Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=fotocopykonicaminolta.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.fotocopykonicaminolta.com/ | 200 OK Content-Length: 271 Content-Type: text/html | clean |
http://www.fotocopykonicaminolta.com/test404page.js | HTTP/1.1 302 Found Date: Tue, 01 Apr 2014 22:46:12 GMT Location: http://pagesinxt.com/?dn=www.fotocopykonicaminolta.com&flrdr=yes&nxte=js Server: Apache/2.2.3 (Red Hat) Vary: Accept-Encoding,User-Agent Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Cnection: close X-Powered-By: PHP/5.3.21 | clean |
http://pagesinxt.com/?dn=www.fotocopykonicaminolta.com&flrdr=yes&nxte=js | HTTP/1.1 302 Found Date: Tue, 01 Apr 2014 22:46:13 GMT Location: http://mypageresults.com/?dn=www.fotocopykonicaminolta.com&flrdr=yes&nxte=js Server: Apache/2.2.3 (Red Hat) Vary: Accept-Encoding Content-Length: 347 Content-Type: text/html; charset=iso-8859-1 X-Cnection: close | clean |
http://mypageresults.com/?dn=www.fotocopykonicaminolta.com&flrdr=yes&nxte=js | 200 OK Content-Length: 2653 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.fotocopykonicaminolta.com <!--
top.location="http://mypageresults.com/?dn=www.fotocopykonicaminolta.com&fp=FVhNEM%2FU8pjJie1mOAZRBkI2p1YZ%2BMEQ1LJwxFgJKrtevfYLaZf9d7pGJS1wzD0mXZ4sROfjyQyGLwFZSl%2BRIA%3D%3D&prvtof=O19Zt5Fxhcu7BuxSG2CqFIGQ3fDfJODBPq8iCthJQHc%3D&poru=qKif1pNGiYN2s4%2Fc6QXtg%2FpemmMnQVnZ6x6xE%2BWY7qJtK4zc6jr23IcpjJ2a4qgH%2Bep7koNTa3VXmedrDDfVrIci7zQnt28kMgmt2mOE4WXqu9MchVTKZC5zgfnIUZ5d&cifr=1&flrdr=yes&nxte=js"; /* --> <script type="text/javascript"> <!-- d ...[2503 bytes skipped]... | ||
http://mypageresults.com/?dn=www.fotocopykonicaminolta.com&fp=FVhNEM%2FU8pjJie1mOAZRBkI2p1YZ%2BMEQ1LJwxFgJKrtevfYLaZf9d7pGJS1wzD0mXZ4sROfjyQyGLwFZSl%2BRIA%3D%3D&prvtof=oEVlLnik0GjD5xzAh0zdItke8AnA4qz%2BYsmM03dpL7M%3D&poru=TUbj810F%2BO43sJ8imDzWcqwSWXv7uLDbJOnKrS5rTEg%2BAC90GoMmXFmAxZtChaMYmR95oVVQGAoPABVYWeErhNufRa83e5O19kHuE4GWHUpVjZJPbAyVM7nZNYl7YnWP&flrdr=yes&nxte=js | 200 OK Content-Length: 272 Content-Type: text/html | clean |
http://mypageresults.com/test404page.js | HTTP/1.1 302 Found Date: Tue, 01 Apr 2014 22:46:14 GMT Location: http://pagesinxt.com/?dn=mypageresults.com&flrdr=yes&nxte=js Server: Apache/2.2.3 (Red Hat) Vary: Accept-Encoding,User-Agent Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Cnection: close X-Powered-By: PHP/5.3.21 | clean |
http://pagesinxt.com/?dn=mypageresults.com&flrdr=yes&nxte=js | HTTP/1.1 302 Found Date: Tue, 01 Apr 2014 22:46:15 GMT Location: http://mypageresults.com/?dn=mypageresults.com&flrdr=yes&nxte=js Server: Apache/2.2.3 (Red Hat) Vary: Accept-Encoding Content-Length: 335 Content-Type: text/html; charset=iso-8859-1 X-Cnection: close | clean |
http://mypageresults.com/?dn=mypageresults.com&flrdr=yes&nxte=js | 200 OK Content-Length: 2493 Content-Type: text/html | clean |
http://mypageresults.com/?dn=mypageresults.com&fp=R%2BaUb76IYF6TiOS453oyCqxCbI2PlKoy3k97pRNF4hGz9hRcgcrIXZwDAAevV6XOKLRRUewTrtLEkYawJnZ3xw%3D%3D&prvtof=tMaFfnio4y9QVLI0IGqIVR209m7MvtTDDpeM7xRdUtw%3D&poru=eMZdIjeErsS9J2jf2BdCNgK1XkWvGOkgieYsOrTQgwe00TW96fvJNav%2FVpPvwTZupyUsrdX3TS5zIeuHNM6Vlov1BCNPDDKUoZfEip9MgX8%3D&flrdr=yes&nxte=js | 200 OK Content-Length: 271 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: fotocopykonicaminolta.com
Result:
GET / HTTP/1.1
Host: fotocopykonicaminolta.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: fotocopykonicaminolta.com
Referer: http://www.google.com/search?q=fotocopykonicaminolta.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: fotocopykonicaminolta.com
Referer: http://www.google.com/search?q=fotocopykonicaminolta.com
Result:
The result is similar to the first query. There are no suspicious redirects found.