A suspicious code was identified loading content from a blacklisted domain. Example of domains include:

And many others. Those types of code are often used to distribute malware from external web sites while not being visible to the user.



This is not a signature-based rule, but looks at our Blacklist to identify malicious content.



Any web site sites (no specific target)


Clean up:

This malware is generally hidden inside the HTML or PHP files.


Malware dump (sample of malware):