Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=dan.ul00.in
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: dan.ul00.in
Result:
HTTP/1.1 302 Found
Connection: Close
Location: /?WebShieldDRSessionVerify=KZpZMsa2Qnrl5bSkYmk1
Server: Safedog/4.0.0
Content-Length: 0
Content-Type: text/html
...0 bytes of data.
GET / HTTP/1.1
Host: dan.ul00.in
Result:
HTTP/1.1 302 Found
Connection: Close
Location: /?WebShieldDRSessionVerify=KZpZMsa2Qnrl5bSkYmk1
Server: Safedog/4.0.0
Content-Length: 0
Content-Type: text/html
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: dan.ul00.in
Referer: http://www.google.com/search?q=dan.ul00.in
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: dan.ul00.in
Referer: http://www.google.com/search?q=dan.ul00.in
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://dan.ul00.in/ | HTTP/1.1 302 Found Connection: Close Location: /?WebShieldDRSessionVerify=KZpZMsa2Qnrl5bSkYmk1 Server: Safedog/4.0.0 Content-Length: 0 Content-Type: text/html | clean |
http://dan.ul00.in/?webshielddrsessionverify=kzpzmsa2qnrl5bskymk1 | HTTP/1.1 302 Found Connection: Close Location: /?webshielddrsessionverify=kzpzmsa2qnrl5bskymk1&WebShieldDRSessionVerify=KZpZMsa2Qnrl5bSkYmk1 Server: Safedog/4.0.0 Content-Length: 0 Content-Type: text/html | clean |
http://dan.ul00.in/?webshielddrsessionverify=kzpzmsa2qnrl5bskymk1&webshielddrsessionverify=kzpzmsa2qnrl5bskymk1 | 200 OK Content-Length: 26624 Content-Type: text/html | clean |
http://dan.ul00.in/common.js | HTTP/1.1 200 OK Date: Tue, 07 Oct 2014 11:52:41 GMT Accept-Ranges: bytes ETag: "e053bf1764cecf1:a50bdb" Server: IIS Content-Length: 1262 Content-Location: http://dan.ul00.in/common.js Content-Type: application/x-javascript Last-Modified: Fri, 12 Sep 2014 08:32:30 GMT X-Powered-By: WAF/2.0 | clean |
http://dan.ul00.in/test404page.js | 200 OK Content-Length: 73728 Content-Type: text/html | clean |
http://js.users.51.la/16931900.js | 200 OK Content-Length: 1980 Content-Type: application/x-javascript | clean |
http://dan.ul00.in/style2/js/bdshare.js | HTTP/1.1 200 OK Date: Tue, 07 Oct 2014 11:52:47 GMT Accept-Ranges: bytes ETag: "3363f48f2bfdce1:a50bdb" Server: IIS Content-Length: 1132 Content-Location: http://dan.ul00.in/style2/js/bdshare.js Content-Type: application/x-javascript Last-Modified: Fri, 20 Dec 2013 02:31:18 GMT X-Powered-By: WAF/2.0 | clean |
http://dan.ul00.in/style2/js/bds_s_v2.js | HTTP/1.1 200 OK Date: Tue, 07 Oct 2014 11:52:48 GMT Accept-Ranges: bytes ETag: "4cadd8f2bfdce1:a50bdb" Server: IIS Content-Length: 25688 Content-Location: http://dan.ul00.in/style2/js/bds_s_v2.js Content-Type: application/x-javascript Last-Modified: Fri, 20 Dec 2013 02:31:17 GMT X-Powered-By: WAF/2.0 | clean |