Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=mtbo-deutschland.de
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://mtbo-deutschland.de/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://mtbo-deutschland.de/ | 200 OK Content-Length: 19839 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) (function($) { window.addEvent('domready', function() { $$(document.links).filter(function(el) { return el.getAttribute('data-lightbox') != null; }).slimbox({ }, null, function(el) { var attr = this.getAttribute('data-lightbox'); return (this == el) || (attr && el.getAttribute('data-lightbox').match(attr)); }); $('lbImage').addEvent('swipe', function(e) { (e.direction == 'left') ? $('lbNextLink').fireEvent('click') : $('lbPrevLink').fireEvent('click'); }); }); })(document.id); Antivirus reports:
| ||
http://mtbo-deutschland.de/assets/js/fb523cc4bb9b.js | 200 OK Content-Length: 174984 Content-Type: application/javascript | clean |
http://mtbo-deutschland.de/assets/js/071b40942005.js | 200 OK Content-Length: 18222 Content-Type: application/javascript | clean |
http://mtbo-deutschland.de/assets/mootools/mediabox/1.4.6/js/mediabox.js | 200 OK Content-Length: 20285 Content-Type: application/javascript | clean |
http://mtbo-deutschland.de/assets/swipe/2.0/js/swipe.min.js | 200 OK Content-Length: 5528 Content-Type: application/javascript | clean |
http://mtbo-deutschland.de/assets/mootools/slimbox/1.8/js/slimbox.js | 200 OK Content-Length: 3986 Content-Type: application/javascript | clean |
http://mtbo-deutschland.de/assets/mootools/tablesort/js/tablesort.js | 200 OK Content-Length: 3956 Content-Type: application/javascript | clean |
http://mtbo-deutschland.de/index.php/home.html | 200 OK Content-Length: 20010 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) (function($) { window.addEvent('domready', function() { $$(document.links).filter(function(el) { return el.getAttribute('data-lightbox') != null; }).slimbox({ }, null, function(el) { var attr = this.getAttribute('data-lightbox'); return (this == el) || (attr && el.getAttribute('data-lightbox').match(attr)); }); $('lbImage').addEvent('swipe', function(e) { (e.direction == 'left') ? $('lbNextLink').fireEvent('click') : $('lbPrevLink').fireEvent('click'); }); }); })(document.id); Antivirus reports:
| ||
http://mtbo-deutschland.de/index.php/assets/js/fb523cc4bb9b.js | 404 Not Found Content-Length: 10920 Content-Type: text/html | clean |
http://mtbo-deutschland.de/test404page.js | 404 Not Found Content-Length: 281 Content-Type: text/html | clean |
http://mtbo-deutschland.de/index.php/assets/js/071b40942005.js | 404 Not Found Content-Length: 10922 Content-Type: text/html | clean |
http://mtbo-deutschland.de/index.php/assets/mootools/mediabox/1.4.6/js/mediabox.js | 404 Not Found Content-Length: 10921 Content-Type: text/html | clean |
http://mtbo-deutschland.de/index.php/assets/swipe/2.0/js/swipe.min.js | 404 Not Found Content-Length: 10921 Content-Type: text/html | clean |
http://mtbo-deutschland.de/index.php/assets/mootools/slimbox/1.8/js/slimbox.js | 404 Not Found Content-Length: 10918 Content-Type: text/html | clean |
http://mtbo-deutschland.de/index.php/assets/mootools/tablesort/js/tablesort.js | 404 Not Found Content-Length: 10919 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: mtbo-deutschland.de
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 24 Jul 2014 03:21:14 GMT
Pragma: no-cache
Server: Apache
Vary: User-Agent
Content-Length: 19839
Content-Type: text/html; charset=utf-8
Expires: Fri, 06 Jun 1975 15:10:00 GMT
Last-Modified: Thu, 24 Jul 2014 03:21:15 GMT
Set-Cookie: PHPSESSID=ae159a6ed7073f4f3f270228105483ba; path=/; HttpOnly
Set-Cookie: BE_USER_AUTH=62308fa089107cfedd34296793a071051fbfac71; expires=Wed, 23-Jul-2014 03:21:14 GMT; path=/; httponly
Set-Cookie: FE_USER_AUTH=6c78cf2473fef18633ac99564b0c686530e4e7d7; expires=Wed, 23-Jul-2014 03:21:14 GMT; path=/; httponly
...19839 bytes of data.
GET / HTTP/1.1
Host: mtbo-deutschland.de
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 24 Jul 2014 03:21:14 GMT
Pragma: no-cache
Server: Apache
Vary: User-Agent
Content-Length: 19839
Content-Type: text/html; charset=utf-8
Expires: Fri, 06 Jun 1975 15:10:00 GMT
Last-Modified: Thu, 24 Jul 2014 03:21:15 GMT
Set-Cookie: PHPSESSID=ae159a6ed7073f4f3f270228105483ba; path=/; HttpOnly
Set-Cookie: BE_USER_AUTH=62308fa089107cfedd34296793a071051fbfac71; expires=Wed, 23-Jul-2014 03:21:14 GMT; path=/; httponly
Set-Cookie: FE_USER_AUTH=6c78cf2473fef18633ac99564b0c686530e4e7d7; expires=Wed, 23-Jul-2014 03:21:14 GMT; path=/; httponly
...19839 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: mtbo-deutschland.de
Referer: http://www.google.com/search?q=mtbo-deutschland.de
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: mtbo-deutschland.de
Referer: http://www.google.com/search?q=mtbo-deutschland.de
Result:
The result is similar to the first query. There are no suspicious redirects found.