Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=applefile.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://applefile.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: applefile.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Connection: close
Date: Fri, 09 Jan 2015 21:26:39 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html
Expires: Mon, 26 Jul 1997 05:00:00 GMT
Last-Modified: Fri, 09 Jan 2015 21:26:39 GMT
P3P: CP="ALL CURa ADMa DEVa TAIa OUR BUS IND PHY ONL UNI PUR FIN COM NAV INT DEM CNT STA POL HEA PRE LOC OTC"
Set-Cookie: PHPSESSID=reeg3rjm9p24k9c718dsvu40k6; path=/; domain=applefile.com
GET / HTTP/1.1
Host: applefile.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Connection: close
Date: Fri, 09 Jan 2015 21:26:39 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html
Expires: Mon, 26 Jul 1997 05:00:00 GMT
Last-Modified: Fri, 09 Jan 2015 21:26:39 GMT
P3P: CP="ALL CURa ADMa DEVa TAIa OUR BUS IND PHY ONL UNI PUR FIN COM NAV INT DEM CNT STA POL HEA PRE LOC OTC"
Set-Cookie: PHPSESSID=reeg3rjm9p24k9c718dsvu40k6; path=/; domain=applefile.com
Second query (visit from search engine):
GET / HTTP/1.1
Host: applefile.com
Referer: http://www.google.com/search?q=applefile.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: applefile.com
Referer: http://www.google.com/search?q=applefile.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://applefile.com/ | 200 OK Content-Length: 42059 Content-Type: text/html | clean |
http://applefile.com/js/jquery.min.js?ver=2 | 200 OK Content-Length: 92629 Content-Type: application/javascript | clean |
http://applefile.com/js/jquery-scrolltofixed-min.js?ver=1 | 200 OK Content-Length: 3754 Content-Type: application/javascript | clean |
https://ajax.googleapis.com/ajax/libs/prototype/1.7.0.0/prototype.js | 200 OK Content-Length: 163313 Content-Type: text/javascript | clean |
http://applefile.com/js/cmd_script.js.php | 200 OK Content-Length: 12657 Content-Type: text/html | clean |
http://applefile.com/test404page.js | HTTP/1.1 302 Found Connection: close Date: Fri, 09 Jan 2015 21:26:47 GMT Location: http://applefile.com/contents/index.htm Server: Apache Content-Length: 223 Content-Type: text/html; charset=iso-8859-1 | clean |
http://applefile.com/contents/index.htm | 200 OK Content-Length: 56452 Content-Type: text/html | clean |
http://applefile.com/js/nfile.js.php?ver=5 | 200 OK Content-Length: 2628 Content-Type: text/html | clean |
http://applefile.com/js/nfile_function.js.php | 200 OK Content-Length: 42281 Content-Type: text/html | clean |
http://applefile.com/js/ | HTTP/1.1 302 Found Connection: close Date: Fri, 09 Jan 2015 21:26:52 GMT Location: http://applefile.com/contents/index.htm Server: Apache Content-Length: 223 Content-Type: text/html; charset=iso-8859-1 | clean |
http://applefile.com/js/contents_top.js.php | 200 OK Content-Length: 5616 Content-Type: text/html | clean |
http://applefile.com/js/contents.js.php | 200 OK Content-Length: 7326 Content-Type: text/html | clean |
http://applefile.com/js/wrest.js.php | 200 OK Content-Length: 14012 Content-Type: text/html | clean |
http://applefile.com/js/index.js2.php | 200 OK Content-Length: 4661 Content-Type: text/html | clean |