Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=tib42lewa.rr.nu
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://tib42lewa.rr.nu/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://tib42lewa.rr.nu/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Sat, 17 May 2014 09:35:11 GMT Location: http://domainpark.sitelutions.com/redir_not_found/redir_not_found.shtml?tib42lewa.rr.nu Server: nginx/1.4.1 Content-Type: httpd/unix-directory | clean |
http://domainpark.sitelutions.com/redir_not_found/redir_not_found.shtml?tib42lewa.rr.nu | 200 OK Content-Length: 5640 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: tib42lewa.rr.nu ...[116 bytes skipped]... al.dtd"> <html xmlns="http://www.w3.org/1999/xhtml"> <head> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <link rel="icon" href="favicon.ico" type="image/x-icon"> <link rel="shortcut icon" href="favicon.ico" type="image/x-icon" /> <link href="/include_files/css/sitelutions1.css" rel="stylesheet" type="text/css" /> <title>Redirection Not Found tib42lewa.rr.nu </title> </head> <body> <!-- Header --> <a href="http://sitelutions.com/" style="display:block"><div class="logo"></div></a> <div class="parkblurb">The website <b>tib42lewa.rr.nu</b> is (or was) utilizing the Sitelutions Redirection Engine. Unfortunately, the URL has been entered incorrectly, or the site has been deleted by its owner. Below are some of our other services and features that we o ...[6054 bytes skipped]... | ||
http://pagead2.googlesyndication.com/pagead/show_ads.js | 200 OK Content-Length: 19812 Content-Type: text/javascript | clean |
http://tib42lewa.rr.nu/info/history | 404 Not Found Content-Length: 16 Content-Type: text/html | clean |
http://tib42lewa.rr.nu/test404page.js | 404 Not Found Content-Length: 16 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: tib42lewa.rr.nu
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Sat, 17 May 2014 09:35:11 GMT
Location: http://domainpark.sitelutions.com/redir_not_found/redir_not_found.shtml?tib42lewa.rr.nu
Server: nginx/1.4.1
Content-Type: httpd/unix-directory
GET / HTTP/1.1
Host: tib42lewa.rr.nu
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Sat, 17 May 2014 09:35:11 GMT
Location: http://domainpark.sitelutions.com/redir_not_found/redir_not_found.shtml?tib42lewa.rr.nu
Server: nginx/1.4.1
Content-Type: httpd/unix-directory
Second query (visit from search engine):
GET / HTTP/1.1
Host: tib42lewa.rr.nu
Referer: http://www.google.com/search?q=tib42lewa.rr.nu
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: tib42lewa.rr.nu
Referer: http://www.google.com/search?q=tib42lewa.rr.nu
Result:
The result is similar to the first query. There are no suspicious redirects found.