Scanned pages/files
Request | Server response | Status |
http://newest-minecraft.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 25 Dec 2014 07:40:20 GMT Location: http://www.newest-minecraft.com/ Server: nginx/1.2.6 Content-Length: 184 Content-Type: text/html | clean |
http://www.newest-minecraft.com/ | 200 OK Content-Length: 6430 Content-Type: text/html | clean |
http://cdn.cms.neatcontent.com/scripts/jquery-1.7.2.min.js | 200 OK Content-Length: 94840 Content-Type: application/x-javascript | clean |
http://cdn.cms.neatcontent.com/scripts/jquery.xdomainrequest.min.js | 200 OK Content-Length: 1751 Content-Type: application/x-javascript | clean |
http://newest-minecraft.com/scripts/root.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 25 Dec 2014 07:40:22 GMT Location: http://www.newest-minecraft.com/scripts/root.js Server: nginx/1.2.6 Content-Length: 184 Content-Type: text/html | clean |
http://www.newest-minecraft.com/scripts/root.js | 200 OK Content-Length: 2700 Content-Type: application/x-javascript | suspicious |
Page code contains blacklisted domain: java4u.net ...[1840 bytes skipped]... oween", "emoticonsnow.net":"emoticons-halloween", "www.123copydvd.net":"copy1", "123copydvd.net":"copy1", "updater4u.com":"agg-ie", "www.updater4u.com":"agg-ie", "updaterme.com":"agg-firefox", "www.updaterme.com":"agg-firefox", "updateme4u.com":"agg-chrome", "www.updateme4u.com":"agg-chrome", "uninstall-guide.com":"general-uninstall", "www.uninstall-guide.com":"general-uninstall", "java4u.net" :"j123", "www.java4u.net" :"j123", "www.solitaire-game.net":"soliter", "www.mahjongame.net":"mahjong", "www.jewelquest-free.com":"jewelquest", "www.free-pac-man.com":"pacman", "www.free-bubble-hit.com":"bubble", "www.incredimailnow.com":"incredimailplus", "incredimailnow.com":"incredimailplus", "www.tetris-free.com":"tetris", "www.angry-bird-free.com":"angry-bird1", "www.my-pc-backup.com":"jdi-backup-lp-1", "www.defenderpro ...[202 bytes skipped]... | ||
http://cdn.cms.neatcontent.com/scripts/injection_v2.min.js?20140811 | 200 OK Content-Length: 12011 Content-Type: application/x-javascript | clean |
http://newest-minecraft.com/test404page.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 25 Dec 2014 07:40:24 GMT Location: http://www.newest-minecraft.com/test404page.js Server: nginx/1.2.6 Content-Length: 184 Content-Type: text/html | clean |
http://www.newest-minecraft.com/test404page.js | 404 Not Found Content-Length: 1245 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: newest-minecraft.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Thu, 25 Dec 2014 07:40:20 GMT
Location: http://www.newest-minecraft.com/
Server: nginx/1.2.6
Content-Length: 184
Content-Type: text/html
...184 bytes of data.
GET / HTTP/1.1
Host: newest-minecraft.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Thu, 25 Dec 2014 07:40:20 GMT
Location: http://www.newest-minecraft.com/
Server: nginx/1.2.6
Content-Length: 184
Content-Type: text/html
...184 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: newest-minecraft.com
Referer: http://www.google.com/search?q=newest-minecraft.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: newest-minecraft.com
Referer: http://www.google.com/search?q=newest-minecraft.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=newest-minecraft.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://newest-minecraft.com/
Result: newest-minecraft.com is not infected or malware details are not published yet.
Result: newest-minecraft.com is not infected or malware details are not published yet.