Home Testimonials Company Support 1–888–873–0817
Home Notes Malware Signatures About

Malware entry: MW:MROBH:2

Description: Code used to insert a malicious javascript on many sites hosted at GoDaddy.

Loading malware from: http://www.cloudisthebestnow.com/kp.php

It infects all PHP files.

Clean up:: Run the following script: http://blog.sucuri.net/2010/05/simple-cleanup-solution-for-latest.html

Malware dump (base 64 added to the .php files):


For all our web-based malware signatures, go here: http://labs.sucuri.net/?malwaredb