Missed by many scanners, but avast! Webshield detects as JS;Clickjack-B[Trj]
Trojans detected:
Object: htxp://catasti.it/
SHA1: 76296b6af82b7ee5edd7c9bc2b5bc39cbc23c8be
Name: TrojWare.JS.Agent.caa
Known javascript malware. Details: http://sucuri.net/malware/entry/MW:SPAM:SEO
t=‘’;}}x[l-a]=z;}document.write(‘<’+x[0]+’ ‘+x[4]+’>.‘+x[2]+’{‘+x[1]+’}</‘+x[0]+’>');}dnnViewState();
ISSUE DETECTED DEFINITION INFECTED URL
SEO Spam MW:SPAM:SEO htxp://catasti.it
SEO Spam MW:SPAM:SEO htxp://catasti.it/index.php/contattaci
nguage=“javascript”> function dnnviewstate() { var a=0,m,v,t,z,x=new array(‘9091968376’,‘8887918192818786347374918784939277359287883421333333338896’,‘778787’,'94999
Web application details:
Application: Joomla! - Open Source Content Management - http://www.joomla.org
Running Plesk 10.3: catasti.it:8443
Web application version:
Joomla Version 2.5.7 for: htxp://catasti.it/media/media/js/mediamanager.js
Joomla Version 2.5.8 for: htxp://catasti.it/language/en-GB/en-GB.ini
Joomla version outdated: Upgrade required.
Plesk version 10.3 outdated: Upgrade required.
Outdated Joomla Found: Joomla under 2.5.20 or 3.3
Outdated Plesk Found: Plesk 10.3