Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=utamaparts.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://utamaparts.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: utamaparts.com
Result:
HTTP/1.1 301 Moved Permanently
Date: Fri, 03 Oct 2014 05:03:47 GMT
Location: http://www.utamaparts.com/
Server: Microsoft-IIS/7.5
Content-Length: 0
MicrosoftSharePointTeamServices: 16.0.0.3312
P3P: CP="ALL IND DSP COR ADM CONo CUR CUSo IVAo IVDo PSA PSD TAI TELo OUR SAMo CNT COM INT NAV ONL PHY PRE PUR UNI"
Request-Id: 1569be9c-d032-1000-8f06-dd63c9de0900
SPIisLatency: 0
SPRequestDuration: 15
SPRequestGuid: 1569be9c-d032-1000-8f06-dd63c9de0900
X-Content-Type-Options: nosniff
X-MS-InvokeApp: 1; RequireReadOnly
X-Powered-By: ASP.NET
...0 bytes of data.
GET / HTTP/1.1
Host: utamaparts.com
Result:
HTTP/1.1 301 Moved Permanently
Date: Fri, 03 Oct 2014 05:03:47 GMT
Location: http://www.utamaparts.com/
Server: Microsoft-IIS/7.5
Content-Length: 0
MicrosoftSharePointTeamServices: 16.0.0.3312
P3P: CP="ALL IND DSP COR ADM CONo CUR CUSo IVAo IVDo PSA PSD TAI TELo OUR SAMo CNT COM INT NAV ONL PHY PRE PUR UNI"
Request-Id: 1569be9c-d032-1000-8f06-dd63c9de0900
SPIisLatency: 0
SPRequestDuration: 15
SPRequestGuid: 1569be9c-d032-1000-8f06-dd63c9de0900
X-Content-Type-Options: nosniff
X-MS-InvokeApp: 1; RequireReadOnly
X-Powered-By: ASP.NET
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: utamaparts.com
Referer: http://www.google.com/search?q=utamaparts.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: utamaparts.com
Referer: http://www.google.com/search?q=utamaparts.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://utamaparts.com/ | HTTP/1.1 301 Moved Permanently Date: Fri, 03 Oct 2014 05:03:47 GMT Location: http://www.utamaparts.com/ Server: Microsoft-IIS/7.5 Content-Length: 0 MicrosoftSharePointTeamServices: 16.0.0.3312 P3P: CP="ALL IND DSP COR ADM CONo CUR CUSo IVAo IVDo PSA PSD TAI TELo OUR SAMo CNT COM INT NAV ONL PHY PRE PUR UNI" Request-Id: 1569be9c-d032-1000-8f06-dd63c9de0900 SPIisLatency: 0 SPRequestDuration: 15 SPRequestGuid: 1569be9c-d032-1000-8f06-dd63c9de0900 X-Content-Type-Options: nosniff X-MS-InvokeApp: 1; RequireReadOnly X-Powered-By: ASP.NET | clean |
http://www.utamaparts.com/ | 200 OK Content-Length: 59964 Content-Type: text/html | clean |
http://cdn.sharepointonline.com/12648/_layouts/15/16.0.3312.1218/1033/initstrings.js | 200 OK Content-Length: 20403 Content-Type: application/x-javascript | clean |
http://cdn.sharepointonline.com/12648/_layouts/15/16.0.3312.1218/init.js | 200 OK Content-Length: 236326 Content-Type: application/x-javascript | clean |
http://utamaparts.com/ScriptResource.axd?d=651XccZw10Wy1mY5h3uPOtOC0nY_xmOsMKKomL4gV1mjYozM6EAtD1hvk1nKouqO3UFemI0a6a3xXx8-ahFZDME6_tbMa0HCp7uHAWs9x4rXwerVonH2lu-6NEGSQE94OmnwAoCYxl7BvUSV1WRfNp_BYNhC5SwzDBhZvA6fTfiQH7mWbqB7bdKJ2WrcArHb0&t=70998524 | HTTP/1.1 301 Moved Permanently Date: Fri, 03 Oct 2014 05:03:57 GMT Location: http://www.utamaparts.com/ScriptResource.axd?d=651XccZw10Wy1mY5h3uPOtOC0nY_xmOsMKKomL4gV1mjYozM6EAtD1hvk1nKouqO3UFemI0a6a3xXx8-ahFZDME6_tbMa0HCp7uHAWs9x4rXwerVonH2lu-6NEGSQE94OmnwAoCYxl7BvUSV1WRfNp_BYNhC5SwzDBhZvA6fTfiQH7mWbqB7bdKJ2WrcArHb0&t=70998524 Server: Microsoft-IIS/7.5 Content-Length: 0 MicrosoftSharePointTeamServices: 16.0.0.3312 P3P: CP="ALL IND DSP COR ADM CONo CUR CUSo IVAo IVDo PSA PSD TAI TELo OUR SAMo CNT COM INT NAV ONL PHY PRE PUR UNI" X-Content-Type-Options: nosniff X-MS-InvokeApp: 1; RequireReadOnly X-Powered-By: ASP.NET | clean |
