Is this page infested? Read about the script: http://www.trendmicro.com/vinfo/us/threat-encyclopedia/malware/troj_agent.beaf
Spam Bot opertating? Code:
$ax += inmatch($fromhost,‘killmalware.com’,'Vulnerability Scanner (BADREF-035). '); //74d
$ax += lmatch($address,“78.158.11.226”,"Project Honey Pot rule-breaker, vulnerability scanner (IP-107). ");
Anyone?
link type
htxp://s7.addthis.com/js/300/addthis_widget.js#pubid=ra-51ed0d947572df9f text/javascript
document.write(‘inf’+unescape(‘%6F%40’)+‘killmalwar’+unescape(‘%65%2E’)+‘com’);
This is suspicious script: Suspicious Script:
killmalware.com///-s7.addthis.com/js/300/addthis_widget.js#pubid=ra-51ed0d947572df9f
.ru/">-samui.ru - defaced; seovizi.com - defaced;
Site wide check: Suspicious
re results: signature found - hacked by ng689skw .
cocorevolution dot com - defaced; <a href=”/storages
polonus