Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=uni-coast.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://uni-coast.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://uni-coast.com/ | 200 OK Content-Length: 11258 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 0x0 src: http://127.0.0.1/m.htm <iframe src=http://127.0.0.1/m.htm width=0 height=0> | ||
http://uni-coast.com/inc/functions.js | HTTP/1.1 200 OK Date: Thu, 02 Oct 2014 00:47:55 GMT Accept-Ranges: bytes ETag: "0d630a030f0c71:1ada" Server: IIS Content-Length: 839 Content-Location: http://uni-coast.com/inc/functions.js Content-Type: application/x-javascript Last-Modified: Thu, 06 Sep 2007 02:50:04 GMT X-Powered-By: WAF/2.0 | clean |
http://uni-coast.com/test404page.js | 404 Not Found Content-Length: 1308 Content-Type: text/html | clean |
http://uni-coast.com/script/AC_RunActiveContent.js | HTTP/1.1 200 OK Date: Thu, 02 Oct 2014 00:47:59 GMT Accept-Ranges: bytes ETag: "044799cb6eec71:1ada" Server: IIS Content-Length: 3359 Content-Location: http://uni-coast.com/script/AC_RunActiveContent.js Content-Type: application/x-javascript Last-Modified: Tue, 04 Sep 2007 05:44:08 GMT X-Powered-By: WAF/2.0 | clean |
http://uni-coast.com/script/ac_runactivecontent.js | HTTP/1.1 200 OK Date: Thu, 02 Oct 2014 00:48:01 GMT Accept-Ranges: bytes ETag: "044799cb6eec71:1ada" Server: IIS Content-Length: 3359 Content-Location: http://uni-coast.com/script/ac_runactivecontent.js Content-Type: application/x-javascript Last-Modified: Tue, 04 Sep 2007 05:44:08 GMT X-Powered-By: WAF/2.0 | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: uni-coast.com
Result:
HTTP/1.1 200 OK
Cache-Control: private
Date: Thu, 02 Oct 2014 00:47:54 GMT
Server: IIS
Content-Length: 11258
Content-Type: text/html
Set-Cookie: ASPSESSIONIDQACAQSSQ=IKADBIPBCFLENKPFOOOFFHJJ; path=/
Set-Cookie: safedog-flow-item=B39D05EBF60711C6FAC67ADB66661737; expires=Dec, 8-Nov-2150 02:21:10 GMT; domain=uni-coast.com; path=/
X-Powered-By: WAF/2.0
...11258 bytes of data.
GET / HTTP/1.1
Host: uni-coast.com
Result:
HTTP/1.1 200 OK
Cache-Control: private
Date: Thu, 02 Oct 2014 00:47:54 GMT
Server: IIS
Content-Length: 11258
Content-Type: text/html
Set-Cookie: ASPSESSIONIDQACAQSSQ=IKADBIPBCFLENKPFOOOFFHJJ; path=/
Set-Cookie: safedog-flow-item=B39D05EBF60711C6FAC67ADB66661737; expires=Dec, 8-Nov-2150 02:21:10 GMT; domain=uni-coast.com; path=/
X-Powered-By: WAF/2.0
...11258 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: uni-coast.com
Referer: http://www.google.com/search?q=uni-coast.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: uni-coast.com
Referer: http://www.google.com/search?q=uni-coast.com
Result:
The result is similar to the first query. There are no suspicious redirects found.