Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=gjskycar.kr
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: gjskycar.kr
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 27 Dec 2014 21:06:05 GMT
Server: Microsoft-IIS/5.0 PHP/5.2.17
Content-Length: 4987
Content-Type: text/html
P3P: CP="ALL CURa ADMa DEVa TAIa OUR BUS IND PHY ONL UNI PUR FIN COM NAV INT DEM CNT STA POL HEA PRE LOC OTC"
Set-Cookie: PHPSESSID=b9382b7230909515f75eab5db2796c68; path=/
X-Powered-By: PHP/5.2.17
...4987 bytes of data.
GET / HTTP/1.1
Host: gjskycar.kr
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 27 Dec 2014 21:06:05 GMT
Server: Microsoft-IIS/5.0 PHP/5.2.17
Content-Length: 4987
Content-Type: text/html
P3P: CP="ALL CURa ADMa DEVa TAIa OUR BUS IND PHY ONL UNI PUR FIN COM NAV INT DEM CNT STA POL HEA PRE LOC OTC"
Set-Cookie: PHPSESSID=b9382b7230909515f75eab5db2796c68; path=/
X-Powered-By: PHP/5.2.17
...4987 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: gjskycar.kr
Referer: http://www.google.com/search?q=gjskycar.kr
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: gjskycar.kr
Referer: http://www.google.com/search?q=gjskycar.kr
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://gjskycar.kr/ | 200 OK Content-Length: 4987 Content-Type: text/html | clean |
http://gjskycar.kr/script.js | 200 OK Content-Length: 1452 Content-Type: application/javascript | clean |
http://gjskycar.kr/menu_code.js | 200 OK Content-Length: 758 Content-Type: application/javascript | clean |
http://gjskycar.kr/3-1.htm | 200 OK Content-Length: 4807 Content-Type: text/html | clean |
http://gjskycar.kr/test404page.js | HTTP/1.1 302 Found Connection: close Date: Sat, 27 Dec 2014 21:06:12 GMT Location: http://no10.nayana.kr/error/error_404.html Server: Microsoft-IIS/5.0 PHP/5.2.17 Content-Length: 226 Content-Type: text/html; charset=iso-8859-1 | clean |
http://no10.nayana.kr/error/error_404.html | 200 OK Content-Length: 1601 Content-Type: text/html | clean |
http://no10.nayana.kr/test404page.js | HTTP/1.1 302 Found Connection: close Date: Sat, 27 Dec 2014 21:06:16 GMT Location: http://no10.nayana.kr/error/error_404.html Server: Microsoft-IIS/5.0 PHP/5.2.17 Content-Length: 226 Content-Type: text/html; charset=iso-8859-1 | clean |
http://gjskycar.kr/../3-1.htm?no=8 | 400 Bad Request Content-Length: 226 Content-Type: text/html | clean |
http://gjskycar.kr/../3-1.htm?no=9 | 400 Bad Request Content-Length: 226 Content-Type: text/html | clean |
http://gjskycar.kr/../3-1.htm?no=15 | 400 Bad Request Content-Length: 226 Content-Type: text/html | clean |