My Twitter Notes on 2010-06-13

Powered by Twitter Tools

Help with JavaScript Malware !

I just received today a phishing email which had an HTML attachment and of course it asked me to click the attached file.

By opening the attached file as text I noticed it's packed with scrambled / encoded JavaScript which unfortunately I don't speak fluently.

I have uploaded the file on my webserver and I scanned with QualysGuard Malware Detection service which runs the discovered malware in a sandbox OS to detect the effects on an ordinary PC but unfortunately I didn't get any results.

By unscrambling some URLs I found remote calls to http://onnoe.ru:8080/index.php?pid=10 which gave me a hint that this malware might be used as trojan / botnet harvester.

So, I would appreciate if anybody could take a look at the malware JavaScript and share the results with me .. I'm extremely curious on what it does.

Anyways, here is the culprit JS code saved as txt.

Thank you!

My Twitter Notes on 2010-06-06

Powered by Twitter Tools

My Twitter Notes on 2010-05-30

  • "Patch management for non-Microsoft software products with new release of GFI LANguard" ( http://bit.ly/9CcODJ ) #
  • "BBC News – First human 'infected with computer virus'" ( http://bit.ly/96Lhg4 ) .. amazing ! :) #

Powered by Twitter Tools

Page 5 of 60« First...34567...Last »