Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://bit-consulting.bo/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: bit-consulting.bo Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Thu, 26 Jun 2014 17:56:20 GMT Accept-Ranges: bytes Location: http://www.caribsoft-online.biz/templates/rhuk_solarflare_ii/images/index.php Server: Apache Content-Length: 0 Content-Type: text/html Host-Header: 192fc2e7e50945beb8231a492d6a8024 X-Cache: SGCACHE-MISS X-Forwarded-For: 78.158.11.226 | malicious |
URL: http://www.caribsoft-online.biz/templates/rhuk_solarflare_ii/images/index.php (imitation of visitor from search engine) GET /templates/rhuk_solarflare_ii/images/index.php HTTP/1.1 Host: www.caribsoft-online.biz Referer: http://www.google.com/search?q=redirect+check2 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Thu, 26 Jun 2014 17:56:22 GMT Location: http://avicennahealth.org/templates/beez/html/mod_poll/1/all.php Server: nginx/1.6.0 Content-Length: 0 Content-Type: text/html | suspicious |
URL: http://avicennahealth.org/templates/beez/html/mod_poll/1/all.php (imitation of visitor from search engine) GET /templates/beez/html/mod_poll/1/all.php HTTP/1.1 Host: avicennahealth.org Referer: http://www.google.com/search?q=redirect+check3 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Thu, 26 Jun 2014 17:56:23 GMT Location: http://dididihrefhreyuf4eyurfyu.justdied.com/1.php Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html | malicious |
URL: http://dididihrefhreyuf4eyurfyu.justdied.com/1.php (imitation of visitor from search engine) GET /1.php HTTP/1.1 Host: dididihrefhreyuf4eyurfyu.justdied.com Referer: http://www.google.com/search?q=redirect+check4 | HTTP/1.1 302 Found Connection: close Date: Thu, 26 Jun 2014 17:56:32 GMT Location: http://two.poreksenti.biz/qcyiyt7abe Server: nginx/1.2.1 Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html X-Powered-By: PHP/5.4.4-14+deb7u7 | suspicious |
Scanned pages/files
Request | Server response | Status |
http://bit-consulting.bo/ | 200 OK Content-Length: 71885 Content-Type: text/html | clean |
http://bit-consulting.bo/media/system/js/core.js | 200 OK Content-Length: 4225 Content-Type: application/javascript | clean |
http://bit-consulting.bo/media/system/js/mootools-core.js | 200 OK Content-Length: 88540 Content-Type: application/javascript | clean |
http://bit-consulting.bo/media/system/js/caption.js | 200 OK Content-Length: 800 Content-Type: application/javascript | clean |
http://bit-consulting.bo/media/widgetkit/js/jquery.js | 200 OK Content-Length: 94490 Content-Type: application/javascript | clean |
http://bit-consulting.bo/cache/widgetkit/widgetkit-74e1c9be.js | 200 OK Content-Length: 12865 Content-Type: application/javascript | clean |
http://bit-consulting.bo/media/system/js/mootools-more.js | 200 OK Content-Length: 238128 Content-Type: application/javascript | clean |
http://bit-consulting.bo/modules/mod_roktabs/tmpl/roktabs.js | 200 OK Content-Length: 6502 Content-Type: application/javascript | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.4.4/jquery.min.js | 200 OK Content-Length: 78601 Content-Type: text/javascript | clean |
http://bit-consulting.bo/modules/mod_ariimageslider/mod_ariimageslider/js/jquery.noconflict.js | 200 OK Content-Length: 81 Content-Type: application/javascript | clean |
http://bit-consulting.bo/modules/mod_ariimageslider/mod_ariimageslider/js/jquery.nivo.slider.js | 200 OK Content-Length: 9569 Content-Type: application/javascript | clean |
http://bit-consulting.bo/templates/bit/js/DD_roundies_0.0.2a-min.js | 200 OK Content-Length: 8429 Content-Type: application/javascript | clean |
http://w.sharethis.com/button/buttons.js | 200 OK Content-Length: 148896 Content-Type: application/x-javascript | clean |
http://bit-consulting.bo/./?select=102 | 200 OK Content-Length: 71887 Content-Type: text/html | clean |
http://bit-consulting.bo/index.php/2011-10-18-00-06-04?select=105 | 200 OK Content-Length: 50300 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=bit-consulting.bo
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://bit-consulting.bo/
Result: bit-consulting.bo is not infected or malware details are not published yet.
Result: bit-consulting.bo is not infected or malware details are not published yet.