Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=aks.fm
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: quoteshunter.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=3600
Connection: close
Date: Sun, 15 Jun 2014 22:45:15 GMT
Server: nginx/1.6.0
Vary: User-Agent,Accept-Encoding
Content-Type: text/html
Expires: Sun, 15 Jun 2014 23:45:15 GMT
GET / HTTP/1.1
Host: quoteshunter.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=3600
Connection: close
Date: Sun, 15 Jun 2014 22:45:15 GMT
Server: nginx/1.6.0
Vary: User-Agent,Accept-Encoding
Content-Type: text/html
Expires: Sun, 15 Jun 2014 23:45:15 GMT
Second query (visit from search engine):
GET / HTTP/1.1
Host: quoteshunter.com
Referer: http://www.google.com/search?q=quoteshunter.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: quoteshunter.com
Referer: http://www.google.com/search?q=quoteshunter.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://aks.fm/ | HTTP/1.1 302 Found Connection: close Date: Fri, 23 Jan 2015 21:31:33 GMT Location: http://ww15.aks.fm/ Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.3.3-7+squeeze23 | malicious |
http://ww15.aks.fm/ | 200 OK Content-Length: 12825 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: aks.fm ...[658 bytes skipped]... r/> .add_link li a{width: 105px; color:#0098c8; font:normal 16px/32px "å®ä½"; height:32px; overflow:hidden; display:inline-block; margin: 0 0 0 12px;} .add_link li a:hover{ text-decoration:underline;} .boxbg { background-color: #000; border: 1px solid #303030; } </style> <script type="text/javascript">var gl={trackingurl:'http://ww15.aks.fm/tracking.php',searchurl:'http://ww15.aks.fm/index.php',relatedsearch:'Related Search',searchbutton:'Search',ckurl:'',cdn:'http://'+document.domain+'/'};var req={ps:["afd","bd3"],adtest:'off',dm:'aks.fm',fdm:'ww15.aks.fm',landerid:323,buy:true,adultallowed:true,cusbuy:'<span class="buy"> </span>',contactinfo:'',partner:'afd',dks:['å·¦æè碱åªä¸ªçå好 ','æææçåè¥è¯ ','æ²»çæ©æ³æ¢å»é¢','æ²»çé³ç¿æ©æ³çå»é¢','èèªè ','æ©æ³è¯¥å¦ä½æ²»ç' ...[2951 bytes skipped]... | ||
http://www.google.com/adsense/domains/caf.js | 200 OK Content-Length: 207584 Content-Type: text/javascript | clean |
http://aks.fm/js/parking_caf_281_1409192.js | 404 Not Found Content-Length: 227 Content-Type: text/html | clean |
http://aks.fm/test404page.js | 404 Not Found Content-Length: 212 Content-Type: text/html | clean |