See: htxp://7163722112.1tdsi32.ru/images/script8908.js
Peter Kleissner’s VirusTracker detects active up malcode: 7163722112.1tdsi32.ru,37.187.22.142,Criminals,
Consider results here: http://www.domxssscanner.com/scan?url=http%3A%2F%2F7163722112.1tdsi32.ru%2Fimages%2Fscript8908.js+
$(document).ready(function (){ vulnerability! → http://aw-snap.info/file-viewer/?tgt=http%3A%2F%2F7163722112.1tdsi32.ru%2Fimages%2Fscript8908.js&ref_sel=GSP2&ua_sel=ff&fs=1
Bitdefender’s TrafficLight flags the script as malicious.
WOT flags: https://www.mywot.com/en/scorecard/moscow.doctorbormental.ru?utm_source=addon&utm_content=popup
polonus