JSUNPACK
A Generic JavaScript Unpacker
CAUTION: jsunpack was designed for security researchers and computer professionals
Enter a single URL (or paste JavaScript to decode):

Upload a PDF, pcap, HTML, or JavaScript file
Private? Help: privacy | uploads
Default Referer
Description

Submission permanent link 2e53a64166d68d997a9a9914a4bc826382abee42 (Received 2017-10-12 09:49:04, bGen.php%3fqID=acd51a1b8a0a1939 )

URLStatus
ad3.googleadservices15.in/x.php?f=46&e=2 status: (referer=http:/www.ask.com/web?q=puppies)failure: <urlopen error [Errno -2] Name or service not known>

127.0.0.1/

127.0.0.1/document.write('

127.0.0.1/undefined

All Malicious or Suspicious Elements of Submission

malicious: Alert detected /alert CVE-2006-0003 shellexecute with ./../8906ab0.exe
upload malicious
[malicious:10] upload
     info: [decodingLevel=0] found JavaScript
     info: DecodedGenericCLSID detected BD96C556-65A3-11D0-983A-00C04FC29E36 CAFEEFAC-DEC7-0000-0000-ABCDEFFEDCBA d27cdb6e-ae6d-11cf-96b8-444553540000 CA8A9780-280D-11CF-A24D-444553540000 D27CDB6E-AE6D-11CF-96B8-444553540000 8AD9C840-044E-11D1-B3E9-00805F499D93
     malicious: Alert detected /alert CVE-2006-0003 shellexecute with ./../8906ab0.exe
     info: [open] URL=ad3.googleadservices15.in/x.php?f=46&e=2
     info: [element] URL=127.0.0.1/undefined
     info: [var c] URL=127.0.0.1/document.write('
     info: [embed] 127.0.0.1/
     info: [decodingLevel=1] found JavaScript
     info: file: saved upload to (7dca48e6497436dfd0ca44ef022fabf316e343a7)
     file: 7dca48e6497436dfd0ca44ef022fabf316e343a7: 81717 bytes
     file: d9cc3eb4ced613b49c6cf9fbebbe7ccc48b035ff: 395183 bytes

Decoded Files
7dca/48e6497436dfd0ca44ef022fabf316e343a7 from upload (81717 bytes, 73 hidden) download

d9cc/3eb4ced613b49c6cf9fbebbe7ccc48b035ff from upload (395183 bytes, 184 hidden) download