Hi guys,

can you please provide more info about "JS/Agent.RDF Trojan"  threat? Website (JS) is maybe false positive detected, but I can not find any further info about this.


Got another JS/Agent.RCW Trojan for www.sprintbox.de
What do you look for in the raw details to determine if it might be a true positive?
Something like obfuscated JS?
For the named website I found

function _0x9e23(_0x14f71d,_0x4c0b72){const _0x4d17dc=_0x4d17(); ...$andSoOn...

Does this look like strange, obfuscated JS?

