Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=search-09.co.kr
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://search-09.co.kr/ | 200 OK Content-Length: 768 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var mobileKeyWords = new Array('iPhone', 'iPod', 'BlackBerry', 'Android', 'Windows CE', 'LG', 'MOT', 'SAMSUNG', 'SonyEricsson'); for (var word in mobileKeyWords){ if (navigator.userAgent.match(mobileKeyWords[word]) != null){ parent.window.location.href='http://m.vegadisk.com/?p_id=top1&category1=ADT&dep=1&layout=type1'; break; } } Antivirus reports:
| ||
http://search-09.co.kr/test404page.js | 404 Not Found Content-Length: 208 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: search-09.co.kr
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 26 May 2014 08:39:10 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html
X-Powered-By: PHP/4.4.9p2
GET / HTTP/1.1
Host: search-09.co.kr
Result:
HTTP/1.1 200 OK
Connection: close
Date: Mon, 26 May 2014 08:39:10 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html
X-Powered-By: PHP/4.4.9p2
Second query (visit from search engine):
GET / HTTP/1.1
Host: search-09.co.kr
Referer: http://www.google.com/search?q=search-09.co.kr
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: search-09.co.kr
Referer: http://www.google.com/search?q=search-09.co.kr
Result:
The result is similar to the first query. There are no suspicious redirects found.