Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=money.lifetong.kr
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://money.lifetong.kr/ | 200 OK Content-Length: 26912 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.infodaily.co.kr ...[7405 bytes skipped]... e" value="all"> <ul> <li class="sbox"><input type="text" class="box1" name="query" value=""></li> <li class="sbtn"><button type="submit" class="searchbtn"><span class="hidden_phrase">ê²ì</span></button></li> </ul> </form> </div> </div> <div id="topbanner"><a href="http://www.infodaily.co.kr" target="_blank"><img src="http://img2.lifetong.kr/main/topbanner.gif"></a></div> </div> <!-- navi --> <div id="navi"> <h2 class="hidden_phrase">ìë¨ë©ë´</h2> <ul> <li><a href="http://www.lifetong.kr" class="menu01">ì ë³´í</a></li> <li><a href="http://info.lifetong.kr/bbs.php?bo_table=life_okn" class="menu02">ìíì ë³´</a>& ...[25685 bytes skipped]... | ||
http://money.lifetong.kr/./js/jquery-1.4.2.min.js | 200 OK Content-Length: 72328 Content-Type: application/javascript | clean |
http://www.lifetong.kr/js/common.js | 200 OK Content-Length: 19977 Content-Type: application/javascript | clean |
http://www.lifetong.kr/js/ajax.js | 200 OK Content-Length: 1347 Content-Type: application/javascript | clean |
http://www.lifetong.kr/js/board.js | 200 OK Content-Length: 4234 Content-Type: application/javascript | clean |
http://money.lifetong.kr/./js/common.js | 200 OK Content-Length: 19977 Content-Type: application/javascript | clean |
http://money.lifetong.kr/./js/wrest.js | 200 OK Content-Length: 15539 Content-Type: application/javascript | clean |
http://money.lifetong.kr/bbs.php?bo_table=money_okn | 200 OK Content-Length: 23616 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.infodaily.co.kr ...[28095 bytes skipped]... ><a href="./bbs.php?bo_table=money_okn&sca=%EC%B0%BD%EC%97%85">ì°½ì </a></li> <li><a href="./bbs.php?bo_table=money_okn&sca=%EA%B8%88%EC%9C%B5%EA%B8%B0%ED%83%80">ê¸ìµê¸°í</a></li> </ul> </div> </div> <div id="rsidebar_btm"></div> <p style="padding-top:5px;"><a href="http://www.infodaily.co.kr/point.php" onfocus='blur()' target="_blank"><img src="http://img2.lifetong.kr/content/sub_banner.gif"></a></p> <!-- <p class="side_banner01">ë°°ë01</p> <p class="side_banner01">ë°°ë02</p> --> </div> <!-- //ì¤ë¥¸ìª½ ì¹´í ê³ ë¦¬ë°ì¤ --> <!-- //content --> <!-- footer --> <div id="footer_wrap"> <ul> <li><img ...[1499 bytes skipped]... | ||
http://money.lifetong.kr/. | 200 OK Content-Length: 26912 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.infodaily.co.kr ...[7405 bytes skipped]... e" value="all"> <ul> <li class="sbox"><input type="text" class="box1" name="query" value=""></li> <li class="sbtn"><button type="submit" class="searchbtn"><span class="hidden_phrase">ê²ì</span></button></li> </ul> </form> </div> </div> <div id="topbanner"><a href="http://www.infodaily.co.kr" target="_blank"><img src="http://img2.lifetong.kr/main/topbanner.gif"></a></div> </div> <!-- navi --> <div id="navi"> <h2 class="hidden_phrase">ìë¨ë©ë´</h2> <ul> <li><a href="http://www.lifetong.kr" class="menu01">ì ë³´í</a></li> <li><a href="http://info.lifetong.kr/bbs.php?bo_table=life_okn" class="menu02">ìíì ë³´</a>& ...[25685 bytes skipped]... | ||
http://money.lifetong.kr/bbs.php?bo_table=money_okn&wr_id=182 | 200 OK Content-Length: 37836 Content-Type: text/html | clean |
http://money.lifetong.kr/./js/board.js | 200 OK Content-Length: 4234 Content-Type: application/javascript | clean |
