Author Topic: TrojWare.JS.Faceliker.A & G detected as JS:Clickjack-BF[Trj]  (Read 1254 times)

0 Members and 1 Guest are viewing this topic.

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33927
  • malware fighter
TrojWare.JS.Faceliker.A & G detected as JS:Clickjack-BF[Trj]
« on: August 10, 2014, 04:07:37 PM »
See Comodo's scan results: This is a suspicious page
Result for  2014-08-10 13:05:49 UTC
Website: htxp://chovinh24h.vn
Checked URL: htxp://chovinh24h.vn/188/vieclam/299/0/0/moi-luc.html
Trojans detected:
Object: http://gmuaban.vn/js/alibaba.js
SHA1: 0d9a6ebc5874ae8bea5247accc7a627e94ae157b
Name: TrojWare.JS.Faceliker.A
Object: htxp://chovinh24h.vn/188/vieclam/299/0/0/moi-luc.html
SHA1: 62d4df991bea576230dce186aebb9d16171a8778
Name: TrojWare.JS.Faceliker.G

SSUE DETECTED                                  DEFINITION                           VULNERABLE HEADER
Outdated Web Server Apache Found   Vulnerabilities on Apache 2.2   Apache/2.2.15
see: http://httpd.apache.org/security/vulnerabilities_22.html

Bitdefender TrafficLight detects site as malicious.

And yes folks, avast Webshield detects as: JS:Clickjack-BF[Trj], so we are being protected

Given as suspicious: http://zulu.zscaler.com/submission/show/9f84f715ed18251a5f1628b49f4f4615-1407679518
Nothing here: http://urlquery.net/report.php?id=1407679630099

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!