All-in-one free web application security tool. Web application vulnerability and privacy scanner with support for HTTP cookies, Flash, HTML5 localStorage, sessionStorage, CANVAS, Supercookies, Evercookies. Includes a free SSL/TLS, HTML and HTTP vulnerability scanner and URL malware scanner.
On 2020-10-06T23:48:20.893434+00:00 we found pattern generic_javascript_obfuscation5, type: Suspicious, (JavaScript obfuscation is frequently used to hide malicious code (or with hope to protect intellectual property)) in the page https://67.docs.google.com/comments/d/A… referenced from https://sites.google.com/site/movinmakk… .
Code sample:
b'["APPLET","\\n"],["AREA","\\n"],["BASE","\\n"],["BR","\\n"],["COL","\\n"],["COMMAND","\\n"],["EMBED","\\n"],["FRAME","\\n"],["HR","\\n"],["IMG","\\t"],["INPUT","\\n"],["IFRAME","\\n"],["ISINDEX","\\n"],["KEYGEN","\\n"],["LINK","\\n"],["4\xe1Q\x00\xc1\x12","\\n"],["4\xe4\x82D\x83\xd3","\\n"],["META","\\n"],["OBJECT","\\n"],["PARAM","\\n"],[ra,"\\n"],["SOURCE","\\n"],["STYLE","\\n"],["TRACK","\\n"],["WBR",' … b'["AREA","\\n"],["BASE","\\n"],["BR","\\n"],["COL","\\n"],["COMMAND","\\n"],["EMBED","\\n"],["FRAME","\\n"],["HR","\\n"],["IMG","\\t"],["INPUT","\\n"],["IFRAME","\\n"],["ISINDEX","\\n"],["KEYGEN","\\n"],["LINK","\\n"],["4\xe1Q\x00\xc1\x12","\\n"],["4\xe4\x82D\x83\xd3","\\n"],["META","\\n"],["OBJECT","\\n"],["PARAM","\\n"],[ra,"\\n"],["SOURCE","\\n"],["STYLE","\\n"],["TRACK","\\n"],["WBR",' … b'["BASE","\\n"],["BR","\\n"],["COL","\\n"],["COMMAND","\\n"],["EMBED","\\n"],["FRAME","\\n"],["HR","\\n"],["IMG","\\t"],["INPUT","\\n"],["IFRAME","\\n"],["ISINDEX","\\n"],["KEYGEN","\\n"],["LINK","\\n"],["4\xe1Q\x00\xc1\x12","\\n"],["4\xe4\x82D\x83\xd3","\\n"],["META","\\n"],["OBJECT","\\n"],["PARAM","\\n"],[ra,"\\n"],["SOURCE","\\n"],["STYLE","\\n"],["TRACK","\\n"],["WBR",' … b'["BR","\\n"],["COL","\\n"],["COMMAND","\\n"],["EMBED","\\n"],["FRAME","\\n"],["HR","\\n"],["IMG","\\t"],["INPUT","\\n"],["IFRAME","\\n"],["ISINDEX","\\n"],["KEYGEN","\\n"],["LINK","\\n"],["4\xe1Q\x00\xc1\x12","\\n"],["4\xe4\x82D\x83\xd3","\\n"],["META","\\n"],["OBJECT","\\n"],["PARAM","\\n"],[ra,"\\n"],["SOURCE","\\n"],["STYLE","\\n"],["TRACK","\\n"],["WBR",' … b'["COL","\\n"],["COMMAND","\\n"],["EMBED","\\n"],["FRAME","\\n"],["HR","\\n"],["IMG","\\t"],["INPUT","\\n"],["IFRAME","\\n"],["ISINDEX","\\n"],["KEYGEN","\\n"],["LINK","\\n"],["4\xe1Q\x00\xc1\x12","\\n"],["4\xe4\x82D\x83\xd3","\\n"],["META","\\n"],["OBJECT","\\n"],["PARAM","\\n"],[ra,"\\n"],["SOURCE","\\n"],["STYLE","\\n"],["TRACK","\\n"],["WBR",' … b'["COMMAND","\\n"],["EMBED","\\n"],["FRAME","\\n"],["HR","\\n"],["IMG","\\t"],["INPUT","\\n"],["IFRAME","\\n"],["ISINDEX","\\n"],["KEYGEN","\\n"],["LINK","\\n"],["4\xe1Q\x00\xc1\x12","\\n"],["4\xe4\x82D\x83\xd3","\\n"],["META","\\n"],["OBJECT","\\n"],["PARAM","\\n"],[ra,"\\n"],["SOURCE","\\n"],["STYLE","\\n"],["TRACK","\\n"],["WBR",' … b'["EMBED","\\n"],["FRAME","\\n"],["HR","\\n"],["IMG","\\t"],["INPUT","\\n"],["IFRAME","\\n"],["ISINDEX","\\n"],["KEYGEN","\\n"],["LINK","\\n"],["4\xe1Q\x00\xc1\x12","\\n"],["4\xe4\x82D\x83\xd3","\\n"],["META","\\n"],["OBJECT","\\n"],["PARAM","\\n"],[ra,"\\n"],["SOURCE","\\n"],["STYLE","\\n"],["TRACK","\\n"],["WBR",' … b'["FRAME","\\n"],["HR","\\n"],["IMG","\\t"],["INPUT","\\n"],["IFRAME","\\n"],["ISINDEX","\\n"],["KEYGEN","\\n"],["LINK","\\n"],["4\xe1Q\x00\xc1\x12","\\n"],["4\xe4\x82D\x83\xd3","\\n"],["META","\\n"],["OBJECT","\\n"],["PARAM","\\n"],[ra,"\\n"],["SOURCE","\\n"],["STYLE","\\n"],["TRACK","\\n"],["WBR",' … b'["HR","\\n"],["IMG","\\t"],["INPUT","\\n"],["IFRAME","\\n"],["ISINDEX","\\n"],["KEYGEN","\\n"],["LINK","\\n"],["4\xe1Q\x00\xc1\x12","\\n"],["4\xe4\x82D\x83\xd3","\\n"],["META","\\n"],["OBJECT","\\n"],["PARAM","\\n"],[ra,"\\n"],["SOURCE","\\n"],["STYLE","\\n"],["TRACK","\\n"],["WBR",' … b'["IMG","\\t"],["INPUT","\\n"],["IFRAME","\\n"],["ISINDEX","\\n"],["KEYGEN","\\n"],["LINK","\\n"],["4\xe1Q\x00\xc1\x12","\\n"],["4\xe4\x82D\x83\xd3","\\n"],["META","\\n"],["OBJECT","\\n"],["PARAM","\\n"],[ra,"\\n"],["SOURCE","\\n"],["STYLE","\\n"],["TRACK","\\n"],["WBR",' … b'["INPUT","\\n"],["IFRAME","\\n"],["ISINDEX","\\n"],["KEYGEN","\\n"],["LINK","\\n"],["4\xe1Q\x00\xc1\x12","\\n"],["4\xe4\x82D\x83\xd3","\\n"],["META","\\n"],["OBJECT","\\n"],["PARAM","\\n"],[ra,"\\n"],["SOURCE","\\n"],["STYLE","\\n"],["TRACK","\\n"],["WBR",' … b'["IFRAME","\\n"],["ISINDEX","\\n"],["KEYGEN","\\n"],["LINK","\\n"],["4\xe1Q\x00\xc1\x12","\\n"],["4\xe4\x82D\x83\xd3","\\n"],["META","\\n"],["OBJECT","\\n"],["PARAM","\\n"],[ra,"\\n"],["SOURCE","\\n"],["STYLE","\\n"],["TRACK","\\n"],["WBR",' … b'["ISINDEX","\\n"],["KEYGEN","\\n"],["LINK","\\n"],["4\xe1Q\x00\xc1\x12","\\n"],["4\xe4\x82D\x83\xd3","\\n"],["META","\\n"],["OBJECT","\\n"],["PARAM","\\n"],[ra,"\\n"],["SOURCE","\\n"],["STYLE","\\n"],["TRACK","\\n"],["WBR",' … b'["KEYGEN","\\n"],["LINK","\\n"],["4\xe1Q\x00\xc1\x12","\\n"],["4\xe4\x82D\x83\xd3","\\n"],["META","\\n"],["OBJECT","\\n"],["PARAM","\\n"],[ra,"\\n"],["SOURCE","\\n"],["STYLE","\\n"],["TRACK","\\n"],["WBR",' … b'["LINK","\\n"],["4\xe1Q\x00\xc1\x12","\\n"],["4\xe4\x82D\x83\xd3","\\n"],["META","\\n"],["OBJECT","\\n"],["PARAM","\\n"],[ra,"\\n"],["SOURCE","\\n"],["STYLE","\\n"],["TRACK","\\n"],["WBR",' … b'["4\xe1Q\x00\xc1\x12","\\n"],["4\xe4\x82D\x83\xd3","\\n"],["META","\\n"],["OBJECT","\\n"],["PARAM","\\n"],[ra,"\\n"],["SOURCE","\\n"],["STYLE","\\n"],["TRACK","\\n"],["WBR",' … b'["4\xe4\x82D\x83\xd3","\\n"],["META","\\n"],["OBJECT","\\n"],["PARAM","\\n"],[ra,"\\n"],["SOURCE","\\n"],["STYLE","\\n"],["TRACK","\\n"],["WBR",'
This feature is experimental so please feel free to contact us if you feel any of the reported issues is a false positive or you want to suggest a pattern that should be detected (we are using Yara standard).