| N/A | |
| HTML document, UTF-8 Unicode text, with very long lines, with CRLF, LF line terminators | 41414 |
| N/A | |
| 6bf02aacb04688e490f8f3c7eb5fd76d | |
| 42f92ee132ea376b577e15eb61d0b06aae8b7a2c | |
| 8ddb9be072f99bc08173e1c31db218e2dd8b8f1b84e97590900b3cb3d80369c3 | |
| N/A | |
| N/A | |
| N/A | |
| N/A | |
| text/html | |
| WordPress 3.3.1 | |
| Deflation or not, gold’s fans see reasons to buy – Los Angeles Times (blog) | Gold Coin Buying . info | |
| HTML | |
| 40 kB | |
| text/html; charset=UTF-8 | |
| Mandigo 1.40.1 | |
| Source: |

| ALYac | JS:Trojan.HideLink.A |
| AVG | JS/HiddenLink.B |
| Ad-Aware | JS:Trojan.HideLink.A |
| Antiy-AVL | Trojan/JS.Agent.nns |
| Arcabit | JS:Trojan.HideLink.A |
| Avast | JS:HideLink-A [Trj] |
| Avira | HTML/Infected.WebPage.Gen6 |
| BitDefender | JS:Trojan.HideLink.A |
| Bkav | JS.eIframeHlNMe.BA10 |
| CAT-QuickHeal | JS.Trojan.Agent.A |
| Comodo | TrojWare.JS.Agent.caa |
| Cyren | JS/SEOHide.A |
| DrWeb | JS.Seospam.1 |
| ESET-NOD32 | JS/Agent.NNS |
| Emsisoft | JS:Trojan.HideLink.A (B) |
| F-Prot | JS/SEOHide.A |
| F-Secure | JS:Trojan.HideLink.A |
| Fortinet | JS/Agent.NOI |
| GData | JS:Trojan.HideLink.A |
| Ikarus | Trojan.JS.HiddenLink |
| Jiangmin | TrojanDownloader.JS.tjh |
| Kaspersky | Trojan-Downloader.JS.Agent.hbs |
| McAfee | JS/Redirector.bz |
| McAfee-GW-Edition | JS/Redirector.bz |
| MicroWorld-eScan | JS:Trojan.HideLink.A |
| Microsoft | Trojan:JS/HideLink.A |
| NANO-Antivirus | Trojan.Script.Agent.duuixh |
| Qihoo-360 | virus.html.gen03.17 |
| Rising | HTML:Malware.Generic(Shepherd)!1.A285 [F] |
| Sophos | Troj/SEO-A |
| Tencent | Html.Win32.Script.501441 |
| VIPRE | Malware.JS.Generic (JS) |
| Zillya | Trojan.HideLink.JS.1 |
| nProtect | JS:Trojan.HideLink.A |