Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=mailnri.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://mailnri.com/ | HTTP/1.1 303 See Other Date: Sun, 28 Dec 2014 15:05:38 GMT Location: http://guidetest.a.id.opendns.com/?url=mailnri%2Ecom Server: OpenDNS Guide Content-Length: 0 | clean |
http://guidetest.a.id.opendns.com/?url=mailnri%2ecom | HTTP/1.1 302 Found Date: Sun, 28 Dec 2014 15:05:39 GMT Location: http://www.website-unavailable.com/?wc=EWJpEhd5ARNfBBVuBAoF&url=mailnri%2ecom Server: OpenDNS Guide Content-Length: 0 Set-Cookie: webigin=EWJpEhd5ARNfBBVuBAoF; domain=.opendns.com; expires=Sun, 28-Dec-2014 15:20:39 GMT; Max-Age=900; path=/; httponly X-Webigin-Result: not-opendns X-Webigin-Slot: 9 | clean |
http://www.website-unavailable.com/?wc=ewjpehd5arnfbbvubaof&url=mailnri%2ecom | 200 OK Content-Length: 7311 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) ...[3712 bytes skipped]... } return "/banner.php?w=" + width + "&h=" + height + "&d=" + domain + "&url=" + url + "&ref=" + ref + "&view=" + landerView; } else { return landerUrl + "&w=" + width + "&h=" + height + "&ifc=" + ifc; } } function bdetect() { var loc = bredir( 'mailnri.com', 'mailnri.com', '', 'error', '/main?wc=ewjpehd5arnfbbvubaof&url=mailnri.com' ); if(typeof loc === 'undefined') { self.close(); return; } location.replace(loc); } Antivirus reports:
| ||
http://www.website-unavailable.com/test404page.js | 404 Not Found Content-Length: 345 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: mailnri.com
Result:
HTTP/1.1 303 See Other
Date: Sun, 28 Dec 2014 15:05:38 GMT
Location: http://guidetest.a.id.opendns.com/?url=mailnri%2Ecom
Server: OpenDNS Guide
Content-Length: 0
...0 bytes of data.
GET / HTTP/1.1
Host: mailnri.com
Result:
HTTP/1.1 303 See Other
Date: Sun, 28 Dec 2014 15:05:38 GMT
Location: http://guidetest.a.id.opendns.com/?url=mailnri%2Ecom
Server: OpenDNS Guide
Content-Length: 0
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: mailnri.com
Referer: http://www.google.com/search?q=mailnri.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: mailnri.com
Referer: http://www.google.com/search?q=mailnri.com
Result:
The result is similar to the first query. There are no suspicious redirects found.