Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=rmseguros.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: xzheli.com
Result:
HTTP/1.1 200 OK
Cache-Control: private
Date: Thu, 02 Oct 2014 18:38:41 GMT
Server: Microsoft-IIS/6.0
Content-Length: 34763
Content-Type: text/html
Set-Cookie: ASPSESSIONIDQSRQDCDC=POIBPKKCNHHNNIOOKBLMHNLM; path=/
X-Powered-By: ASP.NET
...34763 bytes of data.
GET / HTTP/1.1
Host: xzheli.com
Result:
HTTP/1.1 200 OK
Cache-Control: private
Date: Thu, 02 Oct 2014 18:38:41 GMT
Server: Microsoft-IIS/6.0
Content-Length: 34763
Content-Type: text/html
Set-Cookie: ASPSESSIONIDQSRQDCDC=POIBPKKCNHHNNIOOKBLMHNLM; path=/
X-Powered-By: ASP.NET
...34763 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: xzheli.com
Referer: http://www.google.com/search?q=xzheli.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: xzheli.com
Referer: http://www.google.com/search?q=xzheli.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://rmseguros.com/ | HTTP/1.1 200 OK Connection: close Date: Sun, 11 Jan 2015 06:14:03 GMT Accept-Ranges: bytes ETag: "320069-77-b4562d00" Server: Apache Content-Length: 119 Content-Type: text/html Last-Modified: Wed, 17 Mar 2010 15:24:04 GMT X-Powered-By: PleskLin | malicious |
http://www.ruizmolero.es/ | HTTP/1.1 302 Found Connection: close Date: Sun, 11 Jan 2015 06:14:04 GMT Location: http://www.segurosrmtoledo.com/ Server: Apache Content-Length: 215 Content-Type: text/html; charset=iso-8859-1 | malicious |
http://www.segurosrmtoledo.com/ | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://www.segurosrmtoledo.com/test404page.js | 200 OK Content-Length: 16966 Content-Type: text/html | clean |
http://www.segurosrmtoledo.com/wp-includes/js/jquery/jquery.js?ver=1.11.1 | 200 OK Content-Length: 95807 Content-Type: application/javascript | clean |
http://www.segurosrmtoledo.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://www.segurosrmtoledo.com/wp-content/plugins/LayerSlider/js/layerslider.kreaturamedia.jquery.js?ver=4.1.1 | 200 OK Content-Length: 42005 Content-Type: application/javascript | clean |
http://www.segurosrmtoledo.com/wp-content/plugins/LayerSlider/js/jquery-easing-1.3.js?ver=1.3.0 | 200 OK Content-Length: 8152 Content-Type: application/javascript | clean |
http://www.segurosrmtoledo.com/wp-content/plugins/LayerSlider/js/jquerytransit.js?ver=0.9.9 | 200 OK Content-Length: 6565 Content-Type: application/javascript | clean |
http://www.segurosrmtoledo.com/wp-content/plugins/LayerSlider/js/layerslider.transitions.js?ver=4.1.1 | 200 OK Content-Length: 18334 Content-Type: application/javascript | clean |
http://www.segurosrmtoledo.com/wp-content/plugins/dopwgg/libraries/js/jquery.mousewheel.js?ver=4.1 | 200 OK Content-Length: 2400 Content-Type: application/javascript | clean |
http://www.segurosrmtoledo.com/wp-content/plugins/dopwgg/libraries/js/jquery.jscrollpane.min.js?ver=4.1 | 200 OK Content-Length: 14616 Content-Type: application/javascript | clean |
http://www.segurosrmtoledo.com/wp-content/plugins/dopwgg/assets/js/jquery.dop.WallGridGallery.js?ver=4.1 | 200 OK Content-Length: 105418 Content-Type: application/javascript | clean |
http://www.segurosrmtoledo.com/wp-content/plugins/dopwgg/assets/js/dopwgg-frontend.js?ver=4.1 | 200 OK Content-Length: 762 Content-Type: application/javascript | clean |
http://www.segurosrmtoledo.com/wp-content/plugins/m-vslider/jquery.nivo.slider.js?ver=4.1 | 200 OK Content-Length: 12389 Content-Type: application/javascript | clean |
http://www.segurosrmtoledo.com/wp-content/plugins/revslider/rs-plugin/js/jquery.themepunch.tools.min.js?ver=4.6.4 | 200 OK Content-Length: 95453 Content-Type: application/javascript | clean |
http://www.segurosrmtoledo.com/wp-content/plugins/revslider/rs-plugin/js/jquery.themepunch.revolution.min.js?ver=4.6.4 | 200 OK Content-Length: 113138 Content-Type: application/javascript | clean |