generic_javascript_obfuscation in www.kellysconstructioninc.com

On 2019-05-13T09:32:13.820655+00:00 we found suspicious pattern generic_javascript_obfuscation, type: Suspicious, (JavaScript obfuscation is frequently used to hide malicious code (or with hope to protect intellectual property)) in the page https://www.kellysconstructioninc.com/

The suspicious code sample:

b'atob' … b'"passiveeventlisteners"' … b"'AIzaSyBAwUOqPUB1CU31yDztoZYaUE7sPv4ktEI'" … b"'1hcIxLJcbybmtBYTD9Z1UA'" … b'"kellysconstructioninc1"' … b'"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'

This feature is experimental so please feel free to contact us if you feel any of the reported issues is a false positive or you want to suggest a pattern that should be detected (we are using Yara standard).

Fully automated RESTful API is now available. Subscribe for your free trial today!