Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=style-hunter.co.uk
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://style-hunter.co.uk/ | 200 OK Content-Length: 2597 Content-Type: text/html | clean |
http://www.style-hunter.co.uk/scripts/sifr.js | 200 OK Content-Length: 16014 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) var hasFlash=function(){var a=6;if(navigator.appVersion.indexOf("MSIE")!=-1&&navigator.appVersion.indexOf("Windows")>-1){document.write('<script language="VBScript"\> \non error resume next \nhasFlash = (IsObject(CreateObject("ShockwaveFlash.ShockwaveFlash." & ' a '))) \n</script\> \n');if(window.hasFlash!=null)return window.hasFlash}if(navigator.mimeTypes&&navigator.mimeTypes["application/x-shockwave-flash"]&&navigator.mimeTypes["application/x-shockwav /*/a9a007*/ Antivirus reports:
| ||
http://www.style-hunter.co.uk/scripts/formvalidate.js | 200 OK Content-Length: 6677 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) function validateform() { if (document.entryform.name2.value=="") { window.alert ("Please tell us your name."); return false; } if (document.entryform.email2.value=="") { window.alert ("Please provide your email address."); return false; } if (document.entryform.printspec.value=="") { window.alert ("Please give us some print requirements."); return false; } } Antivirus reports:
| ||
http://faceandlook.home.pl/jtdkklmg.php?id=24269135 | 404 Not Found Content-Length: 195 Content-Type: text/html | clean |
http://faceandlook.home.pl/test404page.js | 404 Not Found Content-Length: 185 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: style-hunter.co.uk
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 12 Jan 2015 13:29:18 GMT
Pragma: no-cache
Server: Apache
Vary: Accept-Encoding,User-Agent
Content-Length: 2597
Content-Type: text/html
Expires: Mon, 26 Jul 1997 05:00:00 GMT
Last-Modified: Mon, 12 Jan 2015 13:29:19 GMT
Set-Cookie: exp_last_visit=1105709359; expires=Tue, 12-Jan-2016 13:29:19 GMT; path=/
Set-Cookie: exp_last_activity=1421069359; expires=Tue, 12-Jan-2016 13:29:19 GMT; path=/
Set-Cookie: exp_tracker=a%3A1%3A%7Bi%3A0%3Bs%3A5%3A%22index%22%3B%7D; path=/
X-Powered-By: PHP/5.3.28
...2597 bytes of data.
GET / HTTP/1.1
Host: style-hunter.co.uk
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 12 Jan 2015 13:29:18 GMT
Pragma: no-cache
Server: Apache
Vary: Accept-Encoding,User-Agent
Content-Length: 2597
Content-Type: text/html
Expires: Mon, 26 Jul 1997 05:00:00 GMT
Last-Modified: Mon, 12 Jan 2015 13:29:19 GMT
Set-Cookie: exp_last_visit=1105709359; expires=Tue, 12-Jan-2016 13:29:19 GMT; path=/
Set-Cookie: exp_last_activity=1421069359; expires=Tue, 12-Jan-2016 13:29:19 GMT; path=/
Set-Cookie: exp_tracker=a%3A1%3A%7Bi%3A0%3Bs%3A5%3A%22index%22%3B%7D; path=/
X-Powered-By: PHP/5.3.28
...2597 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: style-hunter.co.uk
Referer: http://www.google.com/search?q=style-hunter.co.uk
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: style-hunter.co.uk
Referer: http://www.google.com/search?q=style-hunter.co.uk
Result:
The result is similar to the first query. There are no suspicious redirects found.