Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=okaimoveis.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: destinationicloud.com
Result:
HTTP/1.1 200 OK
Cache-Control: private, no-cache
Connection: close
Date: Thu, 21 Aug 2014 16:35:19 GMT
Pragma: no-cache
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=utf-8
Expires:
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: 53f94ae28286625d467fde6c991deb78=3f17988c7289ba7c17facad07ba72f5d; path=/
Set-Cookie: bt_arise_tpl=bt_arise; expires=Tue, 11-Aug-2015 16:35:20 GMT; path=/
GET / HTTP/1.1
Host: destinationicloud.com
Result:
HTTP/1.1 200 OK
Cache-Control: private, no-cache
Connection: close
Date: Thu, 21 Aug 2014 16:35:19 GMT
Pragma: no-cache
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=utf-8
Expires:
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: 53f94ae28286625d467fde6c991deb78=3f17988c7289ba7c17facad07ba72f5d; path=/
Set-Cookie: bt_arise_tpl=bt_arise; expires=Tue, 11-Aug-2015 16:35:20 GMT; path=/
Second query (visit from search engine):
GET / HTTP/1.1
Host: destinationicloud.com
Referer: http://www.google.com/search?q=destinationicloud.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: destinationicloud.com
Referer: http://www.google.com/search?q=destinationicloud.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://okaimoveis.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 28 Dec 2014 09:43:01 GMT Via: 1.1 varnish Accept-Ranges: bytes Age: 0 Location: http://realimo.com.br Server: Varnish Content-Length: 315 Content-Type: text/html; charset=utf-8 | malicious |
http://realimo.com.br/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Sun, 28 Dec 2014 09:43:04 GMT Pragma: no-cache Location: http://www.realimo.com.br/ Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=pdv2ddrhisd37o4dm6q2vjo5t3; path=/ X-Pingback: http://www.realimo.com.br/xmlrpc.php | clean |
http://www.realimo.com.br/ | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://www.realimo.com.br/test404page.js | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |