Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=airbrushcompressors.biz
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://airbrushcompressors.biz/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.airbrushcompressors.biz/ | HTTP/1.1 200 OK Date: Wed, 25 Jun 2014 07:50:12 GMT Accept-Ranges: bytes ETag: "4785822a9f34cf1:c8ad" Server: Microsoft-IIS/6.0 Content-Length: 5157 Content-Location: http://www.airbrushcompressors.biz/default.html Content-Type: text/html Last-Modified: Fri, 28 Feb 2014 16:07:23 GMT X-Powered-By: ASP.NET | clean |
http://www.airbrushcompressors.biz/default.html | 200 OK Content-Length: 5157 Content-Type: text/html | clean |
http://pagead2.googlesyndication.com/pagead/show_ads.js | 200 OK Content-Length: 21568 Content-Type: text/javascript | clean |
http://lapi.ebay.com/ws/eBayISAPI.dll?EKServer&ai=nqwu%7C%7Cq%21&bdrcolor=FFFFFF&bin=y&cid=0&eksize=1&encode=UTF-8&endcolor=FF0000&endtime=n&fbgcolor=FFFFFF&fntcolor=000000&fs=0&hdrcolor=FFFFFF&hdrimage=1&hdrsrch=n&img=y&lnkcolor=000000&logo=2&num=40&numbid=n&paypal=y&popup=y&prvd=9&query=Airbrush+Compressor&r0=3&shipcost=n&sid=airbrushcompressors.biz&siteid=0&sort=MetaEndSort&sortby=endtime&sortd <span>...149 symbols skipped</span> | 200 OK Content-Length: 42303 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: airbrushcompressors.biz ...[3087 bytes skipped]... br/>//var ekTitleFontFace = "Arial, Helvetica, sans-serif"; var ekTitleFontSize = "-1"; var ekTitleFontFace = "Arial"; var isPrvdMediaPlex= false; var isPrvdCJ= false; var isPrvdEPN= true; var isPrvdHDTorBJMT = false; var isPrvdCNNA = false; var trackingID= "5336843904"; var adsServed=false; var t = new Date(); var cacheBuster = escape(t.toGMTString()); var sid = "airbrushcompressors.biz"; var ekWidth = "340"; var ekQuery = "Airbrush Compressor"; var ekSearchURL_Base ="http://shop.ebay.com"; var ekSearchURL_Full ="http://shop.ebay.com/items/"; var ekSearchURL_Full_2 = ekSearchURL_Full; //var ekSearchURL_Base ="http://search.qa.ebay.com"; //var ekSearchURL_Full ="http://search.qa.ebay.com/search/search.dll"; var siteID ="0"; var isRover=true; var rover ...[46356 bytes skipped]... | ||
http://lapi.ebay.com/ws/\""+href+"\""+(target==null||target=="_self"?"":" | HTTP/1.1 302 Moved Temporarily Date: Wed, 25 Jun 2014 07:50:13 GMT Location: http://pages.ebay.com/messages/page_not_responding.html?eBayErrorEventName=p4p%60gu%60m%2Bfslehq%60%3C%3Dpi%2Bpu%281c75114-2014.06.25.00.50.14.192.MST Server: Apache-Coyote/1.1 Content-Length: 0 RlogId: p4p%60gu%60m%2Bfslehq%60%3C%3Dpi%2Bpu%281c75114-146d200ebb0 | clean |
http://pages.ebay.com/messages/page_not_responding.html?ebayerroreventname=p4p%60gu%60m%2bfslehq%60%3c%3dpi%2bpu%281c75114-2014.06.25.00.50.14.192.mst | 200 OK Content-Length: 8910 Content-Type: text/html | clean |
http://include.ebaystatic.com/js/v/us/ebaybase.js | 200 OK Content-Length: 70441 Content-Type: application/javascript | clean |
http://include.ebaystatic.com/js/v/us/ebaysup.js | 200 OK Content-Length: 17110 Content-Type: application/javascript | clean |
http://lapi.ebay.com/test404page.js | HTTP/1.1 302 Moved Temporarily Date: Wed, 25 Jun 2014 07:50:16 GMT Location: http://pages.ebay.com/messages/page_not_responding.html?eBayErrorEventName=p4p%60gu%60m%2Bfslehq%60%3C%3Dpi%2Bpu%287%3E4d0b1-2014.06.25.00.50.16.708.MST Server: Apache-Coyote/1.1 Content-Length: 0 RlogId: p4p%60gu%60m%2Bfslehq%60%3C%3Dpi%2Bpu%287%3E4d0b1-146d200f584 | clean |
http://pages.ebay.com/messages/page_not_responding.html?ebayerroreventname=p4p%60gu%60m%2bfslehq%60%3c%3dpi%2bpu%287%3e4d0b1-2014.06.25.00.50.16.708.mst | 200 OK Content-Length: 8910 Content-Type: text/html | clean |
http://pages.ebay.com/coverage/index.html | HTTP/1.1 301 Moved Permanently Date: Wed, 25 Jun 2014 07:50:17 GMT ETag: Location: http://pages.ebay.com/ebay-money-back-guarantee/ Server: Apache-Coyote/1.1 Content-Length: 0 Last-Modified: Wed, 25 Jun 2014 07:17:04 GMT RlogId: p4fug%60fvehq%60%3C%3Dpie3a55d.c5c%60-146d200fa10 | clean |
http://pages.ebay.com/ebay-money-back-guarantee/ | 200 OK Content-Length: 31264 Content-Type: text/html | clean |
http://pages.ebay.com/jslibrary/jquery-1.10.2.min.js | 200 OK Content-Length: 93118 Content-Type: application/x-javascript | clean |
http://ir.ebaystatic.com/v4js/z/i5/r32gctn0fu3vjkpge2mjhij3q.js | 200 OK Content-Length: 104294 Content-Type: application/x-javascript | clean |
http://include.ebaystatic.com/js/e879/us/ebaybase_v4_e8793us.js | 200 OK Content-Length: 51599 Content-Type: application/javascript | clean |
http://include.ebaystatic.com/js/e879/us/ebaysup_e8793us.js | 200 OK Content-Length: 17110 Content-Type: application/javascript | clean |
http://ir.ebaystatic.com/header/js/all.min?combo=90&rvr=s48rc4&siteid=0&h=96834 | 200 OK Content-Length: 186270 Content-Type: application/x-javascript | clean |
http://pages.ebay.com/coverage/ | HTTP/1.1 301 Moved Permanently Date: Wed, 25 Jun 2014 07:50:20 GMT Location: http://pages.ebay.com/ebay-money-back-guarantee/ Server: Apache-Coyote/1.1 Content-Length: 0 RlogId: p4fug%60fvehq%60%3C%3Dsm%7E0a57d.a47b-146d20108b1 | clean |
http://pages.ebay.com/test404page.js | 404 Not Found Content-Length: 17372 | clean |
http://ir.ebaystatic.com/v4js/z/mz/jy3dexqkbe2ghdcotknmqmnkb.js | 200 OK Content-Length: 21565 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: airbrushcompressors.biz
Result:
GET / HTTP/1.1
Host: airbrushcompressors.biz
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: airbrushcompressors.biz
Referer: http://www.google.com/search?q=airbrushcompressors.biz
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: airbrushcompressors.biz
Referer: http://www.google.com/search?q=airbrushcompressors.biz
Result:
The result is similar to the first query. There are no suspicious redirects found.