Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: rumabila.com
Result:
GET / HTTP/1.1
Host: rumabila.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: rumabila.com
Referer: http://www.google.com/search?q=rumabila.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: rumabila.com
Referer: http://www.google.com/search?q=rumabila.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://www.rumabila.com/ | 200 OK Content-Length: 36877 Content-Type: text/html | clean |
http://www.rumabila.com/LoadTime.js | 200 OK Content-Length: 344 Content-Type: application/javascript | clean |
http://www.rumabila.com/WebResource.axd?d=wqHaBbT3GgHIVJsZhjHU2feB0E74a0229WxriEZAzFadUWVJyy-Qqrxkx3QPoJ4bnFDBPmOtLGo2xUPR0&t=635403853409764024 | 200 OK Content-Length: 20794 Content-Type: application/x-javascript | clean |
http://www.rumabila.com/ScriptResource.axd?d=a-QMKYCQpboj7aEUU_hHCMGk0cFXRlpM8KBdSyIjEXnwbqEj21Ul62Dk04_yQ3OC3m_zgGZLL2PXcaTrK7DMnYYDmbDjy8uGpDIGZ_eHuiMrIbRlr_ix4KyVLB05WnIhzTaEAFf0uwT1MUEk0&t=635403853409764024 | 200 OK Content-Length: 21618 Content-Type: application/x-javascript | clean |
http://www.rumabila.com/ScriptResource.axd?d=Hixfzlb9V3mA7PdlT4MlZi_7ZT-wwjYxMBqcdZUNsnNQVzxcedHw7ft-IgiXeGIKLgJkW086Fmy3CLbuzl42axqqasl5Wq4iQJjDR9fqZX6pSwiArrPrYfus4zQ1&t=634663023518188130 | 200 OK Content-Length: 260386 Content-Type: application/x-javascript | clean |
http://www.rumabila.com/ScriptResource.axd?d=8UkAnkNHmX33zoeg-PKMLovuMCyL1WS9b1BLk6sxuAd0TdQF6T7GTstwqntcp3zQGXTHQbHxdkDjBiy0-RqBeyyoLecq04wH-Q5yCLm8f86y-ix5OznjLjCDAo_19rQWcS42DA2&t=634663023518188130 | 200 OK Content-Length: 65868 Content-Type: application/x-javascript | clean |
http://www.rumabila.com/ScriptResource.axd?d=OaPtSqz5DZHi68ixsrWqpEp8Zbw8BXalVP-ddd5J6DxkUZPp654rJJ2aKCG7PjSnO4_MTYSfIubFn9Egth-7mPE3iloLiQtkj8EDnkfSKONp36bFxS3k5sA1nxcZiKoXEIs-rdz_S3S4FMF40&t=634436630468407427 | 200 OK Content-Length: 28550 Content-Type: text/javascript | clean |
http://www.rumabila.com/ScriptResource.axd?d=zDIKLCXApDd76oezMagdRGDyFrTVdbCnPdGiJk5XSrKsQVE9jYblHXzHT5YBxbSinRl3zah4MLKW-BVC0zVqZZNWXxD2J7RfhHx10UL2EtzhwV82AwqxgdYbnLXL_7vxnGxf39nFGEZg4SHQFjgeF26qz-U1&t=634436630468407427 | 200 OK Content-Length: 15833 Content-Type: text/javascript | clean |
http://www.rumabila.com/ScriptResource.axd?d=QavKIkWu444vgEol_MgaKKmr1Po1HJsWx7wK8UCPJ0N3TCYDeJnN9PZ94ENRUgJuMnlgCwGfsAiVOh3ELEQLSfrMf_Wh75g5ymnJEEFNn3eUId9DwtnFlWA8L2tIAtkqBNehlxfY_3oxhYzTC3Gfe7CWkcXpg1FPVUVZaLSy7lg5FUKj0&t=634436630468407427 | 200 OK Content-Length: 6835 Content-Type: text/javascript | clean |
http://www.rumabila.com/ScriptResource.axd?d=WaM0UktVr6CFsuq7r6q10oHZG-HVvsukjSA_YtzI7AaMAkw3pzSbZA_0EphBw0n7AKo7fKu7RpkdXiyTuYmSftkmuTRV6JDnOzR7VvQ0FirnZxObQfQy3AZQqAw5dPZfyxFiCQieoIhngEFt0&t=634436630468407427 | 200 OK Content-Length: 1830 Content-Type: text/javascript | clean |
http://www.rumabila.com/ScriptResource.axd?d=dJJKSRzusNTFBkpruygnNZmp0tfGx4pGLFrLti97Y4ebsPzAiokU1_etVhnMQw5cQl5MafFDIDyiWmI2erXjMXfjhbc0BkkEbkfLP85-Zkpxji69ew-xa3vQYohrtJ_bC3cXWgiR4d7Qhsy1TqDM5HhGiDiPuAxr88Et9g2&t=634436630468407427 | 200 OK Content-Length: 6794 Content-Type: text/javascript | clean |
http://www.rumabila.com/ScriptResource.axd?d=PTBHrXEb0jFxDMz2nBBDtkDI0KnYwysXHKzCjmMDVM0iiJ2P3VuB9wJ65tNO7oSLbURxTa89FUsLtdCQEu1i48EgtxVsBDQkXDDmFoiU2JrfH22L3gIHL5OOE3MEtvM8Ums4lrJlpgqxeGC8VQsvYtObOUL7c2uV4glSiswoXiKMWw_20&t=634436630468407427 | 200 OK Content-Length: 6116 Content-Type: text/javascript | clean |
http://www.rumabila.com/ScriptResource.axd?d=0VmM9a7z7VFF4CJe3u-txDuB7fRU5DkRi28auv2Z4RU9aCzaZgCg4GcQH19RXCNrKIxzoyITbLO5dAI9EALj6OWtQGjo-_lE_H7xudiOCIz8Y_dpMELemIbrMzGo4m6ECWAW4-PgfwsOFV-iCr77RAe9YVWVAmz2FIXCvg2&t=634436630468407427 | 200 OK Content-Length: 23133 Content-Type: text/javascript | clean |
http://www.rumabila.com/ScriptResource.axd?d=GnUXwToXOSdBr2eZIO_zA-s4INITk2_6u6rHJskl5gyZ4o7ZRbtrCVLJ5Z3r37EV0VDiRF-ZPtO7dUFrGiBoF83XjV0YBcPLyODpYcvALj2nLN0sTKInGq5LFLBM7wNOJQmX2Z3R7sl05X9uyS9h0wpzF541&t=634436630468407427 | 200 OK Content-Length: 3960 Content-Type: text/javascript | clean |
http://www.rumabila.com/ScriptResource.axd?d=Xgio6YjOXUBAxHTm9OjV1SPmzqs-MMEPOjFua7byp4y7HG1OiiPHEwxvyYthO5p0IoeZgzQGNwQfD0bxugTok5HompzvEVLLvEn_fRJaNgs3uUnbZ5oxnZQ4ez-FWPWaN09WVTdaB7H7MKzIgMSuIQP6GkzV3WMrgfBm1g2&t=634436630468407427 | 200 OK Content-Length: 16578 Content-Type: text/javascript | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=rumabila.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://rumabila.com/
Result: rumabila.com is not infected or malware details are not published yet.
Result: rumabila.com is not infected or malware details are not published yet.