Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=mill-tv.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://mill-tv.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://mill-tv.com/ | 200 OK Content-Length: 51335 Content-Type: text/html | malicious |
Suspicious code. Script contains iFrame. document.write(unescape('%3C%63%65%6E%74%65%72%3E%3C%69%66%72%61%6D%65%20%77%69%64%74%68%3D%22%34%36%38%22%20%73%63%72%6F%6C%6C%69%6E%67%3D%22%4E%6F%22%20%68%65%69%67%68%74%3D%22%36%30%22%20%66%72%61%6D%65%62%6F%72%64%65%72%3D%22%30%22%20%73%72%63%3D%22%68%74%74%70%3A%2F%2F%77%77%77%2E%6D%69%6C%6C%2D%74%76%2E%63%6F%6D%2F%70%69%63%73%2F%63%68%61%74%31%2E%68%74%6D%6C%22%3E%3C%2F%69%66%72%61%6D%65%3E%3C%2F%63%65%6E%74%65%72%3E%3C%63%65%6E%74%65%72%3E% ...[2205 bytes skipped]... Decoded script: <center><iframe width="468" scrolling="No" height="60" frameborder="0" src="http://www.mill-tv.com/pics/chat1.html"></iframe></center><center><object classid="clsid:D27CDB6E-AE6D-11cf-96B8-444553540000" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=9,0,28,0" height="350" width="295"><param name="movie" value="http://www.fulltechno.com/Fulltechno.com.swf"><param name="quality" value=" ...[506 bytes skipped]... Malicious iFrame found. size: 314x288 src: http://www.mill-tv.com/publicidad/3.php This URL is marked by Yandex as suspicious <iframe width="314" scrolling="no" style="margin:0px;" height="288" frameborder="0" src="http://www.mill-tv.com/publicidad/3.php"> Malicious iFrame found. size: 314x288 src: http://www.mill-tv.com/publicidad/1.php This URL is marked by Yandex as suspicious <iframe width="314" scrolling="no" style="margin:0px;" height="288" frameborder="0" src="http://www.mill-tv.com/publicidad/1.php"> | ||
http://www.mill-tv.com/milltheme/js/func.js?v2 | 200 OK Content-Length: 624 Content-Type: application/javascript | clean |
http://www.mill-tv.com/milltheme/js/carrusel.js?v2 | 200 OK Content-Length: 1279 Content-Type: application/javascript | clean |
http://mill-tv.com//go.onclasrv.com/apu.php?zoneid=29131/ | HTTP/1.1 302 Found Connection: close Date: Mon, 01 Sep 2014 20:46:32 GMT Location: http://www.mill-tv.com?zoneid=29131/ Server: cloudflare-nginx Vary: Accept-Encoding Content-Type: text/html; charset=iso-8859-1 CF-RAY: 1634515b18a4089f-FRA Set-Cookie: __cfduid=df67b1ac1f56bdfdce7b72f2b7b7dff4d1409604392172; expires=Mon, 23-Dec-2019 23:50:00 GMT; path=/; domain=.mill-tv.com; HttpOnly | clean |
http://www.mill-tv.com?zoneid=29131/ | 200 OK Content-Length: 51367 Content-Type: text/html | malicious |
Suspicious code. Script contains iFrame. document.write(unescape('%3C%63%65%6E%74%65%72%3E%3C%69%66%72%61%6D%65%20%77%69%64%74%68%3D%22%34%36%38%22%20%73%63%72%6F%6C%6C%69%6E%67%3D%22%4E%6F%22%20%68%65%69%67%68%74%3D%22%36%30%22%20%66%72%61%6D%65%62%6F%72%64%65%72%3D%22%30%22%20%73%72%63%3D%22%68%74%74%70%3A%2F%2F%77%77%77%2E%6D%69%6C%6C%2D%74%76%2E%63%6F%6D%2F%70%69%63%73%2F%63%68%61%74%31%2E%68%74%6D%6C%22%3E%3C%2F%69%66%72%61%6D%65%3E%3C%2F%63%65%6E%74%65%72%3E%3C%63%65%6E%74%65%72%3E% ...[2205 bytes skipped]... Decoded script: <center><iframe width="468" scrolling="No" height="60" frameborder="0" src="http://www.mill-tv.com/pics/chat1.html"></iframe></center><center><object classid="clsid:D27CDB6E-AE6D-11cf-96B8-444553540000" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=9,0,28,0" height="350" width="295"><param name="movie" value="http://www.fulltechno.com/Fulltechno.com.swf"><param name="quality" value=" ...[506 bytes skipped]... Malicious iFrame found. size: 314x288 src: http://www.mill-tv.com/publicidad/1.php This URL is marked by Yandex as suspicious <iframe width="314" scrolling="no" style="margin:0px;" height="288" frameborder="0" src="http://www.mill-tv.com/publicidad/1.php"> Malicious iFrame found. size: 314x288 src: http://www.mill-tv.com/publicidad/3.php This URL is marked by Yandex as suspicious <iframe width="314" scrolling="no" style="margin:0px;" height="288" frameborder="0" src="http://www.mill-tv.com/publicidad/3.php"> | ||
http://www.mill-tv.com?zoneid=29131//go.onclasrv.com/apu.php?zoneid=29131/ | 200 OK Content-Length: 51313 Content-Type: text/html | malicious |
