox:1032 hits: 05-01 to 12-27]
none[0] WinXP 26 of 28 05:40:26 05:40:26 1 none none:none
PolyEnE| 99% lines=68 trace
8ce32ded17
[Firefox:216 hits: 11-26 to 12-27]
none[3] Win2K-f 4 of 37 03:33:00 22:59:38 18 none none:none
Armadillo| none trace
4f88618d4f
[Firefox:76 hits: 11-29 to 12-27]
none[3] Win2K-f 8 of 37 14:28:43 23:34:02 3 none none:none
UPX| none trace
96d089e522
[Firefox:90 hits: 10-08 to 12-23]
b9dd25bdfb [0] WinXP 34 of 36 13:41:31 13:41:31 1 none ASM:Graph
PolyEnE| 100% lines=93
embedded dns
trace
e1a2e3980d
[Firefox:10 hits: 12-05 to 12-25]
none[3] Win2K-f 9 of 38 00:38:31 00:38:31 1 none none:none
UPX| none trace
73f9dcd430
NEW
none[3] Win2K-f 14 of 39 06:15:53 06:15:53 1 none none:none
UPX| none trace
b27d73bfcb
[Firefox:72 hits: 10-10 to 12-27]
473c6454ce [0] WinXP 35 of 36 13:32:46 13:32:46 1 none ASM:Graph
PolyEnE| 100% lines=68 trace
7587773eea
[Firefox:686 hits: 11-30 to 12-27]
none[3] Win2K-f 7 of 37 01:25:11 23:17:07 19 none none:none
StarForce| none trace
11ce83d11a
NEW
none[3] Win2K-f 14 of 39 06:51:09 06:51:09 1 none none:none
UPX| none trace
78ceaae025
[Firefox: 9 hits: 11-22 to 12-26]
none[3] Win2K-f 8 of 37 06:10:28 06:10:28 1 none none:none
UPX| none trace
216ec67841
[Firefox:157 hits: 11-20 to 12-27]
none[3] Win2K-f 2 of 37 02:03:26 15:31:49 11 none none:none
StarForce| none trace
223d8089f8
[Firefox:540 hits: 11-21 to 12-27]
none[3] Win2K-f 2 of 37 00:07:07 23:59:13 10 none none:none
StarForce| none trace
d60e538e72
[Firefox:1449 hits: 11-22 to 12-27]
none[3] Win2K-f 2 of 37 00:49:04 23:57:01 27 none none:none
UPX| none trace
0894416d72
NEW
none[3] Win2K-f 16 of 39 03:03:36 03:03:36 1 none none:none
UPX| none trace
4e6c4dd8b1
[Firefox:35 hits: 11-25 to 12-26]
none[3] Win2K-f 4 of 37 07:02:37 09:31:20 2 none none:none
StarForce| none trace
d9cb288f31
[Firefox:12902 hits: 11-20 to 12-27]
45603a001c [0] Win2K-f 3 of 37 00:08:05 23:57:43 339 none ASM:Graph
UPX| 92% lines=174
embedded dns
trace