Dear All,
I just got information from my friend that one of biggest financial provider AXA Financial, their website was injected with JS:Illredir-CB [Trj].
avast! was detected there is 3 location was infected :
avast! [YANTOCHIANG-PC]: File "
http://wxw.axa.co.id/DropDownMenuX.js" is infected by "JS:Illredir-CB [Trj]" virus.
"%3" task used
Version of current VPS file is 100607-2, 06/08/2010
avast! [YANTOCHIANG-PC]: File "
http://wxw.axa.co.id/ie5.js" is infected by "JS:Illredir-CB [Trj]" virus.
"%3" task used
Version of current VPS file is 100607-2, 06/08/2010
avast! [YANTOCHIANG-PC]: File "
http://wxw.axa.co.id/" is infected by "JS:Illredir-CB [Trj]" virus.
"%3" task used
Version of current VPS file is 100607-2, 06/08/2010
And from the summary website scanning tool, this website got suspicious category :
http://www.unmaskparasites.com/security-report/I need to know where is the exactly location at their HTML script was injected?