Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=portal2web.biz
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://portal2web.biz/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: portal2web.biz
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 02 Apr 2014 10:19:09 GMT
Server: Apache/2.2.24 (Unix) mod_ssl/2.2.24 OpenSSL/0.9.8e-fips-rhel5 mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635 mod_fcgid/2.3.6
Content-Type: text/html
Set-Cookie: secureliveBL=bl%3A0%2C; expires=Wed, 02-Apr-2014 10:19:10 GMT; path=/
Set-Cookie: securelive=tt%3Anone%2Ctl%3A0%2C; expires=Thu, 03-Apr-2014 10:19:10 GMT; path=/
GET / HTTP/1.1
Host: portal2web.biz
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 02 Apr 2014 10:19:09 GMT
Server: Apache/2.2.24 (Unix) mod_ssl/2.2.24 OpenSSL/0.9.8e-fips-rhel5 mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635 mod_fcgid/2.3.6
Content-Type: text/html
Set-Cookie: secureliveBL=bl%3A0%2C; expires=Wed, 02-Apr-2014 10:19:10 GMT; path=/
Set-Cookie: securelive=tt%3Anone%2Ctl%3A0%2C; expires=Thu, 03-Apr-2014 10:19:10 GMT; path=/
Second query (visit from search engine):
GET / HTTP/1.1
Host: portal2web.biz
Referer: http://www.google.com/search?q=portal2web.biz
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: portal2web.biz
Referer: http://www.google.com/search?q=portal2web.biz
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://portal2web.biz/ | 200 OK Content-Length: 37873 Content-Type: text/html | clean |
http://portal2web.biz/./js/mootools/mootools-core-1.3.1-full-compat-yc.js | 200 OK Content-Length: 88496 Content-Type: application/x-javascript | clean |
http://portal2web.biz/./js/mootools/mootools-more-1.3.1.1-yc.js | 200 OK Content-Length: 236741 Content-Type: application/x-javascript | clean |
http://portal2web.biz/./js/milkbox/milkbox.js | 200 OK Content-Length: 23315 Content-Type: application/x-javascript | clean |
http://portal2web.biz/./js/formcheck/formcheck.js | 200 OK Content-Length: 34298 Content-Type: application/x-javascript | clean |
http://portal2web.biz/./js/niftyplayer/niftyplayer.js | 200 OK Content-Length: 2483 Content-Type: application/x-javascript | clean |
http://portal2web.biz/scripts.js | 200 OK Content-Length: 37303 Content-Type: application/x-javascript | clean |
http://portal2web.biz/./ | 200 OK Content-Length: 37873 Content-Type: text/html | clean |
http://portal2web.biz/././js/mootools/mootools-core-1.3.1-full-compat-yc.js | 200 OK Content-Length: 88496 Content-Type: application/x-javascript | clean |
http://portal2web.biz/././js/mootools/mootools-more-1.3.1.1-yc.js | 200 OK Content-Length: 236741 Content-Type: application/x-javascript | clean |
http://portal2web.biz/././js/milkbox/milkbox.js | 200 OK Content-Length: 23315 Content-Type: application/x-javascript | clean |
http://portal2web.biz/././js/formcheck/formcheck.js | 200 OK Content-Length: 34298 Content-Type: application/x-javascript | clean |
http://portal2web.biz/././js/niftyplayer/niftyplayer.js | 200 OK Content-Length: 2483 Content-Type: application/x-javascript | clean |
http://portal2web.biz/./scripts.js | 200 OK Content-Length: 37303 Content-Type: application/x-javascript | clean |
http://portal2web.biz/././ | 200 OK Content-Length: 37873 Content-Type: text/html | clean |