Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=miz.co.kr
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://miz.co.kr/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://miz.co.kr/ | HTTP/1.1 302 Found Connection: close Date: Sat, 20 Dec 2014 06:49:34 GMT Location: http://www.miz.co.kr/ Server: Apache Content-Length: 0 Content-Type: text/html; charset=EUC-KR | clean |
http://www.miz.co.kr/ | 200 OK Content-Length: 81306 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: mizwork.miz.co.kr <div class="rightcontents"> <style type="text/css"> .rightnotice {height:auto;} </style> <!--°øÁö--> <div class="rightnotice" style="position:relative;"> <ul class="tab"> <li><a href="/helpdesk/miz_notice.htm" onmouseover="MainNoticeTab('1');"><img src="/img/main_new/notice_tab01on.gif" id="MainNoticeTab01" /></a></li> ...[4050 bytes skipped]... | ||
http://www.miz.co.kr/common/index_bottom_new.js | 200 OK Content-Length: 12405 Content-Type: text/html | clean |
http://www.miz.co.kr/test404page.js | HTTP/1.1 302 Found Connection: close Date: Sat, 20 Dec 2014 06:49:39 GMT Location: http://miz.kr Server: Apache Content-Length: 0 Content-Type: text/html; charset=EUC-KR | clean |
http://miz.kr/ | HTTP/1.1 302 Found Connection: close Date: Sat, 20 Dec 2014 06:49:40 GMT Location: http://www.miz.co.kr/ Server: Apache Content-Length: 0 Content-Type: text/html; charset=EUC-KR | clean |
http://code.jquery.com/jquery-1.8.2.min.js | 200 OK Content-Length: 93435 Content-Type: application/x-javascript | clean |
http://logs.dreammiz.com/clickheat/js/clickheat.js | 200 OK Content-Length: 6103 Content-Type: text/html | clean |
http://logs.dreammiz.com/clickheat/js/ | 403 Forbidden Content-Length: 215 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: miz.co.kr
Result:
HTTP/1.1 302 Found
Connection: close
Date: Sat, 20 Dec 2014 06:49:34 GMT
Location: http://www.miz.co.kr/
Server: Apache
Content-Length: 0
Content-Type: text/html; charset=EUC-KR
...0 bytes of data.
GET / HTTP/1.1
Host: miz.co.kr
Result:
HTTP/1.1 302 Found
Connection: close
Date: Sat, 20 Dec 2014 06:49:34 GMT
Location: http://www.miz.co.kr/
Server: Apache
Content-Length: 0
Content-Type: text/html; charset=EUC-KR
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: miz.co.kr
Referer: http://www.google.com/search?q=miz.co.kr
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: miz.co.kr
Referer: http://www.google.com/search?q=miz.co.kr
Result:
The result is similar to the first query. There are no suspicious redirects found.