Avast WEBforum

Other => Viruses and worms => Topic started by: polonus on September 12, 2017, 09:17:28 PM

Title: Did they do their homework or fell for spam hacks?
Post by: polonus on September 12, 2017, 09:17:28 PM
Re: http://toolbar.netcraft.com/site_report?url=https://www.domyhomework4me.net
F-status and recommendation: https://observatory.mozilla.org/analyze.html?host=www.domyhomework4me.net
Flagged: https://aw-snap.info/file-viewer/?protocol=secure&tgt=www.domyhomework4me.net&ref_sel=GSP2&ua_sel=ff&fs=1
Consider: https://performance.sucuri.net/domain/www.domyhomework4me.net
A meagre 37% results here for latest technology and best practices: https://en.internet.nl/domain/www.domyhomework4me.net/94201/
Suspicious file: /js/scripts.min.js
Severity:   Potentially Suspicious (on jQuery loader)
Reason:   Detected procedure that is commonly used in suspicious activity.
Details:   Too low entropy detected in string
Quote
[[':((?:\\\\.|[\\w-]|[^-\%FFFFFFA0])+)(?:\\((('((?:\\\\.|[^\\\\'])*)'|\"((?:\\\\.|[^\\\\\"])*)\")|((?:\\\\.|[^\']] of length 111
which may point to obfuscation or shellcode.
Error in code: undefined variable O   consider: http://www.domxssscanner.com/scan?url=https%3A%2F%2Fwww.domyhomework4me.net%2Fjs%2Fscripts.min.js

polonus (volunteer website security analyst and website error-hunter)