Keep getting this bock message: Infection:HTML:Script-inf

Trying to sign into Cruise Critic Boards: xww.malltop1.com and I keep getting SCRIPT-inf blocking from Avast. HELP

http://zulu.zscaler.com/submission/show/81253ab4b731271e890ec967730fd81c-1355466084

it’s strange, those js we used many years, and no problem it, just since from 2 days ago it was blocked by avast, i will remove hxxp://js.tongji.linezing.com/1347291/tongji.js and change a new ip for test again.

thank you so much

You’re welcome.

WOT poor rating here: http://www.mywot.com/en/scorecard/malltop1.com?utm_source=addon&utm_content=warn-viewsc

we have more than 10,0000 old customers, and 95% is feel very satisfied with our quality and service, so i think this site Ratings is not untrusted, i think avast also can not block us because of the Mywot site ratings.

Don’t worry, avast! won’t block you because of a bad WOT rating.

i re-test the result in this page:
http://zulu.zscaler.com/submission/show/81253ab4b731271e890ec967730fd81c-1355476823

it have the SURBL Block test result as:
SURBL Block Nameserver Domain Result: Blacklisted in multiple real-time domain blocklists

Is it possible because of the Nameserver Domain problem??

sorry my English not very good.

thank you

please help!!!

hi 1823369@qq.com,

The issue you are having with Avast! is not because the detection is not a valid one.

It is valid and correct, likely more so because the Avast! malware team has not removed this detection as of the present moment.

What you need to do is go and get help, not from here, but at a site such as Securi.com http://sitecheck.sucuri.net/scanner/ or other such web cleaning service site, and have them clean your site for you. You still need to fix your issues, this is one way to protect your visitors from getting infected when they visit your site now and in the future.

Avast! does detect valid and active malware at websites when other a/v’s do not.

we will contact http://sucuri.net for ask for this first, if they can clear it for us, that’s will be great.

thank you

I get a potentially suspicious file here: us03.lockview.cn/Js/lockview.js?uid=LK5341197
File size[byte]:
13007
Severity:
Potentially Suspicious
Details:
Suspicious JavaScript code injection.
Reason:
Procedure: + has been called with a string containing hidden JavaScript code .
MD5:
F1C55B93F375767367F9485F1DDF55F7

From Quttera scan results: http://quttera.com/detailed_report/www.malltop1.com

polonus

thank you polonus,

the Avast company said that’s a error alert, and un-block for us now.

thank you for your always help

You are welcome. Stay safe and secure,

polonus