Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=lumahabowaw.my3space.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://lumahabowaw.my3space.ru/
Result: The website is marked by Yandex as SMS-fraud resource. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as SMS-fraud resource. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: lumahabowaw.my3space.ru
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=0
Connection: close
Date: Thu, 15 Jan 2015 10:03:02 GMT
Age: 0
Server: ATS/4.2.2
Vary: Accept-Encoding
Content-Length: 16910
Content-Type: text/html
Expires: Thu, 15 Jan 2015 10:03:02 GMT
...16910 bytes of data.
GET / HTTP/1.1
Host: lumahabowaw.my3space.ru
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=0
Connection: close
Date: Thu, 15 Jan 2015 10:03:02 GMT
Age: 0
Server: ATS/4.2.2
Vary: Accept-Encoding
Content-Length: 16910
Content-Type: text/html
Expires: Thu, 15 Jan 2015 10:03:02 GMT
...16910 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: lumahabowaw.my3space.ru
Referer: http://www.google.com/search?q=lumahabowaw.my3space.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: lumahabowaw.my3space.ru
Referer: http://www.google.com/search?q=lumahabowaw.my3space.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://lumahabowaw.my3space.ru/ | 200 OK Content-Length: 16910 Content-Type: text/html | clean |
http://f870616ff6.dyndns-free.com/99603730/?ttl=87144562&sch=t3l | 200 OK Content-Length: 0 Content-Type: application/javascript | clean |
http://lumahabowaw.my3space.ru/deferring-one-mortgage-payment.php | 200 OK Content-Length: 17078 Content-Type: text/html | clean |
http://f870616ff6.dyndns-free.com/99603730/?ttl=87144565&sch=t3l | 200 OK Content-Length: 0 Content-Type: application/javascript | clean |
http://lumahabowaw.my3space.ru/deficiency-mortgage-florida.php | 200 OK Content-Length: 17267 Content-Type: text/html | clean |
http://f870616ff6.dyndns-free.com/99603730/?ttl=87144566&sch=t3l | 200 OK Content-Length: 0 Content-Type: application/javascript | clean |
http://lumahabowaw.my3space.ru/deficit-is-an-illusion-of-debt.php | 200 OK Content-Length: 17363 Content-Type: text/html | clean |
http://f870616ff6.dyndns-free.com/99603730/?ttl=87144568&sch=t3l | 200 OK Content-Length: 0 Content-Type: application/javascript | clean |
http://lumahabowaw.my3space.ru/define-an-adjustable-rate-mortgage.php | 200 OK Content-Length: 16691 Content-Type: text/html | clean |
http://f870616ff6.dyndns-free.com/99603730/?ttl=87144570&sch=t3l | 200 OK Content-Length: 0 Content-Type: application/javascript | clean |
http://lumahabowaw.my3space.ru/define-charge-off-on-credit-cards.php | 200 OK Content-Length: 17262 Content-Type: text/html | clean |
http://f870616ff6.dyndns-free.com/99603730/?ttl=87144571&sch=t3l | 200 OK Content-Length: 0 Content-Type: application/javascript | clean |
http://lumahabowaw.my3space.ru/index.php | 200 OK Content-Length: 16910 Content-Type: text/html | clean |
http://f870616ff6.dyndns-free.com/99603730/?ttl=87144572&sch=t3l | 200 OK Content-Length: 0 Content-Type: application/javascript | clean |
http://lumahabowaw.my3space.ru/deffered-low-apr-spring-student-loan.php | 200 OK Content-Length: 18924 Content-Type: text/html | clean |