Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=banmahachai.net
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://banmahachai.net/ | HTTP/1.1 200 OK Date: Thu, 06 Nov 2014 13:19:21 GMT Accept-Ranges: bytes ETag: "b01a27549c48ce1:1c5292" Server: Microsoft-IIS/6.0 Content-Length: 2376 Content-Location: http://banmahachai.net/index.htm Content-Type: text/html Last-Modified: Sat, 04 May 2013 07:52:30 GMT MicrosoftOfficeWebServer: 5.0_Pub X-Powered-By: ASP.NET | clean |
http://banmahachai.net/index.htm | 200 OK Content-Length: 2376 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 10x10 style: hidden src: http://www.texter-in-deutschland.de/counter.php <iframe src="http://www.texter-in-deutschland.de/counter.php" style="visibility: hidden; position: absolute; left: 0px; top: 0px" width="10" height="10"/> | ||
http://www.geocities.com/sweety21st/snow.js | HTTP/1.1 302 Found Connection: close Date: Thu, 06 Nov 2014 13:19:12 GMT Location: https://smallbusiness.yahoo.com/geocities Vary: Accept-Encoding Content-Length: 3323 Content-Type: text/html P3P: policyref="http://info.yahoo.com/w3c/p3p.xml", CP="CAO DSP COR CUR ADM DEV TAI PSA PSD IVAi IVDi CONi TELo OTPi OUR DELi SAMi OTRi UNRi PUBi IND PHY ONL UNI PUR FIN COM NAV INT DEM CNT STA POL HEA PRE LOC GOV" | clean |
https://smallbusiness.yahoo.com/geocities | 200 OK Content-Length: 30799 Content-Type: text/html | clean |
https://s.yimg.com/zz/combo?yui:3.13.0/build/yui/yui-min.js | 200 OK Content-Length: 88622 Content-Type: application/javascript | clean |
https://s.yimg.com/ss/rapid-3.19.js | 200 OK Content-Length: 40890 Content-Type: application/javascript | clean |
https://s2.yimg.com/lm/ysbp/js/e49becc8.helpers_core.js | 200 OK Content-Length: 47441 Content-Type: application/x-javascript | clean |
https://s.yimg.com/zz/combo?kx/yucs/uh3/uh/1078/js/uh-min.js&kx/yucs/uh3/uh/1078/js/gallery-jsonp-min.js&kx/yucs/uh3/uh/1078/js/menu_utils_v3-min.js&kx/yucs/uh3/uh/1078/js/localeDateFormat-min.js&kx/yucs/uh3/uh/1078/js/timestamp_library_v2-min.js&kx/yucs/uh3/uh/1104/js/logo_debug-min.js&kx/yucs/uh3/switch-theme/6/js/switch_theme-min.js&kx/yucs/uhc/meta/55/js/meta-min.js&kx/yucs/uh_common/beacon/18 <span>...348 symbols skipped</span> | 200 OK Content-Length: 81468 Content-Type: application/javascript | clean |
http://www.geocities.com/webhosting | HTTP/1.1 302 Found Connection: close Date: Thu, 06 Nov 2014 13:19:17 GMT Location: https://smallbusiness.yahoo.com/geocities Vary: Accept-Encoding Content-Length: 3323 Content-Type: text/html P3P: policyref="http://info.yahoo.com/w3c/p3p.xml", CP="CAO DSP COR CUR ADM DEV TAI PSA PSD IVAi IVDi CONi TELo OTPi OUR DELi SAMi OTRi UNRi PUBi IND PHY ONL UNI PUR FIN COM NAV INT DEM CNT STA POL HEA PRE LOC GOV" | clean |
http://smallbusiness.yahoo.com/test404page.js | HTTP/1.1 301 Redirect Cache-Control: no-store Connection: close Date: Thu, 06 Nov 2014 13:19:18 GMT Location: https://smallbusiness.yahoo.com/test404page.js Server: ATS/4.0.2 Content-Language: en Content-Length: 213 Content-Type: text/html; charset=utf-8 | clean |
https://smallbusiness.yahoo.com/test404page.js | 404 Not Found Content-Length: 30445 Content-Type: text/html | clean |
https://smallbusiness.yahoo.com/webhosting | 200 OK Content-Length: 115810 Content-Type: text/html | clean |
https://s3.yimg.com/lm/ysbp/js/56972a08.web_hosting_base.js | 200 OK Content-Length: 2877 Content-Type: application/x-javascript | clean |
https://smallbusiness.yahoo.com/webhosting/compare-plans | 200 OK Content-Length: 87317 Content-Type: text/html | clean |
https://s3.yimg.com/lm/ysbp/js/5dc2e582.web_hosting.js | 200 OK Content-Length: 2657 Content-Type: application/x-javascript | clean |
https://smallbusiness.yahoo.com/ecommerce | 200 OK Content-Length: 95330 Content-Type: text/html | clean |
https://s1.yimg.com/lm/ysbp/js/6123cb92.ms_base.js | 200 OK Content-Length: 5038 Content-Type: application/x-javascript | clean |
https://smallbusiness.yahoo.com/ecommerce/compare-plans | 200 OK Content-Length: 48987 Content-Type: text/html | clean |
https://s.yimg.com/lm/ysbp/js/732d417d.ms2_getstarted.js | 200 OK Content-Length: 1867 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: banmahachai.net
Result:
HTTP/1.1 200 OK
Date: Thu, 06 Nov 2014 13:19:21 GMT
Accept-Ranges: bytes
ETag: "b01a27549c48ce1:1c5292"
Server: Microsoft-IIS/6.0
Content-Length: 2376
Content-Location: http://banmahachai.net/index.htm
Content-Type: text/html
Last-Modified: Sat, 04 May 2013 07:52:30 GMT
MicrosoftOfficeWebServer: 5.0_Pub
X-Powered-By: ASP.NET
...2376 bytes of data.
GET / HTTP/1.1
Host: banmahachai.net
Result:
HTTP/1.1 200 OK
Date: Thu, 06 Nov 2014 13:19:21 GMT
Accept-Ranges: bytes
ETag: "b01a27549c48ce1:1c5292"
Server: Microsoft-IIS/6.0
Content-Length: 2376
Content-Location: http://banmahachai.net/index.htm
Content-Type: text/html
Last-Modified: Sat, 04 May 2013 07:52:30 GMT
MicrosoftOfficeWebServer: 5.0_Pub
X-Powered-By: ASP.NET
...2376 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: banmahachai.net
Referer: http://www.google.com/search?q=banmahachai.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: banmahachai.net
Referer: http://www.google.com/search?q=banmahachai.net
Result:
The result is similar to the first query. There are no suspicious redirects found.