New scan:

Malware Scanner report for uhh.eng.h.gp

Malicious/Suspicious/Total urls checked
2/1/22
3 pages have malicious or suspicious code. See details below
Blacklists
Found
The website is marked by Yandex as SMS-fraud resource.

The website "uhh.eng.h.gp" is probably hacked and losing its visitors. You need to take action as soon as possible to fix security issues.
Malicious Redirects
Found
The website redirects visitors to the 3rd-party URL:
->http://www.eng.h.gp/
www.eng.h.gp is marked by Yandex as malicious.

The website "uhh.eng.h.gp" is most probably hacked and losing its visitors. You need to take action as soon as possible to fix security issues. Here is our redirects fixing guide.
Malicious/Hidden/Total iFrames
0/0/0
Deface / Content modification
OK

Free periodic scanning and alerting: setup
(requires eVuln badge or a link to eVuln.com)

Malware & Hack Repair

  • Malware Removal
  • Blacklists Removal
  • Reason Eliminating
  • 1 Month Hack Insurance

More details

Website Hack Insurance

  • Files & DB Monitoring
  • Daily Backups
  • Malware & Hack Detection
  • Unlimited Hack Repairs

More details

Safe Browsing / Blacklists

Query: http://www.google.com/safebrowsing/diagnostic?site=uhh.eng.h.gp

Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://uhh.eng.h.gp/

Result: The website is marked by Yandex as SMS-fraud resource. - visiting this web site may harm your computer.
Details are available here.

Malicious Redirects

First query (normal visit):
GET / HTTP/1.1
Host: ww2.d-day-triathlon.com

Result:
HTTP/1.1 200 OK
Connection: Keep-Alive
Date: Sun, 25 Jan 2015 09:17:37 GMT
Server: Apache
Vary: Accept-Encoding,User-Agent
Content-Length: 878
Content-Type: text/html; charset=UTF-8
Keep-Alive: timeout=5, max=113

...878 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: ww2.d-day-triathlon.com
Referer: http://www.google.com/search?q=ww2.d-day-triathlon.com

Result:
The result is similar to the first query. There are no suspicious redirects found.

Scanned pages/files

RequestServer responseStatus
http://uhh.eng.h.gp/
HTTP/1.1 503 Service Unavailable
Connection: close
Date: Wed, 23 Jul 2014 03:03:20 GMT
Retry-After: 604800
Server: Apache/2.2.9
Vary: Accept-Encoding
Content-Length: 2300
Content-Type: text/html; charset=UTF-8
X-Powered-By: PHP/5.2.6-1+lenny16
clean
http://www.qualigo.de/doks/search/source/std/charge_direct.php?ds=subdomzz&subds=eng.h.gp&fallback_url=http%3a%2f%2fwww.eng.h.gp
HTTP/1.1 503 Service Unavailable
Connection: close
Date: Wed, 23 Jul 2014 03:03:20 GMT
Accept-Ranges: bytes
Retry-After: 604800
Server: Apache
Vary: Accept-Encoding
Content-Length: 292
Content-Type: text/html; charset=UTF-8
clean
http://www.qualigo.de/doks/search/source/std/charge_direct.php?ds=subdomzz&subds=eng.h.gp&fallback_url=http%3a%2f%2fwww.eng.h.gp&force_refresh=1
HTTP/1.1 307 Temporary Redirect
Connection: close
Date: Wed, 23 Jul 2014 03:03:21 GMT
Accept-Ranges: bytes
Location: http://www.eng.h.gp
Server: Apache
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html; charset=ISO-8859-15
malicious
http://www.eng.h.gp/
HTTP/1.1 503 Service Unavailable
Connection: close
Date: Wed, 23 Jul 2014 03:03:21 GMT
Retry-After: 604800
Server: Apache/2.2.9
Vary: Accept-Encoding
Content-Length: 2259
Content-Type: text/html; charset=UTF-8
X-Powered-By: PHP/5.2.6-1+lenny16
clean
http://www.qualigo.de/doks/search/source/std/charge_direct.php?ds=subdomzz&subds=h.gp&fallback_url=http%3a%2f%2fwww.h.gp
HTTP/1.1 503 Service Unavailable
Connection: close
Date: Wed, 23 Jul 2014 03:03:21 GMT
Accept-Ranges: bytes
Retry-After: 604800
Server: Apache
Vary: Accept-Encoding
Content-Length: 284
Content-Type: text/html; charset=UTF-8
clean
http://www.qualigo.de/doks/search/source/std/charge_direct.php?ds=subdomzz&subds=h.gp&fallback_url=http%3a%2f%2fwww.h.gp&force_refresh=1
HTTP/1.1 307 Temporary Redirect
Connection: close
Date: Wed, 23 Jul 2014 03:03:21 GMT
Accept-Ranges: bytes
Location: http://www.h.gp
Server: Apache
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html; charset=ISO-8859-15
malicious
http://www.h.gp/test404page.js
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Wed, 23 Jul 2014 03:03:22 GMT
Location: http://www.h.gp/
Server: Apache/2.2.9
Vary: Accept-Encoding
Content-Type: text/html; charset=utf-8
Set-Cookie: multiserv_catalyst_session=7022e60d42c84ddeddd0e571a3a255ba730b859d; path=/; expires=Wed, 23-Jul-2014 09:03:22 GMT; HttpOnly
clean
http://www.h.gp/
200 OK
Content-Length: 43987
Content-Type: text/html
clean
http://www.h.gp/static/js/jquery-1.4.2.min.js
200 OK
Content-Length: 72174
Content-Type: application/javascript
clean
http://www.h.gp/static/js/jquery-ui-1.8.4.custom.min.js
200 OK
Content-Length: 202203
Content-Type: application/javascript
clean
http://www.h.gp/static/js/plugins/jquery.cookies.js
200 OK
Content-Length: 4247
Content-Type: application/javascript
clean
http://www.h.gp/static/js/plugins/jquery.equalheights.js
200 OK
Content-Length: 1021
Content-Type: application/javascript
clean
http://www.h.gp/static/js/plugins/jquery.json-2.2.js
200 OK
Content-Length: 5591
Content-Type: application/javascript
clean
http://www.h.gp/contact/abuse
200 OK
Content-Length: 44264
Content-Type: text/html
clean
http://www.h.gp/contact
200 OK
Content-Length: 43993
Content-Type: text/html
clean
http://www.h.gp/tos
200 OK
Content-Length: 58276
Content-Type: text/html
clean
http://www.h.gp/imprint
200 OK
Content-Length: 42072
Content-Type: text/html
clean
http://www.h.gp/domains
200 OK
Content-Length: 43931
Content-Type: text/html
clean
http://www.h.gp/hosting
200 OK
Content-Length: 41690
Content-Type: text/html
clean
http://www.h.gp/whois
200 OK
Content-Length: 42878
Content-Type: text/html
clean
http://www.h.gp/serverstatus
200 OK
Content-Length: 74403
Content-Type: text/html
clean
http://www.h.gp/faq
200 OK
Content-Length: 92257
Content-Type: text/html
suspicious
Page code contains blacklisted domain: blue-talk.pytalhost.de

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="de">
<head>
<title>h.gp - domaine gratuit</title>
<meta name="description" content="h.gp - domaine gratuit" />
<meta http-equiv="Content-Type" content="text/html; charset=utf-8" /><meta name="Author" content="QE G
...[4265 bytes skipped]...