Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=buurra.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://buurra.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: buurra.com
Result:
HTTP/1.1 200 OK
Date: Mon, 14 Apr 2014 18:03:44 GMT
Accept-Ranges: bytes
ETag: "b1dc2ec0e257cf1:0"
Server: Microsoft-IIS/7.5
Content-Length: 142798
Content-Type: text/html
Last-Modified: Mon, 14 Apr 2014 13:09:21 GMT
X-Powered-By: ASP.NET
...142798 bytes of data.
GET / HTTP/1.1
Host: buurra.com
Result:
HTTP/1.1 200 OK
Date: Mon, 14 Apr 2014 18:03:44 GMT
Accept-Ranges: bytes
ETag: "b1dc2ec0e257cf1:0"
Server: Microsoft-IIS/7.5
Content-Length: 142798
Content-Type: text/html
Last-Modified: Mon, 14 Apr 2014 13:09:21 GMT
X-Powered-By: ASP.NET
...142798 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: buurra.com
Referer: http://www.google.com/search?q=buurra.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: buurra.com
Referer: http://www.google.com/search?q=buurra.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://buurra.com/ | 200 OK Content-Length: 142798 Content-Type: text/html | clean |
http://%77%77%77%2E%73%66%31%37%2E%63%6F%6D/%73%66%31%37%35%31%38%2E%6A%73 | 400 Bad Request Content-Length: 39 Content-Type: text/html | clean |
http://%77%77%77%2E%73%66%31%37%2E%63%6F%6D/test404page.js | 400 Bad Request Content-Length: 39 Content-Type: text/html | clean |
http://buurra.com/images/top-g18.jpg | 200 OK Content-Length: 429 Content-Type: image/jpeg | clean |
http://buurra.com/images/\"http://%77%77%77%2E%73%66%31%37%2E%63%6F%6D/%73%66%31%37%35%31%38%2E%6A%73\" | 404 Not Found Content-Length: 1163 Content-Type: text/html | clean |
http://web2.pay1.cn/js/Floating.js | HTTP/1.1 200 OK Cache-Control: max-age=14400 Connection: close Date: Mon, 14 Apr 2014 18:10:17 GMT Accept-Ranges: bytes Age: 0 ETag: "e863c1f25dcecd1:ed9" Server: nginx/1.2.9 Content-Length: 1803 Content-Location: http://web2.pay1.cn/js/Floating.js Content-Type: application/x-javascript Last-Modified: Thu, 29 Nov 2012 18:18:36 GMT VAR-Cache: HIT X-Powered-By: ASP.NET X-Powered-By-360WZB: wangzhan.360.cn | clean |
http://web2.pay1.cn/js/floating.js | HTTP/1.1 200 OK Cache-Control: max-age=14400 Connection: close Date: Mon, 14 Apr 2014 18:10:20 GMT Accept-Ranges: bytes Age: 0 ETag: "e863c1f25dcecd1:edb" Server: nginx/1.2.9 Content-Length: 1803 Content-Location: http://web2.pay1.cn/js/floating.js Content-Type: application/x-javascript Last-Modified: Thu, 29 Nov 2012 18:18:36 GMT VAR-Cache: MISS X-Powered-By: ASP.NET X-Powered-By-360WZB: wangzhan.360.cn | clean |