Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=1tc.co.uk
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://1tc.co.uk/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: 1tc.co.uk
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Mon, 02 Jun 2014 15:46:14 GMT
Location: https://1tc.co.uk/billing
Server: Apache/2.2.24 (Unix) mod_ssl/2.2.24 OpenSSL/0.9.8e-fips-rhel5 mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635 mod_perl/2.0.6 Perl/v5.8.8
Content-Length: 438
Content-Type: text/html; charset=iso-8859-1
...438 bytes of data.
GET / HTTP/1.1
Host: 1tc.co.uk
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Mon, 02 Jun 2014 15:46:14 GMT
Location: https://1tc.co.uk/billing
Server: Apache/2.2.24 (Unix) mod_ssl/2.2.24 OpenSSL/0.9.8e-fips-rhel5 mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635 mod_perl/2.0.6 Perl/v5.8.8
Content-Length: 438
Content-Type: text/html; charset=iso-8859-1
...438 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: 1tc.co.uk
Referer: http://www.google.com/search?q=1tc.co.uk
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: 1tc.co.uk
Referer: http://www.google.com/search?q=1tc.co.uk
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://1tc.co.uk/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Mon, 02 Jun 2014 15:46:14 GMT Location: https://1tc.co.uk/billing Server: Apache/2.2.24 (Unix) mod_ssl/2.2.24 OpenSSL/0.9.8e-fips-rhel5 mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635 mod_perl/2.0.6 Perl/v5.8.8 Content-Length: 438 Content-Type: text/html; charset=iso-8859-1 | clean |
https://1tc.co.uk/billing | HTTP/1.1 301 Moved Permanently Connection: close Date: Mon, 02 Jun 2014 15:46:14 GMT Location: https://1tc.co.uk/billing/ Server: Apache/2.2.24 (Unix) mod_ssl/2.2.24 OpenSSL/0.9.8e-fips-rhel5 mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635 mod_perl/2.0.6 Perl/v5.8.8 Content-Length: 440 Content-Type: text/html; charset=iso-8859-1 | clean |
https://1tc.co.uk/billing/ | 200 OK Content-Length: 14544 Content-Type: text/html | clean |
https://1tc.co.uk/billing/templates/newdash1/js/jquery.js | 200 OK Content-Length: 262285 Content-Type: application/javascript | clean |
https://1tc.co.uk/billing/templates/newdash1/js/bootstrap.js | 200 OK Content-Length: 29873 Content-Type: application/javascript | clean |
https://1tc.co.uk/billing/templates/newdash1/js/common.js | 200 OK Content-Length: 15885 Content-Type: application/javascript | clean |
https://1tc.co.uk/billing/templates/newdash1/js/jquery-ui-1.8.2.custom.min.js | 200 OK Content-Length: 51173 Content-Type: application/javascript | clean |
https://1tc.co.uk/billing/?cmd=hbchat&action=embed | 200 OK Content-Length: 11807 Content-Type: text/javascript | clean |
http://1tc.co.uk/signup/ | HTTP/1.1 302 Found Connection: close Date: Mon, 02 Jun 2014 15:46:19 GMT Location: https://www.example.com/signup/ Server: Apache/2.2.24 (Unix) mod_ssl/2.2.24 OpenSSL/0.9.8e-fips-rhel5 mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635 mod_perl/2.0.6 Perl/v5.8.8 Content-Length: 420 Content-Type: text/html; charset=iso-8859-1 | clean |
https://www.example.com/signup/ | 404 Not Found Content-Length: 0 Content-Type: text/html | clean |
http://www.example.com/test404page.js | 404 Not Found Content-Length: 1270 Content-Type: text/html | clean |
