Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=domain.lc
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://domain.lc/
Result: The website is marked by Yandex as SMS-fraud resource. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as SMS-fraud resource. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: domain.lc
Result:
HTTP/1.1 302 Found
Connection: close
Date: Fri, 25 Jul 2014 09:34:14 GMT
Location: http://www.domain.lc/
Server: Apache/2.2.9
Vary: Accept-Encoding
Content-Length: 205
Content-Type: text/html; charset=iso-8859-1
...205 bytes of data.
GET / HTTP/1.1
Host: domain.lc
Result:
HTTP/1.1 302 Found
Connection: close
Date: Fri, 25 Jul 2014 09:34:14 GMT
Location: http://www.domain.lc/
Server: Apache/2.2.9
Vary: Accept-Encoding
Content-Length: 205
Content-Type: text/html; charset=iso-8859-1
...205 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: domain.lc
Referer: http://www.google.com/search?q=domain.lc
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: domain.lc
Referer: http://www.google.com/search?q=domain.lc
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://domain.lc/ | HTTP/1.1 302 Found Connection: close Date: Fri, 25 Jul 2014 09:34:14 GMT Location: http://www.domain.lc/ Server: Apache/2.2.9 Vary: Accept-Encoding Content-Length: 205 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.domain.lc/ | 200 OK Content-Length: 44170 Content-Type: text/html | clean |
http://www.domain.lc/static/js/jquery-1.4.2.min.js | 200 OK Content-Length: 72174 Content-Type: application/javascript | clean |
http://domain.lc/static/js/jquery-ui-1.8.4.custom.min.js | HTTP/1.1 302 Found Connection: close Date: Fri, 25 Jul 2014 09:34:15 GMT Location: http://www.domain.lc/ Server: Apache/2.2.9 Vary: Accept-Encoding Content-Length: 205 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.domain.lc/test404page.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 25 Jul 2014 09:34:16 GMT Location: http://www.domain.lc/ Server: Apache/2.2.9 Vary: Accept-Encoding Content-Type: text/html; charset=utf-8 Set-Cookie: multiserv_catalyst_session=11573b87a7545a202aec6d61f805615be88f30f6; path=/; expires=Fri, 25-Jul-2014 15:34:16 GMT; HttpOnly | clean |
http://domain.lc/static/js/plugins/jquery.cookies.js | HTTP/1.1 302 Found Connection: close Date: Fri, 25 Jul 2014 09:34:16 GMT Location: http://www.domain.lc/ Server: Apache/2.2.9 Vary: Accept-Encoding Content-Length: 205 Content-Type: text/html; charset=iso-8859-1 | clean |
http://domain.lc/static/js/plugins/jquery.equalheights.js | HTTP/1.1 302 Found Connection: close Date: Fri, 25 Jul 2014 09:34:16 GMT Location: http://www.domain.lc/ Server: Apache/2.2.9 Vary: Accept-Encoding Content-Length: 205 Content-Type: text/html; charset=iso-8859-1 | clean |
http://domain.lc/static/js/plugins/jquery.json-2.2.js | HTTP/1.1 302 Found Connection: close Date: Fri, 25 Jul 2014 09:34:16 GMT Location: http://www.domain.lc/ Server: Apache/2.2.9 Vary: Accept-Encoding Content-Length: 205 Content-Type: text/html; charset=iso-8859-1 | clean |