Scanned pages/files
Request | Server response | Status |
http://black.inven.co.kr/dataninfo/recipe | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 27 May 2015 02:44:40 GMT Location: http://black.inven.co.kr/dataninfo/recipe/ Server: nginx Content-Length: 178 Content-Type: text/html | clean |
http://black.inven.co.kr/dataninfo/recipe/ | 200 OK Content-Length: 300967 Content-Type: text/html | clean |
http://www.inven.co.kr/common/lib/js/framework/jquery-1.7.2.min_new.js?v=20130113a | 200 OK Content-Length: 94840 Content-Type: application/x-javascript | clean |
http://www.inven.co.kr/common/lib/js/common_new.js?v=20150515a | 200 OK Content-Length: 53560 Content-Type: application/x-javascript | clean |
http://www.inven.co.kr/common/lib/js/html_new.js | 200 OK Content-Length: 19678 Content-Type: application/x-javascript | clean |
http://www.inven.co.kr/common/lib/js/layer.js | 200 OK Content-Length: 11087 Content-Type: application/x-javascript | clean |
http://www.inven.co.kr/common/lib/js/xml_new.js | 200 OK Content-Length: 3512 Content-Type: application/x-javascript | clean |
http://www.inven.co.kr/common/lib/js/booster.js | 200 OK Content-Length: 1519 Content-Type: application/x-javascript | clean |
http://www.inven.co.kr/common/lib/js/browser.js?v=20140702a | 200 OK Content-Length: 2091 Content-Type: application/x-javascript | clean |
http://www.inven.co.kr/common/lib/js/adns.js?v=20150211c | 200 OK Content-Length: 13468 Content-Type: application/x-javascript | suspicious |
Hidden iFrame found. size: 0x0 src: http://adn.inven.co.kr/imp?slot= <iframe id='comadpromotion' name='comadpromotion' width='0' height='0' frameborder='0' marginwidth='0' marginheight='0' topmargin='0' scrolling='no' src='http://adn.inven.co.kr/imp?slot="+slot+"&type=if'> Hidden iFrame found. size: 0x0 src: http://adn.inven.co.kr/imp?slot= <iframe id='comadbackskin' name='comadbackskin' width='0' height='0' frameborder='0' marginwidth='0' marginheight='0' topmargin='0' scrolling='no' src='http://adn.inven.co.kr/imp?slot="+slot+"&type=if'> Hidden iFrame found. size: 0x0 src: http://adn.inven.co.kr/imp?slot= <iframe id='comadpopup' name='comadpopup' width='0' height='0' frameborder='0' marginwidth='0' marginheight='0' topmargin='0' scrolling='no' src='http://adn.inven.co.kr/imp?slot="+slot+"&type=if'> | ||
http://www.inven.co.kr/common/lib/js/ad.slot.js?v=20150515a | 200 OK Content-Length: 13960 Content-Type: application/x-javascript | clean |
http://www.inven.co.kr/common/dataninfo/lib/js/tooltip.js?v=20150128 | 200 OK Content-Length: 21986 Content-Type: application/x-javascript | clean |
http://www.inven.co.kr/common/lib/js/floatstatic.js | 200 OK Content-Length: 3637 Content-Type: application/x-javascript | clean |
http://www.inven.co.kr/black/lib/js/common.js | 200 OK Content-Length: 5826 Content-Type: application/x-javascript | clean |
http://www.inven.co.kr/common/lib/js/outlogin.js | 200 OK Content-Length: 1731 Content-Type: application/x-javascript | clean |
http://black.inven.co.kr/ | 200 OK Content-Length: 296606 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: black.inven.co.kr
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache, must-revalidate
Connection: close
Date: Wed, 27 May 2015 02:44:59 GMT
Server: nginx
Content-Type: text/html; charset=euc-kr
GET / HTTP/1.1
Host: black.inven.co.kr
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache, must-revalidate
Connection: close
Date: Wed, 27 May 2015 02:44:59 GMT
Server: nginx
Content-Type: text/html; charset=euc-kr
Second query (visit from search engine):
GET / HTTP/1.1
Host: black.inven.co.kr
Referer: http://www.google.com/search?q=black.inven.co.kr
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: black.inven.co.kr
Referer: http://www.google.com/search?q=black.inven.co.kr
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=black.inven.co.kr
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://black.inven.co.kr/
Result: black.inven.co.kr is not infected or malware details are not published yet.
Result: black.inven.co.kr is not infected or malware details are not published yet.