http://1tc.co.uk/clientarea/ | HTTP/1.1 302 Found Connection: close Date: Mon, 02 Jun 2014 15:46:21 GMT Location: https://www.example.com/clientarea/ Server: Apache/2.2.24 (Unix) mod_ssl/2.2.24 OpenSSL/0.9.8e-fips-rhel5 mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635 mod_perl/2.0.6 Perl/v5.8.8 Content-Length: 424 Content-Type: text/html; charset=iso-8859-1 | clean |
https://www.example.com/clientarea/ | 404 Not Found Content-Length: 0 Content-Type: text/html | clean |
http://1tc.co.uk/cart/ | HTTP/1.1 302 Found Connection: close Date: Mon, 02 Jun 2014 15:46:22 GMT Location: https://www.example.com/cart/ Server: Apache/2.2.24 (Unix) mod_ssl/2.2.24 OpenSSL/0.9.8e-fips-rhel5 mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635 mod_perl/2.0.6 Perl/v5.8.8 Content-Length: 418 Content-Type: text/html; charset=iso-8859-1 | clean |
https://www.example.com/cart/ | 404 Not Found Content-Length: 0 Content-Type: text/html | clean |
http://1tc.co.uk/cart/domain-registration/ | HTTP/1.1 302 Found Connection: close Date: Mon, 02 Jun 2014 15:46:23 GMT Location: https://www.example.com/cart/domain-registration/ Server: Apache/2.2.24 (Unix) mod_ssl/2.2.24 OpenSSL/0.9.8e-fips-rhel5 mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635 mod_perl/2.0.6 Perl/v5.8.8 Content-Length: 438 Content-Type: text/html; charset=iso-8859-1 | clean |
https://www.example.com/cart/domain-registration/ | 404 Not Found Content-Length: 0 Content-Type: text/html | clean |
http://1tc.co.uk/cart/ssl-certificates---ev/ | HTTP/1.1 302 Found Connection: close Date: Mon, 02 Jun 2014 15:46:24 GMT Location: https://www.example.com/cart/ssl-certificates---ev/ Server: Apache/2.2.24 (Unix) mod_ssl/2.2.24 OpenSSL/0.9.8e-fips-rhel5 mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635 mod_perl/2.0.6 Perl/v5.8.8 Content-Length: 440 Content-Type: text/html; charset=iso-8859-1 | clean |
https://www.example.com/cart/ssl-certificates---ev/ | 404 Not Found Content-Length: 0 Content-Type: text/html | clean |
http://1tc.co.uk/cart/hosting/ | HTTP/1.1 302 Found Connection: close Date: Mon, 02 Jun 2014 15:46:24 GMT Location: https://www.example.com/cart/hosting/ Server: Apache/2.2.24 (Unix) mod_ssl/2.2.24 OpenSSL/0.9.8e-fips-rhel5 mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635 mod_perl/2.0.6 Perl/v5.8.8 Content-Length: 426 Content-Type: text/html; charset=iso-8859-1 | clean |
https://www.example.com/cart/hosting/ | 404 Not Found Content-Length: 0 Content-Type: text/html | clean |
http://1tc.co.uk/cart/ssl-certificates---san/ | HTTP/1.1 302 Found Connection: close Date: Mon, 02 Jun 2014 15:46:25 GMT Location: https://www.example.com/cart/ssl-certificates---san/ Server: Apache/2.2.24 (Unix) mod_ssl/2.2.24 OpenSSL/0.9.8e-fips-rhel5 mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635 mod_perl/2.0.6 Perl/v5.8.8 Content-Length: 441 Content-Type: text/html; charset=iso-8859-1 | clean |
https://www.example.com/cart/ssl-certificates---san/ | 404 Not Found Content-Length: 0 Content-Type: text/html | clean |
http://1tc.co.uk/cart/domain-transfer/ | HTTP/1.1 302 Found Connection: close Date: Mon, 02 Jun 2014 15:46:26 GMT Location: https://www.example.com/cart/domain-transfer/ Server: Apache/2.2.24 (Unix) mod_ssl/2.2.24 OpenSSL/0.9.8e-fips-rhel5 mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635 mod_perl/2.0.6 Perl/v5.8.8 Content-Length: 434 Content-Type: text/html; charset=iso-8859-1 | clean |
https://www.example.com/cart/domain-transfer/ | 404 Not Found Content-Length: 0 Content-Type: text/html | clean |