http://money.lifetong.kr/./bbs.php?bo_table=money_okn&page= | 200 OK Content-Length: 23616 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.infodaily.co.kr ...[28095 bytes skipped]... ><a href="./bbs.php?bo_table=money_okn&sca=%EC%B0%BD%EC%97%85">ì°½ì </a></li> <li><a href="./bbs.php?bo_table=money_okn&sca=%EA%B8%88%EC%9C%B5%EA%B8%B0%ED%83%80">ê¸ìµê¸°í</a></li> </ul> </div> </div> <div id="rsidebar_btm"></div> <p style="padding-top:5px;"><a href="http://www.infodaily.co.kr/point.php" onfocus='blur()' target="_blank"><img src="http://img2.lifetong.kr/content/sub_banner.gif"></a></p> <!-- <p class="side_banner01">ë°°ë01</p> <p class="side_banner01">ë°°ë02</p> --> </div> <!-- //ì¤ë¥¸ìª½ ì¹´í ê³ ë¦¬ë°ì¤ --> <!-- //content --> <!-- footer --> <div id="footer_wrap"> <ul> <li><img ...[1499 bytes skipped]... | ||
http://money.lifetong.kr/././js/jquery-1.4.2.min.js | 200 OK Content-Length: 72328 Content-Type: application/javascript | clean |
http://money.lifetong.kr/././js/common.js | 200 OK Content-Length: 19977 Content-Type: application/javascript | clean |
http://money.lifetong.kr/././js/wrest.js | 200 OK Content-Length: 15539 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: money.lifetong.kr
Result:
HTTP/1.1 200 OK
Cache-Control: pre-check=0, post-check=0, max-age=0
Connection: close
Date: Wed, 25 Jun 2014 09:23:24 GMT
Pragma: no-cache
Server: Apache/2.2.22 (Unix) mod_ssl/2.2.22 OpenSSL/0.9.8e-fips-rhel5 DAV/2 PHP/5.3.10
Content-Type: text/html; charset=utf-8
Expires: 0
Last-Modified: Wed, 25 Jun 2014 09:23:24 GMT
P3P: CP="ALL CURa ADMa DEVa TAIa OUR BUS IND PHY ONL UNI PUR FIN COM NAV INT DEM CNT STA POL HEA PRE LOC OTC"
Set-Cookie: PHPSESSID=f6i3p1slgq2k66mg9oul9aq304; path=/; domain=.lifetong.kr
Set-Cookie: f33d2ed86bd82d4c22123c9da444d8ab=MTQwMzY4ODIwNA%3D%3D; expires=Thu, 25-Jun-2015 09:23:24 GMT; path=/; domain=.lifetong.kr
Set-Cookie: 96b28b766b7e0699aa91c9ff3d890663=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=.lifetong.kr
Set-Cookie: 2a0d2363701f23f8a75028924a3af643=NzguMTU4LjExLjIyNg%3D%3D; expires=Thu, 26-Jun-2014 09:23:24 GMT; path=/; domain=.lifetong.kr
X-Powered-By: PHP/5.3.10
GET / HTTP/1.1
Host: money.lifetong.kr
Result:
HTTP/1.1 200 OK
Cache-Control: pre-check=0, post-check=0, max-age=0
Connection: close
Date: Wed, 25 Jun 2014 09:23:24 GMT
Pragma: no-cache
Server: Apache/2.2.22 (Unix) mod_ssl/2.2.22 OpenSSL/0.9.8e-fips-rhel5 DAV/2 PHP/5.3.10
Content-Type: text/html; charset=utf-8
Expires: 0
Last-Modified: Wed, 25 Jun 2014 09:23:24 GMT
P3P: CP="ALL CURa ADMa DEVa TAIa OUR BUS IND PHY ONL UNI PUR FIN COM NAV INT DEM CNT STA POL HEA PRE LOC OTC"
Set-Cookie: PHPSESSID=f6i3p1slgq2k66mg9oul9aq304; path=/; domain=.lifetong.kr
Set-Cookie: f33d2ed86bd82d4c22123c9da444d8ab=MTQwMzY4ODIwNA%3D%3D; expires=Thu, 25-Jun-2015 09:23:24 GMT; path=/; domain=.lifetong.kr
Set-Cookie: 96b28b766b7e0699aa91c9ff3d890663=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=.lifetong.kr
Set-Cookie: 2a0d2363701f23f8a75028924a3af643=NzguMTU4LjExLjIyNg%3D%3D; expires=Thu, 26-Jun-2014 09:23:24 GMT; path=/; domain=.lifetong.kr
X-Powered-By: PHP/5.3.10
Second query (visit from search engine):
GET / HTTP/1.1
Host: money.lifetong.kr
Referer: http://www.google.com/search?q=money.lifetong.kr
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: money.lifetong.kr
Referer: http://www.google.com/search?q=money.lifetong.kr
Result:
The result is similar to the first query. There are no suspicious redirects found.