Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=deutacontrols.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: monariza.co.kr
Result:
HTTP/1.1 200 OK
Cache-Control: Private
Date: Sun, 20 Jul 2014 19:06:08 GMT
Pragma: No-Cache
Server: Microsoft-IIS/6.0
Content-Length: 41000
Content-Type: text/html
Expires: Sun, 20 Jul 2014 02:26:08 GMT
P3P: CP=ALL CURa ADMa DEVa TAIa OUR BUS IND PHY ONL UNI PUR FIN COM NAV INT DEM CNT STA POL HEA PRE LOC OTC
Set-Cookie: ASPSESSIONIDQSADSSTQ=IFGFNHMBNMBJPHNMNNDPMGKI; path=/
X-Powered-By: ASP.NET
...41000 bytes of data.
GET / HTTP/1.1
Host: monariza.co.kr
Result:
HTTP/1.1 200 OK
Cache-Control: Private
Date: Sun, 20 Jul 2014 19:06:08 GMT
Pragma: No-Cache
Server: Microsoft-IIS/6.0
Content-Length: 41000
Content-Type: text/html
Expires: Sun, 20 Jul 2014 02:26:08 GMT
P3P: CP=ALL CURa ADMa DEVa TAIa OUR BUS IND PHY ONL UNI PUR FIN COM NAV INT DEM CNT STA POL HEA PRE LOC OTC
Set-Cookie: ASPSESSIONIDQSADSSTQ=IFGFNHMBNMBJPHNMNNDPMGKI; path=/
X-Powered-By: ASP.NET
...41000 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: monariza.co.kr
Referer: http://www.google.com/search?q=monariza.co.kr
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: monariza.co.kr
Referer: http://www.google.com/search?q=monariza.co.kr
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://deutacontrols.com/ | HTTP/1.1 302 Found Connection: close Date: Sun, 28 Dec 2014 06:03:40 GMT Location: http://deuta-controls.net Server: Apache/2.2.3 (CentOS) Content-Length: 291 Content-Type: text/html; charset=iso-8859-1 | malicious |
http://deuta-controls.net/ | 200 OK Content-Length: 62316 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: mlehzen.alfahosting.org ...[342 bytes skipped]... ta-controls.net/wp-content/plugins/sitepress-multilingual-cms/res/css/language-selector.css?v=2.7.1" type="text/css" media="all" /> <meta name="description" content="Industrie- und Gebäudeautomation" /> <link rel="profile" href="http://gmpg.org/xfn/11" /> <link rel="pingback" href="http://deuta-controls.net/xmlrpc.php" /> <link rel="shortcut icon" type="image/x-icon" href="http://mlehzen.alfahosting.org/wp-content/uploads/2013/03/favicon.png" /> <!--[if lt IE 9]> <script src="http://deuta-controls.net/wp-content/themes/nevia/js/html5.js" type="text/javascript"></script> <![endif]--> <!-- Fonts ================================================== --> <link rel="alternate" type="application/rss+xml" title="DEUTA Controls » Feed" href="http://deuta-controls.net/?feed=rss2" /> <link re ...[3215 bytes skipped]... | ||
http://deuta-controls.net/wp-includes/js/jquery/jquery.js?ver=1.11.1 | 200 OK Content-Length: 95807 Content-Type: application/javascript | clean |
http://deuta-controls.net/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://cdnjs.cloudflare.com/ajax/libs/modernizr/2.6.2/modernizr.min.js?ver=2.6.2 | 200 OK Content-Length: 15414 Content-Type: application/javascript | clean |
http://deuta-controls.net/wp-content/plugins/CuteSlider/js/cute.slider.js?ver=1.1.1 | 200 OK Content-Length: 42563 Content-Type: application/javascript | clean |
http://deuta-controls.net/wp-content/plugins/CuteSlider/js/cute.transitions.all.js?ver=1.1.1 | 200 OK Content-Length: 16781 Content-Type: application/javascript | clean |
http://cdnjs.cloudflare.com/ajax/libs/respond.js/1.1.0/respond.min.js?ver=1.1.0 | 200 OK Content-Length: 4069 Content-Type: application/javascript | clean |
http://deuta-controls.net/wp-content/plugins/download-manager/bootstrap/js/bootstrap.min.js?ver=4.1 | 200 OK Content-Length: 27913 Content-Type: application/javascript | clean |
http://deuta-controls.net/wp-content/plugins/download-manager/js/front.js?ver=4.1 | 200 OK Content-Length: 774 Content-Type: application/javascript | clean |
http://deuta-controls.net/wp-content/themes/nevia/plugins/LayerSlider/js/layerslider.kreaturamedia.jquery.js?ver=3.6.2 | 200 OK Content-Length: 26096 Content-Type: application/javascript | clean |
http://deuta-controls.net/wp-content/themes/nevia/plugins/LayerSlider/js/jquery-easing-1.3.js?ver=1.3.0 | 200 OK Content-Length: 8101 Content-Type: application/javascript | clean |
http://deuta-controls.net/wp-content/plugins/user-access-manager/js/jquery.tools.min.js?ver=4.1 | 200 OK Content-Length: 5724 Content-Type: application/javascript | clean |
http://deuta-controls.net/wp-content/plugins/user-access-manager/js/functions.js?ver=4.1 | 200 OK Content-Length: 1070 Content-Type: application/javascript | clean |
http://deuta-controls.net/wp-content/plugins/sitepress-multilingual-cms/res/js/sitepress.js | 200 OK Content-Length: 994 Content-Type: application/javascript | clean |
https://www.klick-tipp.com/form.php?id=37584&type=js | 200 OK Content-Length: 6338 Content-Type: text/javascript | clean |