Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://cncvacation.com/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: cncvacation.com Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Found Connection: close Date: Sat, 06 Sep 2014 04:07:26 GMT Location: http://pinecreekcabinsresort.com/oeaf.html?h=1932133 Server: Apache Content-Length: 236 Content-Type: text/html; charset=iso-8859-1 | malicious |
Scanned pages/files
Request | Server response | Status |
http://cncvacation.com/ | 200 OK Content-Length: 23485 Content-Type: text/html | clean |
http://cncvacation.com/js/swfobject.js | 200 OK Content-Length: 14423 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) document.write(''); var swfobject=function(){var b="undefined",Q="object",n="Shockwave Flash",p="ShockwaveFlash.ShockwaveFlash",P="application/x-shockwave-flash",m="SWFObjectExprInst",j=window,K=document,T=navigator,o=[],N=[],i=[],d=[],J,Z=null,M=null,l=null,e=false,A=false;var h=function(){var v=typeof K.getElementById!=b&&typeof K.getElementsByTagName!=b&&typeof K.createElement!=b,AC=[0,0,0],x=null;if(typeof T.plugins!=b&&typeof T.plugins[n]==Q){x=T.plugins[n].descr Antivirus reports:
| ||
http://cncvacation.com/files/Beijing_Huangdong10daysshopping.pdf | 200 OK Content-Length: 300970 Content-Type: application/pdf | clean |
http://cncvacation.com/test404page.js | 404 Not Found Content-Length: 1074 Content-Type: text/html | clean |
http://cncvacation.com/files/Huadong_Specialprice.pdf | 200 OK Content-Length: 300970 Content-Type: application/pdf | clean |
http://cncvacation.com/files/New_China_Impress_Value.JPG | 200 OK Content-Length: 300975 Content-Type: image/jpeg | clean |
http://cncvacation.com/files/Beijing_Xian_Shangxia.JPG | 200 OK Content-Length: 302423 Content-Type: image/jpeg | clean |
http://cncvacation.com/files/huadong_huangshang10days.pdf | 200 OK Content-Length: 300970 Content-Type: application/pdf | clean |
http://cncvacation.com/files/Huadong8daysshopping.pdf | 200 OK Content-Length: 300970 Content-Type: application/pdf | clean |
http://cncvacation.com/files/Yunnan8daysshopping.pdf | 200 OK Content-Length: 300970 Content-Type: application/pdf | clean |
http://cncvacation.com/files/XiangXi6days.JPG | 200 OK Content-Length: 300975 Content-Type: image/jpeg | clean |
http://cncvacation.com/files/Beijing_Chende_Tianjing9days.pdf | 200 OK Content-Length: 300970 Content-Type: application/pdf | clean |
http://cncvacation.com/files/YuYuanHuangchen8days.JPG | 200 OK Content-Length: 300975 Content-Type: image/jpeg | clean |
http://cncvacation.com/files/changjiang_1.pdf | 200 OK Content-Length: 121153 Content-Type: application/pdf | clean |
http://cncvacation.com/files/Beijing_Yidi.JPG | 200 OK Content-Length: 300975 Content-Type: image/jpeg | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=cncvacation.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://cncvacation.com/
Result: cncvacation.com is not infected or malware details are not published yet.
Result: cncvacation.com is not infected or malware details are not published yet.