Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=myfiledownload.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.myfiledownload.com/ | HTTP/1.1 302 Found Connection: Close Date: Sat, 07 Mar 2015 10:47:24 GMT Location: http://www.myfilesdownload.org/ Server: Apache/2.2.29 (Amazon) Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.3.29 | clean |
http://www.myfilesdownload.org/ | 200 OK Content-Length: 9422 Content-Type: text/html | clean |
http://www.downloadthesefiles.com/LPfiles/js/jquery.js | 200 OK Content-Length: 94840 Content-Type: text/html | clean |
http://www.downloadthesefiles.com/a | 404 Not Found Content-Length: 291 Content-Type: text/html | clean |
http://www.downloadthesefiles.com/test404page.js | 404 Not Found Content-Length: 304 Content-Type: text/html | clean |
http://www.downloadthesefiles.com/LPfiles/js/ | 403 Forbidden Content-Length: 305 Content-Type: text/html | clean |
http://www.html-manager.com/scripts/AMIdownloadNO.js | 200 OK Content-Length: 2335 Content-Type: text/html | clean |
http://www.downloadthesefiles.com/LPfiles/js/common2.js | 200 OK Content-Length: 10925 Content-Type: text/html | clean |
http://www.downloadthesefiles.com/LPfiles/js/networkCommon.js | 200 OK Content-Length: 9072 Content-Type: text/html | clean |
http://www.webpagescripts.net/util1.js?c=2286&s=Download | 200 OK Content-Length: 226 Content-Type: text/javascript | clean |
http://www.webpagescripts.net/mac-detect.js?c=2286 | 200 OK Content-Length: 1474 Content-Type: text/javascript | suspicious |
Page code contains blacklisted domain: www.newhdplugin.net ...[282 bytes skipped]... .gethdplugin.com', 'www.gethdplugin.net','www.gethdplugin.org','www.hdplugindownload.com','www.gethdplugin.com','www.smashflashplayer.net','www.smashflashplayer.org', 'www.smashflashplayer.com','www.smashflashplayer.info','www.winflashdownload.net','www.winflashdownload.org','www.winflashdownload.com','www.winflashdownload.info', 'www.newhdplugin.com','www.newhdplugin.org','www.newhdplugin.net','www.hdmediahub.com','www.wintvapp.com','www.compress-it.com','www.win7zip.com']; var arrayLength = domains.length; var domainName = 'flash_player'; // Media Player for (var i = 0; i < arrayLength; i++) { if(window.location.hostname==domains[i]) { if(i >= 0 && i <= 20){ domainName = 'flash_player'; } else if(i == 21){ domainName = 'media_center'; } else if(i == ...[454 bytes skipped]... |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: myfiledownload.com
Result:
GET / HTTP/1.1
Host: myfiledownload.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: myfiledownload.com
Referer: http://www.google.com/search?q=myfiledownload.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: myfiledownload.com
Referer: http://www.google.com/search?q=myfiledownload.com
Result:
The result is similar to the first query. There are no suspicious redirects found.