Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=filekom.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: distributionencore.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sun, 13 Apr 2014 11:16:06 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Sun, 13 Apr 2014 11:16:07 GMT
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: a365ea0f9e894db1657a080260656344=0127b91f25132a253043b10bf1ff4519; path=/
X-Powered-By: PHP/5.2.17
GET / HTTP/1.1
Host: distributionencore.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sun, 13 Apr 2014 11:16:06 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Sun, 13 Apr 2014 11:16:07 GMT
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: a365ea0f9e894db1657a080260656344=0127b91f25132a253043b10bf1ff4519; path=/
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: distributionencore.com
Referer: http://www.google.com/search?q=distributionencore.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: distributionencore.com
Referer: http://www.google.com/search?q=distributionencore.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://www.filekom.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Mon, 12 May 2014 13:36:21 GMT Location: http://www.filemac.com/ Server: Apache/2.2.15 (CentOS) Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.2.10 | malicious |
http://www.filemac.com/ | 200 OK Content-Length: 14617 Content-Type: text/html | clean |
http://www.filemac.com/jquery-1.9.1.min.js | 200 OK Content-Length: 92629 Content-Type: application/javascript | clean |
http://www.filemac.com/xupload.js?bz3key | 200 OK Content-Length: 15061 Content-Type: application/javascript | clean |
http://www.filemac.com/jquery.cookie.js | 200 OK Content-Length: 3121 Content-Type: application/javascript | clean |
http://www.filemac.com/swfobject.js | 200 OK Content-Length: 10220 Content-Type: application/javascript | clean |
http://a.ad-sys.com/c/banner_s?selection=9251&size=160x600&skin=script&zone=6081&tenant=AD&di=AF | 200 OK Content-Length: 2595 Content-Type: text/javascript | clean |
http://www.adcash.com/script/java.php?option=rotateur&rotateur=263722 | 200 OK Content-Length: 7911 Content-Type: text/html | clean |
http://www.adcash.com/script/pop_packcpm.php?k=5370d198e452d1124461.1909632&h=88cfa6ada344ce1ad4856a8df34cebe810794317&id=0&ban=1124461&r=263722&ref=&data=&subid= | 200 OK Content-Length: 329 Content-Type: text/html | clean |
http://www.adcash.com/test404page.js | 404 Not Found Content-Length: 564 Content-Type: text/html | clean |
http://www.adcash.com/script/ | 404 Not Found Content-Length: 9 Content-Type: text/html | clean |
http://www.adcash.com/feedback.php?r=263722&ban=1124461 | HTTP/1.1 301 Moved Permanently Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Mon, 12 May 2014 13:50:18 GMT Pragma: no-cache Location: https://www.adcash.com/feedback.php?r=263722&ban=1124461 Server: or2 Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: adcash_panel=3623533343462356836656433636161356534353366693465313267393733646; path=/ | clean |
https://www.adcash.com/feedback.php?r=263722&ban=1124461 | 200 OK Content-Length: 15235 Content-Type: text/html | clean |
https://ajax.googleapis.com/ajax/libs/jquery/1.7.1/jquery.min.js | 200 OK Content-Length: 93868 Content-Type: text/javascript | clean |
https://ajax.googleapis.com/ajax/libs/jqueryui/1.7.2/jquery-ui.min.js | 200 OK Content-Length: 186181 Content-Type: text/javascript | clean |
http://www.adcash.com/login.php | HTTP/1.1 301 Moved Permanently Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Mon, 12 May 2014 13:50:21 GMT Pragma: no-cache Location: https://www.adcash.com/login.php Server: or2 Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: adcash_panel=9353733393362636233646661316136653738323534603835646733626238373; path=/ | clean |
https://www.adcash.com/login.php | 200 OK Content-Length: 14876 Content-Type: text/html | clean |
https://ajax.googleapis.com/ajax/libs/jquery/1.9.1/jquery.min.js | 200 OK Content-Length: 92629 Content-Type: text/javascript | clean |