Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=hama-spo.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://hama-spo.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://hama-spo.com/ | 200 OK Content-Length: 13055 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: sportsculture.hama-spo.com ...[3202 bytes skipped]... t; </td> <td> <a href="http://kids.hama-spo.com" onmouseout="MM_swapImgRestore()" onmouseover="MM_swapImage('Tab2','','/img/image2_on.jpg',1)"><img src="/img/image2.jpg" alt="æµæ¾ã¹ãã¼ãã»ã³ã¿ã¼" border="0" id="Tab2" name="Tab2" /></a> </td> <td> <a href="http://sportsculture.hama-spo.com" onmouseout="MM_swapImgRestore()" onmouseover="MM_swapImage('Tab3','','/img/image3_on.jpg',1)"><img src="/img/image3.jpg" alt="æµæ¾ã¹ãã¼ãã»ã³ã¿ã¼" border="0" id="Tab3" name="Tab3" /></a> </td> <td> <a href="http://culture.hama-spo.com" onmouseout="MM_swapImgRestore()" onmouseover="MM_swapImage('Tab4','','/ ...[11481 bytes skipped]... | ||
http://hama-spo.com/js/mouse.js | 200 OK Content-Length: 4199 Content-Type: application/x-javascript | clean |
http://hama-spo.com//platform.twitter.com/widgets.js/ | 200 OK Content-Length: 13055 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: sportsculture.hama-spo.com ...[3202 bytes skipped]... t; </td> <td> <a href="http://kids.hama-spo.com" onmouseout="MM_swapImgRestore()" onmouseover="MM_swapImage('Tab2','','/img/image2_on.jpg',1)"><img src="/img/image2.jpg" alt="æµæ¾ã¹ãã¼ãã»ã³ã¿ã¼" border="0" id="Tab2" name="Tab2" /></a> </td> <td> <a href="http://sportsculture.hama-spo.com" onmouseout="MM_swapImgRestore()" onmouseover="MM_swapImage('Tab3','','/img/image3_on.jpg',1)"><img src="/img/image3.jpg" alt="æµæ¾ã¹ãã¼ãã»ã³ã¿ã¼" border="0" id="Tab3" name="Tab3" /></a> </td> <td> <a href="http://culture.hama-spo.com" onmouseout="MM_swapImgRestore()" onmouseover="MM_swapImage('Tab4','','/ ...[11481 bytes skipped]... | ||
http://hamaspo.hamazo.tv/rss_reader.php?n=5&rdf=http://hamaspo.hamazo.tv/index_c569385.rdf | 200 OK Content-Length: 967 Content-Type: text/html | clean |
http://hamaspo.hamazo.tv/e3841736.html | 200 OK Content-Length: 50737 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: hama-spo.com ...[35780 bytes skipped]... ; </table> <div class="pagetop"><a class="aposted" href="#top">ãã®ãã¼ã¸ã®ä¸ã¸â²</a></div> </div> <br clear="all" /> </div> <div id="links"> <div class="link"><div class="sidetitle">å ¬å¼ãµã¤ã</div><div class="side"> <div class="sidebody"><a class="aside" href="http://hama-spo.com" target="_blank">æµæ¾ã¹ãã¼ãã»ã³ã¿ã¼</a></div> </div> </div> <script type="text/javascript" src="swfobject.js"></script> <script type="text/javascript" src="http://hamazo.tv/js/randam_banner_large.js"></script> <script src='http://a.adimg.net/javascripts/AdLantisLoader.js' type='text/javascript' charset='utf-8'></script> <div class="ad"><div class="sidetitle">ã¯ã¾ãããã ...[25896 bytes skipped]... | ||
http://l.hamazo.tv/script.php?i=23362hamaspo&site=www.hamazo.tv | 200 OK Content-Length: 7455 Content-Type: application/x-javascript | clean |
http://www.hamazo.tv/portal/adticker/index/blog_id/hamaspo/t/10/t2//r/2 | 200 OK Content-Length: 1990 Content-Type: text/html | clean |
http://www.google.co.jp/coop/cse/brand?form=cse-search-box&lang=ja | 200 OK Content-Length: 2516 Content-Type: text/javascript | clean |
http://www.hamazo.tv/ | 200 OK Content-Length: 140092 Content-Type: text/html | clean |
http://www.hamazo.tv/template/new-js/hide.js | 200 OK Content-Length: 247 Content-Type: application/javascript | clean |
http://www.hamazo.tv/portal/disaster-script | 200 OK Content-Length: 0 Content-Type: application/x-javascript | clean |
http://www.hamazo.tv/rss_reader.php?rdf=http://hamatome.hamazo.tv/index_2.rdf&c=88&d_len=52&n=1&target=f&v=61&x=350 | 200 OK Content-Length: 492 Content-Type: text/html | clean |
http://www.hamazo.tv/test404page.js | 404 Not Found Content-Length: 212 Content-Type: text/html | clean |
http://www.hamazo.tv/rss_reader.php?rdf=http://hamatome.hamazo.tv/index_1.rdf&c=58&d_len=52&n=4&target=f&v=58&x=70 | 200 OK Content-Length: 1665 Content-Type: text/html | clean |
http://www.hamazo.tv/rss_reader.php?rdf=http://hamamovie.hamazo.tv/index_1.rdf&c=68&d_len=52&n=3&target=f&v=59 | 200 OK Content-Length: 1383 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: hama-spo.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 24 Jun 2014 20:15:17 GMT
Server: Apache
Content-Type: text/html
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: CAKEPHP=2429aaf0c3a7c4a2f5deff6ad99195a2; path=/
Set-Cookie: CAKEPHP=2429aaf0c3a7c4a2f5deff6ad99195a2; path=/
X-Powered-By: PHP/5.2.8
GET / HTTP/1.1
Host: hama-spo.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 24 Jun 2014 20:15:17 GMT
Server: Apache
Content-Type: text/html
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: CAKEPHP=2429aaf0c3a7c4a2f5deff6ad99195a2; path=/
Set-Cookie: CAKEPHP=2429aaf0c3a7c4a2f5deff6ad99195a2; path=/
X-Powered-By: PHP/5.2.8
Second query (visit from search engine):
GET / HTTP/1.1
Host: hama-spo.com
Referer: http://www.google.com/search?q=hama-spo.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: hama-spo.com
Referer: http://www.google.com/search?q=hama-spo.com
Result:
The result is similar to the first query. There are no suspicious redirects found.