0 Members and 1 Guest are viewing this topic.
The new component ups the ante by increasing the number of domains to 50,000 per day.
How do you summarize the functionality of a threat like Downadup? It sounds like the sort of challenge taken up only by folks that can solve a Rubik’s Cube in 30 seconds or less. If someone asked me do so in a sentence, here’s how I’d do it:
UPX0:10003D29 cmp [esp+1BCh+SystemTime.wYear], 2009UPX0:10003D30 ja short loc_10003D46UPX0:10003D32 jnz short loc_10003D5CUPX0:10003D34 cmp [esp+1BCh+SystemTime.wMonth], 4UPX0:10003D3A ja short loc_10003D46UPX0:10003D3C jnz short loc_10003D5CUPX0:10003D3E cmp [esp+1BCh+SystemTime.wDay], 1UPX0:10003D44 jb short loc_10003D5C
Detecting Confickerhttp://honeynet.org/node/388