Where do you go to dissect malcode scripts?

General discussion about the NoScript extension for Firefox
Post Reply
luntrus
Senior Member
Posts: 237
Joined: Sat Mar 21, 2009 6:29 pm

Where do you go to dissect malcode scripts?

Post by luntrus » Sat May 16, 2009 10:20 pm

Hi users of NoScript,

There are various ways to pre-scan a site to analyze malcode script, like inline hidden iFrame, PHP holes, malicious js.script redirects, and what have you.
There is vURL:
http://vurl.mysteryfcm.co.uk <== Online
http://support.it-mate.co.uk/?mode=Prod ... topedition <== desktop edition

Read about them:
http://hphosts.blogspot.com

Then we have this online: http://www.blacklistdoctor.com/bld/diagnose.php

And we can use this: http://www.unmaskparasites.com/security-report/

What do you users use in particular?

luntrus
Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.9.1b5pre) Gecko/20090516 Shiretoko/3.5b5pre

Nan M
Ambassador
Posts: 102
Joined: Thu Mar 19, 2009 12:44 pm

Re: Where do you go to dissect malcode scripts?

Post by Nan M » Sun May 17, 2009 5:43 am

Hi luntrus
luntrus wrote:Hi users of NoScript,

There are various ways to pre-scan a site to analyze malcode script, like inline hidden iFrame, PHP holes, malicious js.script redirects, and what have you.
There is vURL: ...


Thanks very much for taking the time to list those links!
All have been bookmarked.
I've just tried vURL and the output looks readable to a plain user.

Not impressed with the edit/control of the hphosts blog though. It left the malware accusation of NS back earlier this month (no link for obvious reasons) as "'undecided". A more firm "not proven", at a minimum, would be more just. And in that particular case, an absolute "wrong" would be fairest.
But that's web2 isn't it? A lot of junk for us to wade through.

Nice to read you again. I haven't caught up with you since the old Mozilla thread.
Mozilla/5.0 (X11; U; Linux i686; en-US; rv:1.9.0.10) Gecko/2009042523 Ubuntu/9.04 (jaunty) Firefox/3.0.10

Post Reply