Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=rubsub.net
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: rubsub.net
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 03 Mar 2015 10:56:23 GMT
Location: http://www.d-whitegroup.com/lotto/
Server: nginx/0.9.4
Vary: Accept-Encoding,User-Agent
Content-Length: 0
Content-Type: text/html
X-Powered-By: PHP/5.3.24
...0 bytes of data.
GET / HTTP/1.1
Host: rubsub.net
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 03 Mar 2015 10:56:23 GMT
Location: http://www.d-whitegroup.com/lotto/
Server: nginx/0.9.4
Vary: Accept-Encoding,User-Agent
Content-Length: 0
Content-Type: text/html
X-Powered-By: PHP/5.3.24
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: rubsub.net
Referer: http://www.google.com/search?q=rubsub.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: rubsub.net
Referer: http://www.google.com/search?q=rubsub.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://rubsub.net/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Tue, 03 Mar 2015 10:56:23 GMT Location: http://www.d-whitegroup.com/lotto/ Server: nginx/0.9.4 Vary: Accept-Encoding,User-Agent Content-Length: 0 Content-Type: text/html X-Powered-By: PHP/5.3.24 | clean |
http://www.d-whitegroup.com/lotto/ | HTTP/1.1 302 Found Connection: close Date: Tue, 03 Mar 2015 10:56:27 GMT Location: news.php Server: nginx/0.9.4 Vary: Accept-Encoding,User-Agent Content-Length: 0 Content-Type: text/html Set-Cookie: fusion_visited=yes; expires=Wed, 02-Mar-2016 10:56:27 GMT; path=/ X-Powered-By: PHP/5.3.24 | clean |
http://www.d-whitegroup.com/lotto/news.php | 200 OK Content-Length: 10244 Content-Type: text/html | clean |
http://www.d-whitegroup.com/test404page.js | 404 Not Found Content-Length: 13864 Content-Type: text/html | clean |
http://www.d-whitegroup.com/wp-includes/js/jquery/jquery.js?ver=1.10.2 | 200 OK Content-Length: 93085 Content-Type: application/x-javascript | clean |
http://www.d-whitegroup.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7199 Content-Type: application/x-javascript | clean |
http://www.d-whitegroup.com/wp-content/themes/graphene/js/jquery.tools.min.js?ver=3.8.5 | 200 OK Content-Length: 11032 Content-Type: application/x-javascript | clean |
http://www.d-whitegroup.com/wp-content/themes/graphene/js/graphene.js?ver=3.8.5 | 200 OK Content-Length: 8446 Content-Type: application/x-javascript | clean |
http://www.d-whitegroup.com/feed | 200 OK Content-Length: 3930 Content-Type: text/xml | clean |
http://www.d-whitegroup.com/wp-content/uploads/2014/03/012.jpg | 200 OK Content-Length: 221544 Content-Type: image/jpeg | clean |
http://www.d-whitegroup.com/wp-content/uploads/2014/03/02.jpg | 200 OK Content-Length: 300898 Content-Type: image/jpeg | clean |
http://www.d-whitegroup.com/wp-content/uploads/2014/03/03.jpg | 200 OK Content-Length: 251666 Content-Type: image/jpeg | clean |
http://www.d-whitegroup.com/wp-content/uploads/2014/03/04.jpg | 200 OK Content-Length: 300898 Content-Type: image/jpeg | clean |
http://www.d-whitegroup.com/wp-content/uploads/2014/03/05.jpg | 200 OK Content-Length: 300898 Content-Type: image/jpeg | clean |
http://www.d-whitegroup.com/wp-content/uploads/2014/03/06.jpg | 200 OK Content-Length: 300898 Content-Type: image/jpeg | clean |
http://www.d-whitegroup.com/wp-content/uploads/2014/03/08.jpg | 200 OK Content-Length: 300898 Content-Type: image/jpeg | clean |
http://www.d-whitegroup.com/wp-content/uploads/2014/03/07.jpg | 200 OK Content-Length: 263250 Content-Type: image/jpeg | clean |