Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=north-services.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://north-services.com/ | 200 OK Content-Length: 58380 Content-Type: text/html | clean |
http://north-services.com/images/java/popup.js | 200 OK Content-Length: 390 Content-Type: application/x-javascript | clean |
http://north-services.com/exmplmenu_var.php?bnsize=177&shop=1&color4=AAAAAA&color5=000000&color7=FFFFFF | 200 OK Content-Length: 5385 Content-Type: text/html | clean |
http://north-services.com/test404page.js | 404 Not Found Content-Length: 401 Content-Type: text/html | clean |
http://north-services.com/menucom.js | 200 OK Content-Length: 22970 Content-Type: application/x-javascript | clean |
http://tracker.stats.in.th/tracker.php?uid=2384 | 200 OK Content-Length: 473 Content-Type: text/javascript | suspicious |
Page code contains blacklisted domain: north-services.com var stats_key="1718946005"; var stats_domain='north-services.com'; var stats_uid='2384'; var stats_uname='2384'; if(typeof(parent.document) != 'undefined') { if(typeof(parent.stats_init) == 'undefined') { parent.stats_init = true; document.write("<script src='http://static.stats.in.th/tracker.js'></script>"); } } else if(typeof(stats_init) == 'undefined') { var stats_init = true; document.write("<script src='http://static.stats.in.th/tracker.js'></script>"); } |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: north-services.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sun, 08 Jun 2014 06:14:18 GMT
Pragma: no-cache
Via: 1.1 varnish
Accept-Ranges: bytes
Age: 0
Server: Apache/2
Vary: Accept-Encoding,User-Agent
Content-Length: 58380
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=35e8978d8c6be79da934f83a26237013; path=/
X-Powered-By: PHP/5.2.6
X-Varnish: 78996205
...58380 bytes of data.
GET / HTTP/1.1
Host: north-services.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sun, 08 Jun 2014 06:14:18 GMT
Pragma: no-cache
Via: 1.1 varnish
Accept-Ranges: bytes
Age: 0
Server: Apache/2
Vary: Accept-Encoding,User-Agent
Content-Length: 58380
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=35e8978d8c6be79da934f83a26237013; path=/
X-Powered-By: PHP/5.2.6
X-Varnish: 78996205
...58380 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: north-services.com
Referer: http://www.google.com/search?q=north-services.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: north-services.com
Referer: http://www.google.com/search?q=north-services.com
Result:
The result is similar to the first query. There are no suspicious redirects found.