Analysis report for 44db623d8f7361980cc476d41100c769.swf
WARNING: This SWF files makes use of the built in _url variable. This allows the SWF file to grab the URL that it is ran from. This makes it possible for this SWF file to change its behavior depending on where its ran from.
NOTE: This SWF file executed 46 ActionScript actions.
- Summary [?]
- Runtime URL aware.
- Automatically Redirects Browser.
- DetailsHash: 44db623d8f7361980cc476d41100c769
- Network Activity
- Call Counts
- Actions
- Methods
- Result: MALICIOUS
Submitted On: 2009-11-05 06:54:46
Processing Start: 2009-11-05 06:54:48
Processing End: 2009-11-05 06:57:50
SWF Version: 8
Virustotal Report (clean)
| Method/Action | Details |
| ActionGetUrl2 | http://wepawet.cs.ucsb.edu/?go, _self |
| ActionPushData | 16 |
| ActionGetVariable | 4 |
| ActionGetMember | 3 |
| ActionPop | 3 |
| ActionSetRegister | 2 |
| ActionCallMethod | 2 |
| ActionConstantPool | 2 |
| LogicalNot | 2 |
| ActionCallFunction | 2 |
| ActionDefineFunction2 | 2 |
| ActionBranchIfTrue | 1 |
| Stop | 1 |
| ActionSetMember | 1 |
| ActionNew | 1 |
| ActionNewAdd | 1 |
| ActionGetUrl2 | 1 |
| ActionVar | 1 |
| ActionSetVariable | 1 |
| [string:lastIndexOf] | 1 |
| [string:substr] | 1 |