Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=hamsse.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://hamsse.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: hamsse.com
Result:
HTTP/1.1 302 Moved Temporarily
Connection: close
Date: Tue, 07 Oct 2014 02:37:27 GMT
Location: /vb/
Server: cloudflare-nginx
Content-Type: text/html
CF-RAY: 1756b7866aaf0af0-WAW
Set-Cookie: __cfduid=d21ad34664d7fb6838dad9795d30713011412649447420; expires=Mon, 23-Dec-2019 23:50:00 GMT; path=/; domain=.hamsse.com; HttpOnly
X-Powered-By: PHP/5.3.29
GET / HTTP/1.1
Host: hamsse.com
Result:
HTTP/1.1 302 Moved Temporarily
Connection: close
Date: Tue, 07 Oct 2014 02:37:27 GMT
Location: /vb/
Server: cloudflare-nginx
Content-Type: text/html
CF-RAY: 1756b7866aaf0af0-WAW
Set-Cookie: __cfduid=d21ad34664d7fb6838dad9795d30713011412649447420; expires=Mon, 23-Dec-2019 23:50:00 GMT; path=/; domain=.hamsse.com; HttpOnly
X-Powered-By: PHP/5.3.29
Second query (visit from search engine):
GET / HTTP/1.1
Host: hamsse.com
Referer: http://www.google.com/search?q=hamsse.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: hamsse.com
Referer: http://www.google.com/search?q=hamsse.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://hamsse.com/ | HTTP/1.1 302 Moved Temporarily Connection: close Date: Tue, 07 Oct 2014 02:37:27 GMT Location: /vb/ Server: cloudflare-nginx Content-Type: text/html CF-RAY: 1756b7866aaf0af0-WAW Set-Cookie: __cfduid=d21ad34664d7fb6838dad9795d30713011412649447420; expires=Mon, 23-Dec-2019 23:50:00 GMT; path=/; domain=.hamsse.com; HttpOnly X-Powered-By: PHP/5.3.29 | clean |
http://hamsse.com/vb/ | 200 OK Content-Length: 230742 Content-Type: text/html | clean |
http://hamsse.com/vb/clientscript/yui/yahoo-dom-event/yahoo-dom-event.js?v=384 | 200 OK Content-Length: 36628 Content-Type: application/javascript | clean |
http://hamsse.com/clientscript/yui/connection/connection-min.js?v=384 | 404 Not Found Content-Length: 362 Content-Type: text/html | clean |
http://hamsse.com/test404page.js | 404 Not Found Content-Length: 331 Content-Type: text/html | clean |
http://hamsse.com/clientscript/vbulletin_global.js?v=384 | 404 Not Found Content-Length: 349 Content-Type: text/html | clean |
http://hamsse.com/clientscript/vbulletin_menu.js?v=384 | 404 Not Found Content-Length: 347 Content-Type: text/html | clean |
http://hamsse.com/massy/poem.js | 404 Not Found Content-Length: 330 Content-Type: text/html | clean |
http://hamsse.com/massy/gradient.js | 404 Not Found Content-Length: 334 Content-Type: text/html | clean |
http://pagead2.googlesyndication.com/pagead/show_ads.js | 200 OK Content-Length: 21308 Content-Type: text/javascript | clean |
http://www.google.com/jsapi | 200 OK Content-Length: 24552 Content-Type: text/javascript | clean |
http://www.google.com/cse/t13n?form=cse-search-box&t13n_langs=ar | 200 OK Content-Length: 2217 Content-Type: text/javascript | clean |
http://www.google.com.eg/coop/cse/brand?form=cse-search-box&lang=ar | 200 OK Content-Length: 2518 Content-Type: text/javascript | clean |
http://www.google.com/cse/query_renderer.js | 200 OK Content-Length: 762 Content-Type: text/javascript | clean |
http://www.google.com/cse/api/partner-pub-3205531803781674/cse/7849484777/queries/js?oe=UTF-8&callback=(new+PopularQueryRenderer(document.getElementById(%22queries%22))).render | 200 OK Content-Length: 178 Content-Type: text/javascript | clean |
http://hamsse.com/clientscript/vbulletin_md5.js?v=384 | 404 Not Found Content-Length: 346 Content-Type: text/html | clean |