Obfuscantion Threat in googleanalytics/js.js

Created on 23 November 2023, about 1 year ago

Problem/Motivation

The file /sites/default/files/googleanalytics/js.js is reported as Suspicious by quttera.com

Threat name PS.JS.Obfuscantion.gen
Threat dump [[ty(b)%26%26(a[qi[b]]=Nf(b));varc=Q(40)%26%26ni.every(Mf),d=Q(36);returnc||d?nc(a,1):nc(a,0)},vi={},wi=(vi[L.g.H]=0,vi[L.g.P]=1,vi[L.g.N]=2,vi[L.g.ya]=3,vi);functionxi(a){switch(a){casevoid0:return1;case!0:return3;case!1:return2;default:return0}}varyi=function(a){if(Q(37)){for(varb="1",c=0;c<oi.length;c++){vard=b,e,f=oi[c],h=Cf[f];e=void0===h?0:wi.hasOwnProperty(h)?12|wi[h]:8;varl=Ef();l.accessedAny=!0;varm=l.entries[f]||{};e=e<<2|xi(m.implicit);b=d+(""+"0123456789abcdefghijklmnopqrstuvwxyzABCDEFGHIJKLMNOPQRSTUVWXYZ]]

The content of the file:
https://pastebin.com/zJUBtGw8

Steps to reproduce

Running a site scan on https://quttera.com

🐛 Bug report
Status

Active

Version

2.8

Component

Code

Created by

🇭🇺Hungary eaposztrof Székelyföld

Live updates comments and jobs are added and updated live.
Sign in to follow issues

Comments & Activities

Production build 0.71.5 2024