Website Check

Check Your Websites for Malicious or Suspicious code.


Website Check v0.8

Check Depth : 0 1 ( Image link)

Accept Language: KO US DE CN JP IT

User-Agent : MSIE Android iPhone Chrome Safari

Private : (Detection results of private)

Save Source :

Report

*Date : 2020.05.23 17:36
*Site : http://wikiapply.ir/dsuifvhfdkj.exe
*Title :
*Info : 185.216.33.70, DE(Frankfurt am Main, Germany)
*Check url : 7 counts
*Loading time : 14.385829sec
*Reference
  - VIRUSTOTAL : URL Hash 2020-05-22 16:20:17 6/80,  FILE Hash 2020-05-22 19:54:50 22/72
  - Google SafeBrowsing(GSB) : wikiapply.ir is not found
*Result
 (1) Suspicious url(NULL) - 2count
 (2) Input site Registered Malicious url - 1count
 (3) EXE File Signatures - 1count
 (4) (-) MD5 : b377527e76d5ba3b1d6a34605150b76c / Virustotal : 2020-05-22 19:54:50 22/72 - 1count


Public Link : http://zerocert.org/?code=fd2e1f89a87ae57d502cc9409ecf878ded6b8133f7ada7b6f05e7d1e4bda0857

*Latest detected Domain
  • 이 사이트는 최근 90일 동안 악성URL 삽입된 적이 없습니다.
  • 이 사이트는 최근 90일 동안 악성코드 중개 역할한 적이 없습니다.
  • 이 사이트는 최근 90일 동안 악성코드를 유포한 적이 없습니다.
  • Relation domain not found
  • Relation ip not found
  • same Domain not found
  • same IP not found
  • same IP bands not found
  • same ASN not found

http://wikiapply.ir/dsuifvhfdkj.exe -> Malware url
    -> (-) MD5 : b377527e76d5ba3b1d6a34605150b76c / Virustotal : 2020-05-22 19:54:50 22/72
    -> Malware file
    -> EXE File Signatures
  [script] http://fmtlib.net
    -> Suspicious url(NULL)
    [Location] https://fmt.dev
  [script] http://www.openssl.org/)
    [Location] https://www.openssl.org/)
  [exe] http://wikiapply.ir/BlizzardError.exe
    -> Suspicious url(NULL)
    [Location] https://wikiapply.ir/BlizzardError.exe  -> Offline
*Country
45.87.81.166 ()



*Whois
Erroring for domain: wikiapply.ir
*Reference
 VIRUSTOTAL : domain | ip | hash url | hash file
 Google SafeBrowsing(GSB) :
 URLVoid : domain
 Malware Domain List : domain
 SCUMWARE : domain | ip
 Project Honey Pot : ip
 Ransomware Tracker : domain
 Threat Crowd : domain | ip | hash file
 ZeroCERT Safeguard : domain | ip

*etc
  Stopbadware | Norton Safe | McAfee siteadvisor | Phish tank | Tcpiputils

[Info] Changing api service domain address (center.zerocert.org -> cert.zero.camp), API Reference

- Today malware detected : 187 counts