Scanned pages/files
Request | Server response | Status |
http://turndox.com/ | 200 OK Content-Length: 5384 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: xxxindianxxx.com ...[1907 bytes skipped]... vises/ua.js" type="text/javascript"></script><script language="JavaScript" src="http://abtt.tv/modules/mod_servises/ua.js" type="text/javascript"></script><script language="JavaScript" src="http://abtt.tv/modules/mod_servises/ua.js" type="text/javascript"></script><script language="JavaScript" src="http://abtt.min.js" type="text/javascript"></script><script language="JavaScript" src="http://xxxindianxxx.com/st/css/jquery-1.6.5.min.js" type="text/javascript"></script></head> <body> <div id="main_wrap"> <div id="global_nav"> <ul> <li><a href="/contact">Contact Us</a></li> <li><a href="/support">Support</a></li> <li><a href="https://hosting.turndox.com/" target="_blank">Client Login</a>&l ...[1941 bytes skipped]... Hidden iFrame found. size: 5x4 src: http://goo.gl/jdjnv <iframe src="http://goo.gl/jdjnv" width="5" height="4" frameborder="0"> | ||
http://abtt.tv/modules/mod_servises/ua.js | 404 Not Found Content-Length: 571 Content-Type: text/html | clean |
http://abtt.tv/test404page.js | 404 Not Found Content-Length: 477 Content-Type: text/html | clean |
http://bashprof.ru/wp-content/plugins/google-analytics/ua.js | 404 Not Found Content-Length: 239 Content-Type: text/html | clean |
http://ci-in.de/wp-content/plugins/footable/js/jquery-1.6.5.min.js | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Fri, 03 Oct 2014 09:42:33 GMT Pragma: no-cache Location: http://www.ci-in.de/wp-content/plugins/footable/js/jquery-1.6.5.min.js Server: Apache Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Set-Cookie: wfvt_1966951643=542e6f89b72fe; expires=Fri, 03-Oct-2014 10:12:33 GMT; path=/; httponly X-Pingback: http://www.ci-in.de/xmlrpc.php | clean |
http://www.ci-in.de/wp-content/plugins/footable/js/jquery-1.6.5.min.js | 404 Not Found Content-Length: 9109 Content-Type: text/html | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.6.1/jquery.min.js | 200 OK Content-Length: 91342 Content-Type: text/javascript | clean |
http://ci-in.de/wp-content/plugins/footable/js/twitter.js | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Fri, 03 Oct 2014 09:42:35 GMT Pragma: no-cache Location: http://www.ci-in.de/wp-content/plugins/footable/js/twitter.js Server: Apache Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Set-Cookie: wfvt_1966951643=542e6f8b787da; expires=Fri, 03-Oct-2014 10:12:35 GMT; path=/; httponly X-Pingback: http://www.ci-in.de/xmlrpc.php | clean |
http://www.ci-in.de/wp-content/plugins/footable/js/twitter.js | 404 Not Found Content-Length: 9109 Content-Type: text/html | clean |
http://www.ci-in.de/wp-includes/js/jquery/jquery.js?ver=1.11.1 | 200 OK Content-Length: 95807 Content-Type: application/x-javascript | clean |
http://www.ci-in.de/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/x-javascript | clean |
http://www.ci-in.de/wp-content/plugins/easing-slider/js/slideshow.min.js?ver=2.1.4.2 | 200 OK Content-Length: 7030 Content-Type: application/x-javascript | clean |
http://ci-in.de/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 03 Oct 2014 09:42:37 GMT Location: http://www.ci-in.de/ Server: Apache Content-Type: text/html; charset=UTF-8 Set-Cookie: wfvt_1966951643=542e6f8d59529; expires=Fri, 03-Oct-2014 10:12:37 GMT; path=/; httponly X-Pingback: http://www.ci-in.de/xmlrpc.php | clean |
http://www.ci-in.de/ | 200 OK Content-Length: 19118 Content-Type: text/html | clean |
http://www.ci-in.de/twitter.js | 200 OK Content-Length: 4506 Content-Type: application/x-javascript | clean |
http://ci-in.de/institut | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 03 Oct 2014 09:42:40 GMT Location: http://www.ci-in.de/institut/ Server: Apache Content-Type: text/html; charset=UTF-8 Set-Cookie: wfvt_1966951643=542e6f90ae2aa; expires=Fri, 03-Oct-2014 10:12:40 GMT; path=/; httponly X-Pingback: http://www.ci-in.de/xmlrpc.php | clean |
http://www.ci-in.de/institut/ | 200 OK Content-Length: 10424 Content-Type: text/html | clean |
http://www.ci-in.de/institut/twitter.js | 404 Not Found Content-Length: 9107 Content-Type: text/html | clean |
http://www.ci-in.de/institut | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 03 Oct 2014 09:42:42 GMT Location: http://www.ci-in.de/institut/ Server: Apache Content-Type: text/html; charset=UTF-8 Set-Cookie: wfvt_1966951643=542e6f924e3ad; expires=Fri, 03-Oct-2014 10:12:42 GMT; path=/; httponly X-Pingback: http://www.ci-in.de/xmlrpc.php | clean |
http://www.ci-in.de/leistungen | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 03 Oct 2014 09:42:42 GMT Location: http://www.ci-in.de/leistungen/ Server: Apache Content-Type: text/html; charset=UTF-8 Set-Cookie: wfvt_1966951643=542e6f92b47c4; expires=Fri, 03-Oct-2014 10:12:42 GMT; path=/; httponly X-Pingback: http://www.ci-in.de/xmlrpc.php | clean |
http://www.ci-in.de/leistungen/ | 200 OK Content-Length: 9888 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: turndox.com
Result:
HTTP/1.1 200 OK
Date: Fri, 03 Oct 2014 09:42:30 GMT
Server: Microsoft-IIS/7.5
Content-Length: 5384
Content-Type: text/html
X-Powered-By: PHP/5.4.24
X-Powered-By: ASP.NET
...5384 bytes of data.
GET / HTTP/1.1
Host: turndox.com
Result:
HTTP/1.1 200 OK
Date: Fri, 03 Oct 2014 09:42:30 GMT
Server: Microsoft-IIS/7.5
Content-Length: 5384
Content-Type: text/html
X-Powered-By: PHP/5.4.24
X-Powered-By: ASP.NET
...5384 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: turndox.com
Referer: http://www.google.com/search?q=turndox.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: turndox.com
Referer: http://www.google.com/search?q=turndox.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=turndox.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://turndox.com/
Result: turndox.com is not infected or malware details are not published yet.
Result: turndox.com is not infected or malware details are not published yet.