Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=forum.kuwaitup.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: forum.kuwaitup.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Thu, 15 Jan 2015 09:47:26 GMT
Location: http://forum.allquma.com/
Server: By drsrv.com
Content-Length: 178
Content-Type: text/html
...178 bytes of data.
GET / HTTP/1.1
Host: forum.kuwaitup.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Thu, 15 Jan 2015 09:47:26 GMT
Location: http://forum.allquma.com/
Server: By drsrv.com
Content-Length: 178
Content-Type: text/html
...178 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: forum.kuwaitup.com
Referer: http://www.google.com/search?q=forum.kuwaitup.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: forum.kuwaitup.com
Referer: http://www.google.com/search?q=forum.kuwaitup.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://forum.kuwaitup.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 15 Jan 2015 09:47:26 GMT Location: http://forum.allquma.com/ Server: By drsrv.com Content-Length: 178 Content-Type: text/html | clean |
http://forum.allquma.com/ | 200 OK Content-Length: 224830 Content-Type: text/html | clean |
http://forum.allquma.com/arjwan_new/js/jquery.min.js | 200 OK Content-Length: 78601 Content-Type: application/x-javascript | clean |
http://forum.kuwaitup.com/arjwan_new/js/jquery-ui.min.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 15 Jan 2015 09:47:36 GMT Location: http://forum.allquma.com/arjwan_new/js/jquery-ui.min.js Server: By drsrv.com Content-Length: 178 Content-Type: text/html | clean |
http://forum.allquma.com/arjwan_new/js/jquery-ui.min.js | 200 OK Content-Length: 186181 Content-Type: application/x-javascript | clean |
http://forum.kuwaitup.com/arjwan_new/js/jquery.mune.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 15 Jan 2015 09:47:37 GMT Location: http://forum.allquma.com/arjwan_new/js/jquery.mune.js Server: By drsrv.com Content-Length: 178 Content-Type: text/html | clean |
http://forum.allquma.com/arjwan_new/js/jquery.mune.js | 200 OK Content-Length: 1344 Content-Type: application/x-javascript | clean |
http://forum.kuwaitup.com/clientscript/yui/yahoo-dom-event/yahoo-dom-event.js?v=387 | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 15 Jan 2015 09:47:38 GMT Location: http://forum.allquma.com/clientscript/yui/yahoo-dom-event/yahoo-dom-event.js?v=387 Server: By drsrv.com Content-Length: 178 Content-Type: text/html | clean |
http://forum.allquma.com/clientscript/yui/yahoo-dom-event/yahoo-dom-event.js?v=387 | 200 OK Content-Length: 36628 Content-Type: application/x-javascript | clean |
http://forum.kuwaitup.com/clientscript/yui/connection/connection-min.js?v=387 | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 15 Jan 2015 09:47:39 GMT Location: http://forum.allquma.com/clientscript/yui/connection/connection-min.js?v=387 Server: By drsrv.com Content-Length: 178 Content-Type: text/html | clean |
http://forum.allquma.com/clientscript/yui/connection/connection-min.js?v=387 | 200 OK Content-Length: 11604 Content-Type: application/x-javascript | clean |
http://forum.kuwaitup.com/clientscript/vbulletin_global.js?v=387 | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 15 Jan 2015 09:47:39 GMT Location: http://forum.allquma.com/clientscript/vbulletin_global.js?v=387 Server: By drsrv.com Content-Length: 178 Content-Type: text/html | clean |
http://forum.allquma.com/clientscript/vbulletin_global.js?v=387 | 200 OK Content-Length: 26028 Content-Type: application/x-javascript | clean |
http://forum.kuwaitup.com/clientscript/vbulletin_menu.js?v=387 | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 15 Jan 2015 09:47:40 GMT Location: http://forum.allquma.com/clientscript/vbulletin_menu.js?v=387 Server: By drsrv.com Content-Length: 178 Content-Type: text/html | clean |
