Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=arlistacomercial.com.br
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: belinea.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 04 Sep 2014 18:06:50 GMT
Server: Apache/2.2.14 (FreeBSD) mod_ssl/2.2.14 OpenSSL/0.9.8k DAV/2 PHP/5.2.12
Content-Type: text/html
X-Powered-By: PHP/5.2.12
GET / HTTP/1.1
Host: belinea.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 04 Sep 2014 18:06:50 GMT
Server: Apache/2.2.14 (FreeBSD) mod_ssl/2.2.14 OpenSSL/0.9.8k DAV/2 PHP/5.2.12
Content-Type: text/html
X-Powered-By: PHP/5.2.12
Second query (visit from search engine):
GET / HTTP/1.1
Host: belinea.ru
Referer: http://www.google.com/search?q=belinea.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: belinea.ru
Referer: http://www.google.com/search?q=belinea.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://www.arlistacomercial.com.br/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Sat, 10 Jan 2015 00:15:30 GMT Location: http://arcomunicacao.net/home/ Server: nginx/1.6.2 Content-Type: text/html; charset=iso-8859-1 X-Cacheable: YES X-Served-From-Cache: Yes | malicious |
http://arcomunicacao.net/home/ | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://arcomunicacao.net/test404page.js | 404 Not Found Content-Length: 42242 Content-Type: text/html | clean |
http://arcomunicacao.net/wp-content/plugins/jquery-updater/js/jquery-2.1.0.min.js?ver=2.1.0 | 200 OK Content-Length: 83615 Content-Type: application/javascript | clean |
http://arcomunicacao.net/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://arcomunicacao.net/wp-content/plugins/revslider/rs-plugin/js/jquery.themepunch.plugins.min.js?ver=3.8.2 | 200 OK Content-Length: 17128 Content-Type: application/javascript | clean |
http://arcomunicacao.net/wp-content/plugins/revslider/rs-plugin/js/jquery.themepunch.revolution.min.js?ver=3.8.2 | 200 OK Content-Length: 54854 Content-Type: application/javascript | clean |
http://arcomunicacao.net/wp-content/themes/businessfinder/design/js/libs/jquery.fancycheckbox.min.js?ver=3.8.2 | 200 OK Content-Length: 1999 Content-Type: application/javascript | clean |
http://arcomunicacao.net/wp-content/themes/businessfinder/design/js/libs/jquery.html5-placeholder-shim.js?ver=3.8.2 | 200 OK Content-Length: 3375 Content-Type: application/javascript | clean |
http://maps.google.com/maps/api/js?sensor=false&language=en&ver=3.8.2 | 200 OK Content-Length: 4246 Content-Type: text/javascript | clean |
http://arcomunicacao.net/wp-content/themes/businessfinder/design/js/libs/gmap3.infobox.js?ver=3.8.2 | 200 OK Content-Length: 5623 Content-Type: application/javascript | clean |
http://arcomunicacao.net/wp-content/themes/businessfinder/design/js/libs/gmap3.min.js?ver=3.8.2 | 200 OK Content-Length: 78464 Content-Type: application/javascript | clean |
http://arcomunicacao.net/wp-content/themes/businessfinder/design/js/libs/jquery.infieldlabel.js?ver=3.8.2 | 200 OK Content-Length: 4664 Content-Type: application/javascript | clean |
http://arcomunicacao.net/wp-content/themes/businessfinder/design/js/libs/jquery.prettyPhoto.js?ver=3.8.2 | 200 OK Content-Length: 36152 Content-Type: application/javascript | clean |
http://arcomunicacao.net/wp-content/themes/businessfinder/design/js/libs/jquery.fancybox-1.3.4.js?ver=3.8.2 | 200 OK Content-Length: 29398 Content-Type: application/javascript | clean |
http://arcomunicacao.net/wp-content/themes/businessfinder/design/js/libs/jquery.easing-1.3.min.js?ver=3.8.2 | 200 OK Content-Length: 3436 Content-Type: application/javascript | clean |