Java script infects profiles on Orkut

hxxp://www.radioclubmix.com.br/xss.js

Just access the infected Orkut profile that is contaminated.

VrusTotal: http://www.virustotal.com/file-scan/report.html?id=62c13ea2e809e1133c23f7f8c3b72d314640d32b88bbc51d2ba4afa9fe629f60-1285432847

Thanks for reporting.

Hi Henrique - RJ,

This is what the code looks like in the malzilla browser (image attached)

finjan gives it now as clean, this also: http://vscan.urlvoid.com/analysis/58442ee4218eee7c2808f57dca81906c/eHNzLWpz/

polonus

P.S. also consider: htxp://jsunpack.jeek.org/dec/go?report=2ebf6af0a3fbd9e989ac12147e77d40f448c85c4

Tech

look

http://g1.globo.com/tecnologia/noticia/2010/09/mais-de-180-mil-pessoas-sao-infectadas-em-bug-do-orkut.html

Hi nalware fighters,

If we present it as this, the other users of the forum can read it too:
http://translate.google.nl/translate?js=n&prev=_t&hl=en&ie=UTF-8&layout=2&eotf=1&sl=auto&tl=en&u=http%3A%2F%2Fg1.globo.com%2Ftecnologia%2Fnoticia%2F2010%2F09%2Fmais-de-180-mil-pessoas-sao-infectadas-em-bug-do-orkut.html&act=url

polonus

P.S. Why does Google Translate not translate from Brazilian, only from Portugese?

Polonus, do you need help on following that link?