http://www.utamaparts.com/scriptresource.axd?d=651xcczw10wy1my5h3upotoc0ny_xmosmkkoml4gv1mjyozm6eatd1hvk1nkouqo3ufemi0a6a3xxx8-ahfzdme6_tbma0hcp7uhaws9x4rxwervonh2lu-6negsqe94omnwaocyxl7bvusv1wrfnp_bynhc5swzdbhzva6ftfiqh7mwbqb7bdkj2wrcarhb0&t=70998524 | 404 Not Found Content-Length: 1903 Content-Type: text/html | clean |
http://www.utamaparts.com/test404page.js | 404 NOT FOUND Content-Length: 656 Content-Type: text/html | clean |
http://cdn.sharepointonline.com/12648/_layouts/15/16.0.3312.1218/blank.js | 200 OK Content-Length: 284 Content-Type: application/x-javascript | clean |
http://utamaparts.com/ScriptResource.axd?d=j-254cyfesX9t6WwZ9U2EO833XnUkoBBNkt20g7ay_-J5sJx95PP92Fkk2yhy1hH2ZGTMp8e4n5BTRBZ9V1UgbT9bORLUBy6IG6qA-eliD0Vh-JXzycCptj_2Oi8x3xEBFEFrjOtiNDZp_utsi3WGFMngN8LL-bxqFgT1d_INWACust_qKroZ3uqncEDnWfZ0&t=70998524 | HTTP/1.1 301 Moved Permanently Date: Fri, 03 Oct 2014 05:04:01 GMT Location: http://www.utamaparts.com/ScriptResource.axd?d=j-254cyfesX9t6WwZ9U2EO833XnUkoBBNkt20g7ay_-J5sJx95PP92Fkk2yhy1hH2ZGTMp8e4n5BTRBZ9V1UgbT9bORLUBy6IG6qA-eliD0Vh-JXzycCptj_2Oi8x3xEBFEFrjOtiNDZp_utsi3WGFMngN8LL-bxqFgT1d_INWACust_qKroZ3uqncEDnWfZ0&t=70998524 Server: Microsoft-IIS/7.5 Content-Length: 0 MicrosoftSharePointTeamServices: 16.0.0.3312 P3P: CP="ALL IND DSP COR ADM CONo CUR CUSo IVAo IVDo PSA PSD TAI TELo OUR SAMo CNT COM INT NAV ONL PHY PRE PUR UNI" X-Content-Type-Options: nosniff X-MS-InvokeApp: 1; RequireReadOnly X-Powered-By: ASP.NET | clean |
http://www.utamaparts.com/scriptresource.axd?d=j-254cyfesx9t6wwz9u2eo833xnukobbnkt20g7ay_-j5sjx95pp92fkk2yhy1hh2zgtmp8e4n5btrbz9v1ugbt9borluby6ig6qa-elid0vh-jxzyccptj_2oi8x3xebfefrjotindzp_utsi3wgfmngn8ll-bxqfgt1d_inwacust_qkroz3uqncednwfz0&t=70998524 | 404 Not Found Content-Length: 1903 Content-Type: text/html | clean |
http://utamaparts.com/WebResource.axd?d=SmpIh8WQjHIbnq96wSBGwUJ9XffioNNwMXirePhDk3T2QrS2lX8kJ0DWbpkIqFNZE0kxzps_71Dv1G9ANMBK56pQ0zt32yGrdAcaWKOwLlw1&t=635217139380000000 | HTTP/1.1 301 Moved Permanently Date: Fri, 03 Oct 2014 05:04:03 GMT Location: http://www.utamaparts.com/WebResource.axd?d=SmpIh8WQjHIbnq96wSBGwUJ9XffioNNwMXirePhDk3T2QrS2lX8kJ0DWbpkIqFNZE0kxzps_71Dv1G9ANMBK56pQ0zt32yGrdAcaWKOwLlw1&t=635217139380000000 Server: Microsoft-IIS/7.5 Content-Length: 0 MicrosoftSharePointTeamServices: 16.0.0.3312 P3P: CP="ALL IND DSP COR ADM CONo CUR CUSo IVAo IVDo PSA PSD TAI TELo OUR SAMo CNT COM INT NAV ONL PHY PRE PUR UNI" X-Content-Type-Options: nosniff X-MS-InvokeApp: 1; RequireReadOnly X-Powered-By: ASP.NET | clean |
http://www.utamaparts.com/webresource.axd?d=smpih8wqjhibnq96wsbgwuj9xffionnwmxirephdk3t2qrs2lx8kj0dwbpkiqfnze0kxzps_71dv1g9anmbk56pq0zt32ygrdacawkowllw1&t=635217139380000000 | 404 Not Found Content-Length: 1900 Content-Type: text/html | clean |