Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=typenails.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://typenails.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.typenails.com/ | 200 OK Content-Length: 38482 Content-Type: text/html | suspicious |
Malicious code - confirmed by antiviruses (see below) var l11='KkSKpcCfngCdpxGcz5yJ0FWZwVmc8NmczxHMDJDfwRHdoxXYoBHbBxnUFlVQMxnbyIDfQ9EVwIDf0Z2bz9mcjlWT8JXZrNWYIZkM1IDfyVGdslmZ8hHc3MTM8BDM1EmZmdjM8lHdpNWYw9GOywXYoBHbhBjM8BVSMNEMywHN4IDftJ3bmNnbhJHVldWYtlEWEF0M8BDMmZmZmdjM8dmbwx3boNWezBHf4B3M3IDMywHewJDOyAjM8RlRFxEMywXRNFkTwIDfv5GMywXZ2JXZzJ2bwIDf1NnawgVNMxnUFlVQMN0M8JXdn1Wa8hHcxQTM8NDOywXO1AjNyYTM1w3czVmcn9mcwBjM8JXdjxHZlhXamBjM8RnblRnbvNGfpBXY5JXZ1Fna8xWYpRWYyBjM8RnbvZmQzw3ZulGbs9mcjNHMywHewBTN8BDMwAjZmdjM8NHc0RHa4IDf0ADNwEzMzIDfu9Wa0NWdkVmc8BXblRH Antivirus reports:
Deface/Content modification. The following signature was found: Hacked By: S@NT3T3 <!DOCTYPE html> <html lang="en"> <head> <title>Hacked By: S@NT3T3</title> <meta property="og:title" content="Hacked By: S@NT3T3" />
<meta property="og:description" content="Keep Calm and see, Do not forget , I AM S@NT3T3" /> <meta property="og:image" content="https://scontent-b-fra.xx.fbcdn.net/hphotos-xpf1/v/t1.0-9/10557189_1450422065239246_7386495400888333802_n.jpg?oh=c681d2a783ec6b1543acb11784a2d9a5&oe=54639A04"/> <meta charset="UTF-8"> & ...[38139 bytes skipped]... | ||
http://www.typenails.com/test404page.js | 200 OK Content-Length: 38482 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var l11='KkSKpcCfngCdpxGcz5yJ0FWZwVmc8NmczxHMDJDfwRHdoxXYoBHbBxnUFlVQMxnbyIDfQ9EVwIDf0Z2bz9mcjlWT8JXZrNWYIZkM1IDfyVGdslmZ8hHc3MTM8BDM1EmZmdjM8lHdpNWYw9GOywXYoBHbhBjM8BVSMNEMywHN4IDftJ3bmNnbhJHVldWYtlEWEF0M8BDMmZmZmdjM8dmbwx3boNWezBHf4B3M3IDMywHewJDOyAjM8RlRFxEMywXRNFkTwIDfv5GMywXZ2JXZzJ2bwIDf1NnawgVNMxnUFlVQMN0M8JXdn1Wa8hHcxQTM8NDOywXO1AjNyYTM1w3czVmcn9mcwBjM8JXdjxHZlhXamBjM8RnblRnbvNGfpBXY5JXZ1Fna8xWYpRWYyBjM8RnbvZmQzw3ZulGbs9mcjNHMywHewBTN8BDMwAjZmdjM8NHc0RHa4IDf0ADNwEzMzIDfu9Wa0NWdkVmc8BXblRH Antivirus reports:
|
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: typenails.com
Result:
GET / HTTP/1.1
Host: typenails.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: typenails.com
Referer: http://www.google.com/search?q=typenails.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: typenails.com
Referer: http://www.google.com/search?q=typenails.com
Result:
The result is similar to the first query. There are no suspicious redirects found.