Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=payrollinbox.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: payrollinbox.com
Result:
HTTP/1.1 200 OK
Cache-Control: private
Date: Mon, 04 Aug 2014 03:15:22 GMT
Server: Microsoft-IIS/7.0
Content-Length: 13116
Content-Type: text/html; charset=utf-8
X-AspNet-Version: 2.0.50727
X-Powered-By: ASP.NET
...13116 bytes of data.
GET / HTTP/1.1
Host: payrollinbox.com
Result:
HTTP/1.1 200 OK
Cache-Control: private
Date: Mon, 04 Aug 2014 03:15:22 GMT
Server: Microsoft-IIS/7.0
Content-Length: 13116
Content-Type: text/html; charset=utf-8
X-AspNet-Version: 2.0.50727
X-Powered-By: ASP.NET
...13116 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: payrollinbox.com
Referer: http://www.google.com/search?q=payrollinbox.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: payrollinbox.com
Referer: http://www.google.com/search?q=payrollinbox.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://payrollinbox.com/ | 200 OK Content-Length: 13116 Content-Type: text/html | clean |
http://payrollinbox.com/WebResource.axd?d=5VZVE2pBkH7R95GDQofdSvBFIqAzdmbxt99WZXaobuSBtv28aLCyukDRWS34D9CAp-iWNqHggHw_Bi5NZ84nQoQt7m81&t=634605708834856163 | 200 OK Content-Length: 20794 Content-Type: application/x-javascript | clean |
http://payrollinbox.com/ScriptResource.axd?d=-IR-Wi0naXIJG_xNHdwEAX4B46OhCvAjr3hu_KIPENpBKdMOFKBh7TXpDSe2QB4FdRtf_nTCu9rUiYQS7Sr3qqwp6Fdrz7Pj3ILLoVjFRh9x12Lmj5jq0gbDMSdWORHuYiC3pAaygG9iCJdGLFOa_o_J3ls1&t=ffffffffaf457bc1 | 200 OK Content-Length: 21615 Content-Type: application/x-javascript | clean |
http://payrollinbox.com/ScriptResource.axd?d=DbNTQm-dBi9YRt7y3lav7n-Z2lgFAZfAi-_UeZ0UVPrxuzN2b1pKZzs41GJiOu32q7zrBr2PDe5oBCikVSixX3IdXdJNFstRNCdt2p6tMYjltUp4gWprH5yY-fpl-2JlQ49umNmbN4ub2ZbUXTts8VnwiAPPgaiR3xKKV0CfNUbPckpo0&t=ffffffff9a1f20af | 200 OK Content-Length: 300861 Content-Type: application/x-javascript | clean |
http://payrollinbox.com/ScriptResource.axd?d=i5JnkApMaHhuI17qC268dF3kEfHZV85lhfgZ_2ltftg7NrAaB9H3o8_zfDehNcoYMllqgE26ZE_liie4Er8rnLn44UYZs322-JAvKZH7lPSZHE-Pth35gY-mWD3piMMMG3UV-GqlGB_EeMnJB1WEwPum4y_INKlvkRdhJfh2MDSJVL070&t=ffffffff9a1f20af | 200 OK Content-Length: 78420 Content-Type: application/x-javascript | clean |
http://payrollinbox.com/test404page.js | 404 Not Found Content-Length: 5205 Content-Type: text/html | clean |