Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://betterchoiceloans.com/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: betterchoiceloans.com Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 11 Sep 2014 07:50:40 GMT Location: http://abe.muhay.eu/s.php Server: Apache Content-Length: 304 Content-Type: text/html; charset=iso-8859-1 | malicious |
Scanned pages/files
Request | Server response | Status |
http://betterchoiceloans.com/ | 200 OK Content-Length: 18168 Content-Type: text/html | clean |
http://betterchoiceloans.com/javascript.js | 200 OK Content-Length: 1041 Content-Type: application/javascript | clean |
http://betterchoiceloans.com/tooltip.js | 200 OK Content-Length: 3492 Content-Type: application/javascript | clean |
http://betterchoiceloans.com/SpryAssets/SpryValidationTextField.js | 200 OK Content-Length: 73330 Content-Type: application/javascript | clean |
http://betterchoiceloans.com/SpryAssets/SpryValidationSelect.js | 200 OK Content-Length: 15287 Content-Type: application/javascript | clean |
https://ajax.googleapis.com/ajax/libs/jquery/1.5.0/jquery.min.js | 200 OK Content-Length: 84362 Content-Type: text/javascript | clean |
http://betterchoiceloans.com/ajax/xajax.js | 200 OK Content-Length: 15903 Content-Type: application/javascript | clean |
https://www.loansifter.com/myPortal.aspx?uid=41042 | 200 OK Content-Length: 1945 Content-Type: text/html | clean |
http://www.loansifter.com/test404page.js | 404 Not Found Content-Length: 1245 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=betterchoiceloans.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://betterchoiceloans.com/
Result: betterchoiceloans.com is not infected or malware details are not published yet.
Result: betterchoiceloans.com is not infected or malware details are not published yet.