Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=5252-s.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: 5252-s.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 10 Sep 2014 05:01:25 GMT
Accept-Ranges: bytes
ETag: "27f8021-8beb-f2a84b80"
Server: Apache
Vary: Accept-Encoding
Content-Length: 35819
Content-Type: text/html
Last-Modified: Sun, 07 Sep 2014 12:36:14 GMT
...35819 bytes of data.
GET / HTTP/1.1
Host: 5252-s.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 10 Sep 2014 05:01:25 GMT
Accept-Ranges: bytes
ETag: "27f8021-8beb-f2a84b80"
Server: Apache
Vary: Accept-Encoding
Content-Length: 35819
Content-Type: text/html
Last-Modified: Sun, 07 Sep 2014 12:36:14 GMT
...35819 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: 5252-s.com
Referer: http://www.google.com/search?q=5252-s.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: 5252-s.com
Referer: http://www.google.com/search?q=5252-s.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://5252-s.com/ | 200 OK Content-Length: 35819 Content-Type: text/html | clean |
http://5252-s.com/_module/js/script.js?l=0,t=default08,f=g,fs=m | 200 OK Content-Length: 11791 Content-Type: application/x-javascript | clean |
http://tomato.rakusai.org/jsout.php?tm=s&cs=def&mc=1&st=d&uri=http%3A%2F%2Fblog.livedoor.jp%2Fkrrnt%2Findex.rdf | 200 OK Content-Length: 243 Content-Type: application/x-javascript | clean |
http://tomato.rakusai.org/jsout.php?tm=s&cs=def&mc=1&st=d&uri=http%3A%2F%2Ffeedblog.ameba.jp%2Frss%2Fameblo%2Fkotukotumaeda%2Frss20.xml | 200 OK Content-Length: 343 Content-Type: application/x-javascript | clean |
http://tomato.rakusai.org/jsout.php?tm=s&cs=def&mc=1&st=d&uri=http%3A%2F%2Frssblog.ameba.jp%2Fnatsumi10211021%2Frss20.xml | 200 OK Content-Length: 210 Content-Type: application/x-javascript | clean |
http://5252-s.com/index.html | 200 OK Content-Length: 35819 Content-Type: text/html | clean |
http://5252-s.com/kotukotusekkotuin/b/c4hernia.html | 200 OK Content-Length: 20377 Content-Type: text/html | clean |
http://5252-s.com/kotukotusekkotuin/b/../../_module/js/script.js?l=2,t=default08,f=g,fs=m | 200 OK Content-Length: 11791 Content-Type: application/x-javascript | clean |
http://5252-s.com/kotukotusekkotuin/b/../../index.html | 200 OK Content-Length: 35819 Content-Type: text/html | clean |
http://5252-s.com/kotukotusekkotuin/b/../../_module/js/script.js?l=0,t=default08,f=g,fs=m | 200 OK Content-Length: 11791 Content-Type: application/x-javascript | clean |
http://5252-s.com/kotukotusekkotuin/b/../../kotukotusekkotuin/b/c4hernia.html | 200 OK Content-Length: 20377 Content-Type: text/html | clean |
http://5252-s.com/kotukotusekkotuin/b/../../kotukotusekkotuin/b/../../_module/js/script.js?l=2,t=default08,f=g,fs=m | 200 OK Content-Length: 11791 Content-Type: application/x-javascript | clean |
http://5252-s.com/kotukotusekkotuin/b/../../kotukotusekkotuin/b/../../index.html | 200 OK Content-Length: 35819 Content-Type: text/html | clean |
http://5252-s.com/kotukotusekkotuin/b/../../kotukotusekkotuin/b/../../_module/js/script.js?l=0,t=default08,f=g,fs=m | 200 OK Content-Length: 11791 Content-Type: application/x-javascript | clean |
http://5252-s.com/kotukotusekkotuin/b/../../kotukotusekkotuin/b/../../kotukotusekkotuin/b/c4hernia.html | 200 OK Content-Length: 20377 Content-Type: text/html | clean |