Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=australianinvestor.com.au
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: australianinvestor.com.au
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache, must-revalidate
Connection: close
Date: Thu, 08 Jan 2015 09:20:12 GMT
Pragma: no-cache
Server: nginx
Vary: Accept-Encoding
Content-Type: text/html
Expires: Mon, 26 Jul 1997 05:00:00 GMT
Last-Modified: Thu, 08 Jan 2015 09:20:12 GMT
Set-Cookie: pID=nhupxo0ac6do0ix1uenskkw8; expires=Wed, 30-Nov-2016 08:00:00 GMT; path=/
Set-Cookie: sID=nhupxo0ac6do0ix1uenskkw8; path=/
Set-Cookie: rttype=blank; expires=Thu, 08-Jan-2015 09:40:12 GMT; path=/
Set-Cookie: litelayout=005; expires=Thu, 08-Jan-2015 10:20:12 GMT
Set-Cookie: litecolor=017; expires=Thu, 08-Jan-2015 10:20:12 GMT
Set-Cookie: trID=7001; expires=Thu, 08-Jan-2015 09:30:12 GMT; path=/
GET / HTTP/1.1
Host: australianinvestor.com.au
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache, must-revalidate
Connection: close
Date: Thu, 08 Jan 2015 09:20:12 GMT
Pragma: no-cache
Server: nginx
Vary: Accept-Encoding
Content-Type: text/html
Expires: Mon, 26 Jul 1997 05:00:00 GMT
Last-Modified: Thu, 08 Jan 2015 09:20:12 GMT
Set-Cookie: pID=nhupxo0ac6do0ix1uenskkw8; expires=Wed, 30-Nov-2016 08:00:00 GMT; path=/
Set-Cookie: sID=nhupxo0ac6do0ix1uenskkw8; path=/
Set-Cookie: rttype=blank; expires=Thu, 08-Jan-2015 09:40:12 GMT; path=/
Set-Cookie: litelayout=005; expires=Thu, 08-Jan-2015 10:20:12 GMT
Set-Cookie: litecolor=017; expires=Thu, 08-Jan-2015 10:20:12 GMT
Set-Cookie: trID=7001; expires=Thu, 08-Jan-2015 09:30:12 GMT; path=/
Second query (visit from search engine):
GET / HTTP/1.1
Host: australianinvestor.com.au
Referer: http://www.google.com/search?q=australianinvestor.com.au
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: australianinvestor.com.au
Referer: http://www.google.com/search?q=australianinvestor.com.au
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://australianinvestor.com.au/ | 200 OK Content-Length: 10081 Content-Type: text/html | clean |
http://australianinvestor.com.au/common/js/caf.js | 200 OK Content-Length: 3477 Content-Type: application/x-javascript | clean |
http://www.google.com/adsense/domains/caf.js | 200 OK Content-Length: 291 Content-Type: text/javascript | clean |
http://australianinvestor.com.au/site/redirps.htm?p=36&ws=103&enc=1&vars=%2F37%7Epqpg%7E1eqooqp1hcdwnqwufqockpu1Ahqtofcvc%5Dfqockp_%3Fcwuvtcnkcpkpxguvqt0eqo0cw%28hqtofcvc%5Duqwteg_%3Fdcppgtvqr%28hqtofcvc%5Djcuj_%3F768cch9e9d63e2fhc636c777f893f7h%3A%28hqtofcvc%5Dtghwtn_%3F%28hqtofcvc%5Dchhq_%3F66532%28hqtofcvc%5Dchhjcuj_%3F364292%3A%3A34%7E2%7E2%7E3%7E%7E%7E449%7E2%7E2%7E2%7Epjwrzq2ce8fq2kz3wgpummy <span>...127 symbols skipped</span> | 200 OK Content-Length: 1299 Content-Type: text/html | clean |
http://australianinvestor.com.au/test404page.js | 404 Not Found Content-Length: 564 Content-Type: text/html | clean |
http://australianinvestor.com.au/site/redirps.htm?p=36&ws=103&enc=1&vars=%2F37%7Epqpg%7E1eqooqp1hcdwnqwufqockpu1Ahqtofcvc%5Dfqockp_%3Fcwuvtcnkcpkpxguvqt0eqo0cw%28hqtofcvc%5Duqwteg_%3Fdcppgtdqvvqo%28hqtofcvc%5Djcuj_%3F73%3B%3B5ghd8ede8c4f8e938he%3B9hh62d7c%28hqtofcvc%5Dtghwtn_%3F%28hqtofcvc%5Dchhq_%3F66532%28hqtofcvc%5Dchhjcuj_%3F364292%3A%3A34%7E2%7E2%7E3%7E%7E%7E449%7E2%7E2%7E2%7Epjwrzq2ce8fq2kz3 <span>...134 symbols skipped</span> | 200 OK Content-Length: 1302 Content-Type: text/html | clean |
http://australianinvestor.com.au/common/advertise/privacy.htm | 200 OK Content-Length: 26796 Content-Type: text/html | clean |