Sucuri Malware Labs

Sucuri on Twitter Sucuri on Facebook Sucuri on LinkedIn

Malware entry: MW:JS:2369Home  |  Notes  |  Malware data  |  Signatures  |  Tools  |  About

Description:

A malicious and remote javascript file was found inside the site content and is being used to distribute malware (from blaackhatt58.us.to and other domains). Any user visiting the infected site could be compromised (desktop antivirus will flag it as JS:Cruzer-B, JS/Obfuscated, JS/Cruzer.C.gen, JS/TrojanDownloader.Agent.NKW and others, depending on the intermediary domains and AV product).

 

Domains used in this attack:


Affecting:

Any web site (no specific target).

 

Clean up:

This malware is generally hidden at the bottom of the .html or javascript files. Sign up here to get it clean up: Signup

 

Malware dump (sample of malware):



For all our web-based malware signatures, go here: http://labs.sucuri.net/?malwaredb