Suspicious code. Script contains iFrame. document.write(unescape('%3C%63%65%6E%74%65%72%3E%3C%69%66%72%61%6D%65%20%77%69%64%74%68%3D%22%34%36%38%22%20%73%63%72%6F%6C%6C%69%6E%67%3D%22%4E%6F%22%20%68%65%69%67%68%74%3D%22%36%30%22%20%66%72%61%6D%65%62%6F%72%64%65%72%3D%22%30%22%20%73%72%63%3D%22%68%74%74%70%3A%2F%2F%77%77%77%2E%6D%69%6C%6C%2D%74%76%2E%63%6F%6D%2F%70%69%63%73%2F%63%68%61%74%31%2E%68%74%6D%6C%22%3E%3C%2F%69%66%72%61%6D%65%3E%3C%2F%63%65%6E%74%65%72%3E%3C%63%65%6E%74%65%72%3E% ...[2205 bytes skipped]... Decoded script: <center><iframe width="468" scrolling="No" height="60" frameborder="0" src="http://www.mill-tv.com/pics/chat1.html"></iframe></center><center><object classid="clsid:D27CDB6E-AE6D-11cf-96B8-444553540000" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=9,0,28,0" height="350" width="295"><param name="movie" value="http://www.fulltechno.com/Fulltechno.com.swf"><param name="quality" value=" ...[506 bytes skipped]... Malicious iFrame found. size: 314x288 src: http://www.mill-tv.com/publicidad/3.php This URL is marked by Yandex as suspicious <iframe width="314" scrolling="no" style="margin:0px;" height="288" frameborder="0" src="http://www.mill-tv.com/publicidad/3.php"> Malicious iFrame found. size: 314x288 src: http://www.mill-tv.com/publicidad/1.php This URL is marked by Yandex as suspicious <iframe width="314" scrolling="no" style="margin:0px;" height="288" frameborder="0" src="http://www.mill-tv.com/publicidad/1.php"> | ||
http://creative.ad120m.com/rev2pub/scripts/catfish/catfish.js | 200 OK Content-Length: 3501 Content-Type: application/javascript | clean |
http://creative.ad120m.com/matomy/scripts/popunder/popunder.js | 200 OK Content-Length: 5527 Content-Type: application/javascript | clean |
http://www.mill-tv.com?zoneid=29131/test404page.js | 200 OK Content-Length: 51408 Content-Type: text/html | malicious |
Suspicious code. Script contains iFrame. document.write(unescape('%3C%63%65%6E%74%65%72%3E%3C%69%66%72%61%6D%65%20%77%69%64%74%68%3D%22%34%36%38%22%20%73%63%72%6F%6C%6C%69%6E%67%3D%22%4E%6F%22%20%68%65%69%67%68%74%3D%22%36%30%22%20%66%72%61%6D%65%62%6F%72%64%65%72%3D%22%30%22%20%73%72%63%3D%22%68%74%74%70%3A%2F%2F%77%77%77%2E%6D%69%6C%6C%2D%74%76%2E%63%6F%6D%2F%70%69%63%73%2F%63%68%61%74%31%2E%68%74%6D%6C%22%3E%3C%2F%69%66%72%61%6D%65%3E%3C%2F%63%65%6E%74%65%72%3E%3C%63%65%6E%74%65%72%3E% ...[2205 bytes skipped]... Decoded script: <center><iframe width="468" scrolling="No" height="60" frameborder="0" src="http://www.mill-tv.com/pics/chat1.html"></iframe></center><center><object classid="clsid:D27CDB6E-AE6D-11cf-96B8-444553540000" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=9,0,28,0" height="350" width="295"><param name="movie" value="http://www.fulltechno.com/Fulltechno.com.swf"><param name="quality" value=" ...[506 bytes skipped]... Malicious iFrame found. size: 314x288 src: http://www.mill-tv.com/publicidad/1.php This URL is marked by Yandex as suspicious <iframe width="314" scrolling="no" style="margin:0px;" height="288" frameborder="0" src="http://www.mill-tv.com/publicidad/1.php"> Malicious iFrame found. size: 314x288 src: http://www.mill-tv.com/publicidad/3.php This URL is marked by Yandex as suspicious <iframe width="314" scrolling="no" style="margin:0px;" height="288" frameborder="0" src="http://www.mill-tv.com/publicidad/3.php"> |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: mill-tv.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 01 Sep 2014 20:46:28 GMT
Server: cloudflare-nginx
Vary: Accept-Encoding
Content-Type: text/html
CF-RAY: 163451402050089f-FRA
Set-Cookie: __cfduid=d68257c9264eb851f2f130c375120efb91409604387861; expires=Mon, 23-Dec-2019 23:50:00 GMT; path=/; domain=.mill-tv.com; HttpOnly
X-Powered-By: PHP/5.4.28
GET / HTTP/1.1
Host: mill-tv.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 01 Sep 2014 20:46:28 GMT
Server: cloudflare-nginx
Vary: Accept-Encoding
Content-Type: text/html
CF-RAY: 163451402050089f-FRA
Set-Cookie: __cfduid=d68257c9264eb851f2f130c375120efb91409604387861; expires=Mon, 23-Dec-2019 23:50:00 GMT; path=/; domain=.mill-tv.com; HttpOnly
X-Powered-By: PHP/5.4.28
Second query (visit from search engine):
GET / HTTP/1.1
Host: mill-tv.com
Referer: http://www.google.com/search?q=mill-tv.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: mill-tv.com
Referer: http://www.google.com/search?q=mill-tv.com
Result:
The result is similar to the first query. There are no suspicious redirects found.