Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://waterworld.co/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: waterworld.co Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Found Connection: close Date: Thu, 10 Apr 2014 16:17:50 GMT Location: http://59191.thomasyohannan.com/url?sa=D&source=web&cd=14&ved=0XhSwUdkm&url=http://waterworld.co/&ei=2pgrfK/P6Ky1qI2PxlMw85y1pw==&usg=kn34pOkISm2kETCmiq93d2&sig2=wZgvgv7wnGg6gF0Posx9xY Server: Apache/2.2.3 (CentOS) Content-Length: 474 Content-Type: text/html; charset=iso-8859-1 Set-Cookie: GNQ=32; path=/; domain=waterworld.co; expires=Fri, 18-Apr-2014 19:05:50 GMT | suspicious |
URL: http://59191.thomasyohannan.com/url?sa=D&source=web&cd=14&ved=0XhSwUdkm&url=http://waterworld.co/&ei=2pgrfK/P6Ky1qI2PxlMw85y1pw==&usg=kn34pOkISm2kETCmiq93d2&sig2=wZgvgv7wnGg6gF0Posx9xY (imitation of visitor from search engine) GET /url?sa=D&source=web&cd=14&ved=0XhSwUdkm&url=http://waterworld.co/&ei=2pgrfK/P6Ky1qI2PxlMw85y1pw==&usg=kn34pOkISm2kETCmiq93d2&sig2=wZgvgv7wnGg6gF0Posx9xY HTTP/1.1 Host: 59191.thomasyohannan.com Referer: http://www.google.com/search?q=redirect+check2 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Thu, 10 Apr 2014 16:17:02 GMT Location: http://www.google.com/ Server: nginx/1.1.4 Content-Length: 160 Content-Type: text/html | suspicious |
Scanned pages/files
Request | Server response | Status |
http://waterworld.co/ | 200 OK Content-Length: 12330 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="=4067878"></script> | ||
http://waterworld.co/scripts/CreateHTML5Elements.js | 200 OK Content-Length: 215 Content-Type: application/x-javascript | clean |
http://waterworld.co/scripts/jquery.min.js | 200 OK Content-Length: 72174 Content-Type: application/x-javascript | clean |
http://waterworld.co/scripts/ddsmoothmenu.js | 200 OK Content-Length: 30199 Content-Type: application/x-javascript | clean |
http://waterworld.co/scripts/jquery-1.2.6.min.js | 200 OK Content-Length: 55774 Content-Type: application/x-javascript | clean |
http://waterworld.co/index.html | 200 OK Content-Length: 12330 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="=4067878"></script> | ||
http://waterworld.co/about.html | 200 OK Content-Length: 10753 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="=4067872"></script> | ||
http://waterworld.co/product.html | 200 OK Content-Length: 11010 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="=4067914"></script> | ||
http://waterworld.co/toto.html | 200 OK Content-Length: 10674 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="=4067920"></script> | ||
http://waterworld.co/product-wc.html | 200 OK Content-Length: 13464 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="=4067913"></script> | ||
http://waterworld.co/scripts/jquery.colorbox.js | 200 OK Content-Length: 24027 Content-Type: application/x-javascript | clean |
http://waterworld.co/product-washbasin.html | 200 OK Content-Length: 21879 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="=4067911"></script> | ||
http://waterworld.co/product-urinal.html | 200 OK Content-Length: 13086 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="=4067910"></script> | ||
http://waterworld.co/product-neorest.html | 200 OK Content-Length: 18453 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="=4067907"></script> | ||
http://waterworld.co/product-washlet.html | 200 OK Content-Length: 11670 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="=4067912"></script> |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=waterworld.co
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://waterworld.co/
Result: waterworld.co is not infected or malware details are not published yet.
Result: waterworld.co is not infected or malware details are not published yet.