Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=bestpromotionplan.leadindiagroup.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://bestpromotionplan.leadindiagroup.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://bestpromotionplan.leadindiagroup.com/ | 200 OK Content-Length: 60222 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: leadindiagroup.com <meta name="google-site-verification" content="TEk1LcVtB6nrnm9ArLrct2pgZGXl4eJmvm9C5Rscqi0" /> <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"> <html xmlns="http://www.w3.org/1999/xhtml"> <script type="text/javascript"> var _gaq = _gaq || []; _gaq.push(['_setAccount', 'UA-28941142-1']); _gaq.push(['_setDomainName', 'leadindiagroup.com']); _gaq.push(['_trackPageview']); (function() { var ga = document.createElement('script'); ga.type = 'text/javascript'; ga.async = true; ga.src = ('https:' == document.location.protocol ? 'https://ssl' : 'http://www') + '.google-analytics.com/ga.js'; var s = document.getElementsByTagName('script')[0]; s.parentNode.insertBefore(ga, s); })(); </script> <head><meta name="goo ...[4138 bytes skipped]... | ||
http://bestpromotionplan.leadindiagroup.com/mm_menu.js | 200 OK Content-Length: 29976 Content-Type: application/javascript | clean |
http://bestpromotionplan.leadindiagroup.com/Scripts/AC_RunActiveContent.js | 500 Internal Server Error Content-Length: 697 Content-Type: text/html | clean |
http://bestpromotionplan.leadindiagroup.com/test404page.js | 500 Internal Server Error Content-Length: 697 Content-Type: text/html | clean |
http://www.worldtimeserver.com/clocks/embed.js | 200 OK Content-Length: 942 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: bestpromotionplan.leadindiagroup.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 19 Aug 2014 15:17:24 GMT
Accept-Ranges: bytes
Server: Apache
Content-Length: 60222
Content-Type: text/html
Last-Modified: Thu, 03 Jan 2013 13:52:00 GMT
...60222 bytes of data.
GET / HTTP/1.1
Host: bestpromotionplan.leadindiagroup.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 19 Aug 2014 15:17:24 GMT
Accept-Ranges: bytes
Server: Apache
Content-Length: 60222
Content-Type: text/html
Last-Modified: Thu, 03 Jan 2013 13:52:00 GMT
...60222 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: bestpromotionplan.leadindiagroup.com
Referer: http://www.google.com/search?q=bestpromotionplan.leadindiagroup.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: bestpromotionplan.leadindiagroup.com
Referer: http://www.google.com/search?q=bestpromotionplan.leadindiagroup.com
Result:
The result is similar to the first query. There are no suspicious redirects found.