Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=lan.favdownloads.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: lan.favdownloads.com
Result:
HTTP/1.1 200 OK
Cache-Control: private,max-age=7200
Connection: close
Date: Sun, 25 Jan 2015 10:00:27 GMT
Server: Microsoft-IIS/7.5
Content-Length: 16071
Content-Type: text/html
Expires: Sun, 25 Jan 2015 10:00:27 GMT
Set-Cookie: ASPSESSIONIDQATRBCSR=GEMDGKECHCPPAKFJCLHCPHKN; path=/
Set-Cookie: dtCookie=2$6282043A04EE1F688518E1CFDE518797|lan-origin.freeze.com|1; Path=/; Domain=.freeze.com
X-Powered-By: ASP.NET
X-Ruxit-JS-Agent: true
X-UA-Compatible: IE=EmulateIE7
...16071 bytes of data.
GET / HTTP/1.1
Host: lan.favdownloads.com
Result:
HTTP/1.1 200 OK
Cache-Control: private,max-age=7200
Connection: close
Date: Sun, 25 Jan 2015 10:00:27 GMT
Server: Microsoft-IIS/7.5
Content-Length: 16071
Content-Type: text/html
Expires: Sun, 25 Jan 2015 10:00:27 GMT
Set-Cookie: ASPSESSIONIDQATRBCSR=GEMDGKECHCPPAKFJCLHCPHKN; path=/
Set-Cookie: dtCookie=2$6282043A04EE1F688518E1CFDE518797|lan-origin.freeze.com|1; Path=/; Domain=.freeze.com
X-Powered-By: ASP.NET
X-Ruxit-JS-Agent: true
X-UA-Compatible: IE=EmulateIE7
...16071 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: lan.favdownloads.com
Referer: http://www.google.com/search?q=lan.favdownloads.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: lan.favdownloads.com
Referer: http://www.google.com/search?q=lan.favdownloads.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://lan.favdownloads.com/ | 200 OK Content-Length: 16071 Content-Type: text/html | clean |
http://lan.favdownloads.com/ruxitagentjs_2bnr_1006101270010357.js | 200 OK Content-Length: 44039 Content-Type: text/javascript | clean |
http://lan.favdownloads.com/test404page.js | 404 Not Found Content-Length: 103 Content-Type: text/html | clean |