Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=snjab.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://snjab.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: vesselsinksandvanities.com
Result:
GET / HTTP/1.1
Host: vesselsinksandvanities.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: vesselsinksandvanities.com
Referer: http://www.google.com/search?q=vesselsinksandvanities.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: vesselsinksandvanities.com
Referer: http://www.google.com/search?q=vesselsinksandvanities.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://snjab.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 18 Jun 2014 00:19:11 GMT Location: http://al3ab.snjab.com/ Server: nginx admin Content-Length: 231 Content-Type: text/html; charset=iso-8859-1 X-Cache: HIT from Backend | malicious |
http://al3ab.snjab.com/ | 200 OK Content-Length: 17744 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: l3bk.com ...[16619 bytes skipped]... ="0" src="http://y4yy.com/hair-cut.jpg" width="100" height="35" alt="ÇáÚÇÈ ÞÕ ÔÚÑ"></a> <a target="_blank" title="ÇáÚÇÈ Èä Êä" href="http://games.y4yy.com/category/59/"> <img border="0" src="http://games.y4yy.com/images/ben10.gif" width="100" height="35" alt="ÇáÚÇÈ Èä Êä"></a> <a target="_blank" title="áÚÈÉ ÇáãÒÑÚÉ ÇáÓÚíÏÉ" href="http://games.y4yy.com/3969.html"> <img border="0" src="http://l3bk.com/farml3bk.gif" width="100" height="35" alt="áÚÈÉ ÇáãÒÑÚÉ ÇáÓÚíÏÉ"></a></p> <p align="center"> <a target="_blank" title="ÇáÚÇÈ ÈäÇÊ" href="http://games.up-00.com/"> <img border="0" src="http://games.up-00.com/images/cooking-games.gif" width="100" height="35" alt="ÇáÚÇÈ ÈäÇÊ"></a> <a target="_blank" title="ÇáÚÇÈ ØÈÎ" href="http://www.el3aby.com/category/2/1/"> <img border="0" src="http://games.y4yy.com/images/cocing-y4yy. ...[3782 bytes skipped]... | ||
http://pagead2.googlesyndication.com/pagead/show_ads.js | 200 OK Content-Length: 21491 Content-Type: text/javascript | clean |
http://snjab.com/test404page.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 18 Jun 2014 00:19:12 GMT Location: http://al3ab.snjab.com/test404page.js Server: nginx admin Content-Length: 245 Content-Type: text/html; charset=iso-8859-1 | malicious |
http://al3ab.snjab.com/test404page.js | 404 Not Found Content-Length: 331 Content-Type: text/html | clean |