Scanned pages/files
Request | Server response | Status |
http://even-esp.com/ | 200 OK Content-Length: 26890 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 0x0 src: http://kyeni.org/new.htm <iframe name="x" src="http://kyeni.org/new.htm" width="0" height="0" scrolling="no" frameborder="0" marginwidth="1" marginheight="1"> | ||
http://even-esp.com/WebResource.axd?d=swj8j4C1PUezOe4efT8SbKgC90Btuk8IKoRGebbMMvnzVvltyPaBm_KWuPMBS_7Cj3F4H-t0PZoXXn0G0&t=635338806384659675 | 200 OK Content-Length: 20794 Content-Type: application/x-javascript | clean |
http://even-esp.com/js/dnncore.js | 200 OK Content-Length: 13092 Content-Type: application/x-javascript | clean |
http://even-esp.com/ScriptResource.axd?d=WeuigYBlUJ_hNHiFYVvtl6SeqR-V8bwRcBH9V60fZbTajedNl-YORZaEynJysUFub7LiIbR4zOm-TranZW-dHqlRSBVJ1mgx9xCdarWdpK02_t-91KyM-hFE3n5JOzY590VsEpdo1Sn6qn-TpHSf9RQOv3w1&t=633383565989092353 | 200 OK Content-Length: 84019 Content-Type: application/x-javascript | clean |
http://even-esp.com/ScriptResource.axd?d=zfwBMCtK70bEfnchM9G_t64JRp0GNkq6ueN3IGvsVhQM8ayYHaEUr4YX7iBUDpoTMx3vBqHLoA6ZFq6AGugaISGdCQx6uXGb604CoUVJonDzdcvbjAzeEBgB1zhY4RD572kxqaASvCu8-EPxa2WgORrjY_cb3wrD0ql-sQ2&t=633383565989092353 | 200 OK Content-Length: 29523 Content-Type: application/x-javascript | clean |
http://even-esp.com/WebResource.axd?d=3mS43jDW68EHaPCnv2WdoyQQ00YeDhT3oT2A231VZ_i1mtIWN325jbZtigt3Gwv7qVvNkweGLk1StwK8-ZbOSJ6H1v8CAvqb80pQhkxsu7B8HcvAsMqPbljS-sgLFAxv-GCJCQgULaId4tDPWNsB0BfZraU1&t=633201184700000000 | 200 OK Content-Length: 76503 Content-Type: text/javascript | clean |
http://even-esp.com/default.aspx | 200 OK Content-Length: 26890 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 0x0 src: http://kyeni.org/new.htm <iframe name="x" src="http://kyeni.org/new.htm" width="0" height="0" scrolling="no" frameborder="0" marginwidth="1" marginheight="1"> | ||
http://even-esp.com/Home/tabid/36/Default.aspx | 200 OK Content-Length: 26904 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 0x0 src: http://kyeni.org/new.htm <iframe name="x" src="http://kyeni.org/new.htm" width="0" height="0" scrolling="no" frameborder="0" marginwidth="1" marginheight="1"> | ||
http://even-esp.com/Home/tabid/36/ | 404 Not Found Content-Length: 1047 Content-Type: text/html | clean |
http://even-esp.com/test404page.js | 404 Not Found Content-Length: 1047 Content-Type: text/html | clean |
http://even-esp.com/Aboutus/CompanyProfile/tabid/67/Default.aspx | 200 OK Content-Length: 27850 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 0x0 src: http://kyeni.org/new.htm <iframe name="x" src="http://kyeni.org/new.htm" width="0" height="0" scrolling="no" frameborder="0" marginwidth="1" marginheight="1"> | ||
http://even-esp.com/Aboutus/CompanyProfile/tabid/67/ | 404 Not Found Content-Length: 1047 Content-Type: text/html | clean |
http://even-esp.com/Aboutus/AdministrativeTeam/tabid/68/Default.aspx | 200 OK Content-Length: 21404 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 0x0 src: http://kyeni.org/new.htm <iframe name="x" src="http://kyeni.org/new.htm" width="0" height="0" scrolling="no" frameborder="0" marginwidth="1" marginheight="1"> | ||
http://even-esp.com/Aboutus/AdministrativeTeam/tabid/68/ | 404 Not Found Content-Length: 1047 Content-Type: text/html | clean |
http://even-esp.com/LineCard/StockItems/tabid/58/Default.aspx | 200 OK Content-Length: 24952 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 0x0 src: http://kyeni.org/new.htm <iframe name="x" src="http://kyeni.org/new.htm" width="0" height="0" scrolling="no" frameborder="0" marginwidth="1" marginheight="1"> |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: even-esp.com
Result:
HTTP/1.1 200 OK
Cache-Control: private
Date: Mon, 12 May 2014 07:40:23 GMT
Server: Microsoft-IIS/6.0
Content-Length: 26890
Content-Type: text/html; charset=utf-8
Set-Cookie: .ASPXANONYMOUS=9n9tRUekzwEkAAAAYTVhYTIyYzQtMjk0Mi00MWJmLTg0OWUtYTEwNzgxZDFiNTc50; expires=Sun, 20-Jul-2014 18:20:23 GMT; path=/; HttpOnly
Set-Cookie: language=en-US; path=/; HttpOnly
X-AspNet-Version: 2.0.50727
X-Powered-By: PleskWin
X-Powered-By: ASP.NET
...26890 bytes of data.
GET / HTTP/1.1
Host: even-esp.com
Result:
HTTP/1.1 200 OK
Cache-Control: private
Date: Mon, 12 May 2014 07:40:23 GMT
Server: Microsoft-IIS/6.0
Content-Length: 26890
Content-Type: text/html; charset=utf-8
Set-Cookie: .ASPXANONYMOUS=9n9tRUekzwEkAAAAYTVhYTIyYzQtMjk0Mi00MWJmLTg0OWUtYTEwNzgxZDFiNTc50; expires=Sun, 20-Jul-2014 18:20:23 GMT; path=/; HttpOnly
Set-Cookie: language=en-US; path=/; HttpOnly
X-AspNet-Version: 2.0.50727
X-Powered-By: PleskWin
X-Powered-By: ASP.NET
...26890 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: even-esp.com
Referer: http://www.google.com/search?q=even-esp.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: even-esp.com
Referer: http://www.google.com/search?q=even-esp.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=even-esp.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://even-esp.com/
Result: even-esp.com is not infected or malware details are not published yet.
Result: even-esp.com is not infected or malware details are not published yet.