Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=masterstockpicks.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: masterstockpicks.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 27 Dec 2014 08:28:43 GMT
Server: Apache/2.0.52 (Red Hat)
Content-Type: text/html
X-Powered-By: PHP/5.2.11
GET / HTTP/1.1
Host: masterstockpicks.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 27 Dec 2014 08:28:43 GMT
Server: Apache/2.0.52 (Red Hat)
Content-Type: text/html
X-Powered-By: PHP/5.2.11
Second query (visit from search engine):
GET / HTTP/1.1
Host: masterstockpicks.com
Referer: http://www.google.com/search?q=masterstockpicks.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: masterstockpicks.com
Referer: http://www.google.com/search?q=masterstockpicks.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://masterstockpicks.com/ | 200 OK Content-Length: 23985 Content-Type: text/html | clean |
http://is.gd/CzYCjD | HTTP/1.1 301 Moved Permanently Connection: close Date: Sat, 27 Dec 2014 08:28:44 GMT Location: http://www.castelfranco.edu.ar/wp-cache/ Server: cloudflare-nginx Content-Type: text/html CF-RAY: 19f4257a406505e1-WAW Set-Cookie: __cfduid=d0cf13757b1452d899eda0f0432cf5c5d1419668924; expires=Sun, 27-Dec-15 08:28:44 GMT; path=/; domain=.is.gd; HttpOnly X-Powered-By: PHP/5.5.9-1ubuntu4.5 | clean |
http://www.castelfranco.edu.ar/wp-cache/ | 404 Not Found Content-Length: 207 Content-Type: text/html | clean |
http://www.castelfranco.edu.ar/test404page.js | 404 Not Found Content-Length: 212 Content-Type: text/html | clean |
http://caragabriel.com/cb.php | 500 Can't connect to caragabriel.com:80 Content-Length: 190 Content-Type: text/plain | clean |
http://asaunirg.com.br/js/0day.php | 401 401 Content-Length: 5053 Content-Type: text/html | clean |
http://masterstockpicks.com/all.js | 200 OK Content-Length: 396 Content-Type: application/x-javascript | clean |
http://pagead2.googlesyndication.com/pagead/show_ads.js | 200 OK Content-Length: 19470 Content-Type: text/javascript | clean |
http://server.iad.liveperson.net/hc/64450247/x.js?cmd=file&file=chatScript3&site=64450247&&category=en;woman;1 | HTTP/1.1 302 Moved Temporarily Date: Sat, 27 Dec 2014 08:28:48 GMT Location: /hcp/html/error_disable.html Server: Microsoft-IIS/6.0 Content-Length: 0 Expires: Wed, 31 Dec 1969 23:59:59 GMT P3P: CP="NON BUS INT NAV COM ADM CON CUR IVA IVD OTP PSA PSD TEL SAM" X-Powered-By: ASP.NET | clean |
http://server.iad.liveperson.net/hcp/html/error_disable.html | HTTP/1.1 200 OK Date: Sat, 27 Dec 2014 08:28:48 GMT Accept-Ranges: bytes ETag: "c0cdaeeabe91cc1:3238" Server: Microsoft-IIS/6.0 Content-Length: 687 Content-Location: http://server.iad.liveperson.net/hcp/html/error_disable.html Content-Type: text/html Last-Modified: Sun, 23 Oct 2011 20:04:05 GMT P3P: CP="NON BUS INT NAV COM ADM CON CUR IVA IVD OTP PSA PSD TEL SAM" X-Powered-By: ASP.NET | clean |