Well Chrome blocked atypical code here:
->Results from scanning URL: htxps://img.wonderhowto.com/js/done.min.js?v=0629201700
Number of sources found: 60
Number of sinks found: 64
blocked by XSS_Auditor in that browser, while trying to run a javascript unpacker report.
Nothing flagged here: https://www.virustotal.com/pl/url/4bd9aa0dd822d5685a05ef45aea5427942a1a30a444f94ad79a4c0ee499c9d77/analysis/1499109701/
Script has missing sri-hash generated.
Re: https://urlscan.io/result/b97c456f-916c-4f33-b82c-787db59c0d46/dom/
Alert:
hide linkDummyContainer" style="width:0;height:0; display: none ;
iframe ,ins,isindex,li,map,menu,noframes, noscript,object,ol,p,pre, script
/js/done.min.js?v=0629201700
Severity: Potentially Suspicious
Reason: Detected procedure that is commonly used in suspicious activity.
Details: Too low entropy detected in string
[[‘</span></span><span class="cur’]]
of length 271 which may point to obfuscation or shellcode. C
One of 4 such detections on this website. Consider: https://www.hybrid-analysis.com/sample/94df9a1172bc654f188d197c5afd2afacb30dafa1c2e17dd88e91e7be398a9dc
agentcallbacklogin abuse - with
invalidHandler%26%26n
polonus