generic_javascript_obfuscation in mrtekoti.com

On 2020-03-26T14:03:02.618935+00:00 we found pattern generic_javascript_obfuscation, type: Suspicious, (JavaScript obfuscation is frequently used to hide malicious code (or with hope to protect intellectual property)) in the page http://mrtekoti.com/wp-content/plugin... referenced from http://mrtekoti.com/ .

Code sample:

b'atob' … b'"getCurrentDeviceSetting"' … b'"initOnReadyComponents"' … b'"elementor/frontend/init"' … b'"attachDocumentsClasses"' … b'"onGeneralSettingsChange"' … b'"webkitRequestFullscreen"' … b'"webkitFullscreenElement"' … b'"webkitFullscreenEnabled"' … b'"webkitfullscreenerror"' … b'"webkitRequestFullScreen"' … b'"webkitCancelFullScreen"' … b'"webkitCurrentFullScreenElement"' … b'"webkitCancelFullScreen"' … b'"webkitfullscreenerror"'

This feature is experimental so please feel free to contact us if you feel any of the reported issues is a false positive or you want to suggest a pattern that should be detected (we are using Yara standard).

Fully automated RESTful API is now available. Subscribe for your free trial today!