Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=habana.kr
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: habana.kr
Result:
HTTP/1.1 200 OK
Cache-Control: pre-check=0, post-check=0, max-age=0
Connection: close
Date: Sat, 07 Mar 2015 12:48:23 GMT
Pragma: no-cache
Server: Microsoft-IIS/9.0
Content-Type: text/html; charset=utf-8
Expires: 0
Last-Modified: Sat, 07 Mar 2015 12:48:23 GMT
P3P: CP="ALL CURa ADMa DEVa TAIa OUR BUS IND PHY ONL UNI PUR FIN COM NAV INT DEM CNT STA POL HEA PRE LOC OTC"
Set-Cookie: PHPSESSID=g24stpue9t7b76fuq6fmv56rs3; path=/
Set-Cookie: 2a0d2363701f23f8a75028924a3af643=NzguMTU4LjExLjIyNg%3D%3D; expires=Sun, 08-Mar-2015 12:48:23 GMT; path=/
GET / HTTP/1.1
Host: habana.kr
Result:
HTTP/1.1 200 OK
Cache-Control: pre-check=0, post-check=0, max-age=0
Connection: close
Date: Sat, 07 Mar 2015 12:48:23 GMT
Pragma: no-cache
Server: Microsoft-IIS/9.0
Content-Type: text/html; charset=utf-8
Expires: 0
Last-Modified: Sat, 07 Mar 2015 12:48:23 GMT
P3P: CP="ALL CURa ADMa DEVa TAIa OUR BUS IND PHY ONL UNI PUR FIN COM NAV INT DEM CNT STA POL HEA PRE LOC OTC"
Set-Cookie: PHPSESSID=g24stpue9t7b76fuq6fmv56rs3; path=/
Set-Cookie: 2a0d2363701f23f8a75028924a3af643=NzguMTU4LjExLjIyNg%3D%3D; expires=Sun, 08-Mar-2015 12:48:23 GMT; path=/
Second query (visit from search engine):
GET / HTTP/1.1
Host: habana.kr
Referer: http://www.google.com/search?q=habana.kr
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: habana.kr
Referer: http://www.google.com/search?q=habana.kr
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://habana.kr/ | 200 OK Content-Length: 12531 Content-Type: text/html | clean |
http://habana.kr/js/jquery-1.8.3.min.js | 200 OK Content-Length: 93637 Content-Type: application/x-javascript | clean |
http://habana.kr/js/jquery.menu.js | 200 OK Content-Length: 2930 Content-Type: application/x-javascript | clean |
http://habana.kr/js/common.js | 200 OK Content-Length: 13027 Content-Type: application/x-javascript | clean |
http://habana.kr/js/wrest.js | 200 OK Content-Length: 11587 Content-Type: application/x-javascript | clean |
http://habana.kr/bbs/register.php | 200 OK Content-Length: 11881 Content-Type: text/html | clean |
http://habana.kr/bbs/ | 403 Forbidden Content-Length: 276 Content-Type: text/html | clean |
http://habana.kr/test404page.js | 404 Not Found Content-Length: 282 Content-Type: text/html | clean |
http://habana.kr/bbs/login.php | 200 OK Content-Length: 3835 Content-Type: text/html | clean |
http://habana.kr/bbs/password_lost.php | 200 OK Content-Length: 3579 Content-Type: text/html | clean |
http://habana.kr/plugin/kcaptcha/kcaptcha.js | 200 OK Content-Length: 3506 Content-Type: application/x-javascript | clean |
http://habana.kr/bbs/./register.php | 200 OK Content-Length: 11887 Content-Type: text/html | clean |
http://habana.kr/bbs/./ | 403 Forbidden Content-Length: 276 Content-Type: text/html | clean |
http://habana.kr/bbs/faq.php | 200 OK Content-Length: 11488 Content-Type: text/html | clean |
http://habana.kr/js/viewimageresize.js | 200 OK Content-Length: 2505 Content-Type: application/x-javascript | clean |