http://forum.allquma.com/clientscript/vbulletin_menu.js?v=387 | 200 OK Content-Length: 9441 Content-Type: application/x-javascript | clean |
http://forum.kuwaitup.com/massy/poem.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 15 Jan 2015 09:47:40 GMT Location: http://forum.allquma.com/massy/poem.js Server: By drsrv.com Content-Length: 178 Content-Type: text/html | clean |
http://forum.allquma.com/massy/poem.js | 200 OK Content-Length: 16136 Content-Type: application/x-javascript | clean |
http://forum.kuwaitup.com/massy/gradient.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 15 Jan 2015 09:47:41 GMT Location: http://forum.allquma.com/massy/gradient.js Server: By drsrv.com Content-Length: 178 Content-Type: text/html | clean |
http://forum.allquma.com/massy/gradient.js | 200 OK Content-Length: 5932 Content-Type: application/x-javascript | clean |
http://forum.kuwaitup.com//pagead2.googlesyndication.com/pagead/js/adsbygoogle.js/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 15 Jan 2015 09:47:41 GMT Location: http://forum.allquma.com/pagead2.googlesyndication.com/pagead/js/adsbygoogle.js/ Server: By drsrv.com Content-Length: 178 Content-Type: text/html | clean |
http://forum.allquma.com/pagead2.googlesyndication.com/pagead/js/adsbygoogle.js/ | HTTP/1.1 301 Moved Permanently Cache-Control: private, max-age=0, must-revalidate Connection: close Date: Thu, 15 Jan 2015 09:47:41 GMT Location: / Server: cloudflare-nginx Vary: Accept-Encoding Content-Type: text/html Expires: Thu, 15 Jan 2015 09:47:42 GMT CF-RAY: 1a912741f5b80ae4-WAW Set-Cookie: __cfduid=d901dfcfdb58bc34766950b72a69fa3b21421315261; expires=Fri, 15-Jan-16 09:47:41 GMT; path=/; domain=.allquma.com; HttpOnly X-Powered-By: PHP/5.2.17 | clean |
http://forum.allquma.com/test404page.js | 404 Not Found Content-Length: 564 Content-Type: text/html | clean |
http://a.adorika.net/c/banner_s?tenant=AD&selection=4952&size=728x90&skin=script&di=1 | HTTP/1.1 302 Moved Connection: close Date: Thu, 15 Jan 2015 09:47:42 GMT Location: http://a.ad-sys.com/c/banner_s?tenant=AD&selection=4952&size=728x90&skin=script&di=1 Server: Apache Content-Length: 0 Content-Type: text/plain; charset=UTF-8 P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa ADMa DEVa PSAa PSDa OUR BUS COM INT OTC PUR STA" | clean |
http://a.ad-sys.com/c/banner_s?tenant=ad&selection=4952&size=728x90&skin=script&di=1 | 200 OK Content-Length: 2583 Content-Type: text/javascript | clean |
http://forum.kuwaitup.com/clientscript/vbulletin_md5.js?v=387 | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 15 Jan 2015 09:47:42 GMT Location: http://forum.allquma.com/clientscript/vbulletin_md5.js?v=387 Server: By drsrv.com Content-Length: 178 Content-Type: text/html | clean |
http://forum.allquma.com/clientscript/vbulletin_md5.js?v=387 | 200 OK Content-Length: 5464 Content-Type: application/x-javascript | clean |
http://a.adorika.net/c/banner_s?tenant=AD&selection=4952&size=300x250&skin=script&di=1 | HTTP/1.1 302 Moved Connection: close Date: Thu, 15 Jan 2015 09:47:42 GMT Location: http://a.ad-sys.com/c/banner_s?tenant=AD&selection=4952&size=300x250&skin=script&di=1 Server: Apache Content-Length: 0 Content-Type: text/plain; charset=UTF-8 P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa ADMa DEVa PSAa PSDa OUR BUS COM INT OTC PUR STA" | clean |
http://a.ad-sys.com/c/banner_s?tenant=ad&selection=4952&size=300x250&skin=script&di=1 | 200 OK Content-Length: 2584 Content-Type: text/javascript | clean |
http://forum.kuwaitup.com/clientscript/vbulletin_read_marker.js?v=387 | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 15 Jan 2015 09:47:43 GMT Location: http://forum.allquma.com/clientscript/vbulletin_read_marker.js?v=387 Server: By drsrv.com Content-Length: 178 Content-Type: text/html | clean |
http://forum.allquma.com/clientscript/vbulletin_read_marker.js?v=387 | 200 OK Content-Length: 3440 Content-Type: application/x-javascript | clean |