JSUNPACK
A Generic JavaScript Unpacker
CAUTION: jsunpack was designed for security researchers and computer professionals
Enter a single URL (or paste JavaScript to decode):

Upload a PDF, pcap, HTML, or JavaScript file
Private? Help: privacy | uploads
Default Referer
Description

Submission permanent link 1ec06b19aaf350ccf4b7d93b5dd74495a104357c (Received 2017-10-13 04:14:10, main.php%3fpage=f13f1407738b5bb1 )

URLStatus
127.0.0.1/

127.0.0.1/document.write('

fair.coupontrax.com/w.php?f=37&e=2 status: (referer=http:/www.ask.com/web?q=puppies)failure: <urlopen error [Errno -2] Name or service not known>

127.0.0.1/undefined

All Malicious or Suspicious Elements of Submission

malicious: Alert detected /alert CVE-2006-0003 shellexecute with ./../413daeb.exe
upload malicious
[malicious:10] upload
     info: [decodingLevel=0] found JavaScript
     info: DecodedGenericCLSID detected D27CDB6E-AE6D-11CF-96B8-444553540000 CAFEEFAC-DEC7-0000-0000-ABCDEFFEDCBA d27cdb6e-ae6d-11cf-96b8-444553540000 8AD9C840-044E-11D1-B3E9-00805F499D93 BD96C556-65A3-11D0-983A-00C04FC29E36 CA8A9780-280D-11CF-A24D-444553540000
     malicious: Alert detected /alert CVE-2006-0003 shellexecute with ./../413daeb.exe
     info: [open] URL=fair.coupontrax.com/w.php?f=37&e=2
     info: [element] URL=127.0.0.1/undefined
     info: [var s] URL=127.0.0.1/document.write('
     info: [embed] 127.0.0.1/
     info: [decodingLevel=1] found JavaScript
     info: file: saved upload to (c4279ad747719a2b9932c45b185e57743b42d294)
     file: c4279ad747719a2b9932c45b185e57743b42d294: 80596 bytes
     file: be900612d24a7e58e4815fa58c966a98714ad8b8: 30571 bytes

Decoded Files
c427/9ad747719a2b9932c45b185e57743b42d294 from upload (80596 bytes, 45 hidden) download

be90/0612d24a7e58e4815fa58c966a98714ad8b8 from upload (30571 bytes, 184 hidden) download