Jump to content

Prevented download of a dangerous object


Go to solution Solved by harlan4096,

Recommended Posts

Posted

Hello,

Im having a problem with a website, where i get an rerror code when trying to go to check out. Here is the rerror code: HEUR:Trojan-PSW.Script.Generic. 

I also get this message: Prevented the download of a malicious file or other object designed to infect your computer with malware that will slow it down, destroy your system, or cause other problems. We protected you from downloading this object. You can safely close this window.

The problem is that i have never had an issue with website before. here is link to the page https://www.hijabhus.com/quick-order. Could this maybe be a false flag?

harlan4096
Posted

Welcome to Kaspersky community.

 

I can't reproduce that detection in my KES 🤔 neither VirusTotal nor KOTIP services show any detection in that URL…

 

Anyway, I just sent your URL to K. analysts, waiting for final verdict.

  • Like 2
Posted

This is in Norwegian, but here is a ss of what i see

Skjermbilde 2024-09-29 174242.png

  • Like 2
Flood and Flood's wife
Posted

Hi @harlan4096 & @disoster

We can replicate the issue if we go all the way thru to adding an item to the shopping cart:

image.thumb.png.82d9011704e17b278a57b8da860174b0.png

image.thumb.png.b67fca19000ca12d1cc1072975da11f2.png

Thank you🙏
Flood🐳+🐋

  • Like 2
  • Solution
harlan4096
Posted
Quote

Hello,

 

This is not a false alarm. This site is infected.


Here is the malicious code:


<script>var _0x5aa5=["\x62 ...

 

If you are a webmaster, please remove the above code from the page. Also we strongly recommend that you change passwords to all services that can be used to modify website contents because they may have been stolen.

 

Best regards, Malware Analyst

 

  • Like 2

Please sign in to comment

You will be able to leave a comment after signing in



Sign In Now


×
×
  • Create New...