Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=webmail.ffacp.pt
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: webmail.ffacp.pt
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 14 Sep 2014 00:37:28 GMT
Server: Apache
Vary: Accept-Encoding
Content-Length: 6149
Content-Type: text/html; charset=UTF-8
Set-Cookie: isEncrypted=b%3A1%3B; expires=Sun, 14-Sep-2014 00:52:29 GMT; path=/; domain=webmail.ffacp.pt
Set-Cookie: isEncrypted=b%3A1%3B; expires=Sun, 14-Sep-2014 00:52:29 GMT; path=/; domain=webmail.ffacp.pt
Set-Cookie: isEncrypted=b%3A1%3B; expires=Sun, 14-Sep-2014 00:52:29 GMT; path=/; domain=webmail.ffacp.pt
Set-Cookie: style=a%3A9%3A%7Bs%3A6%3A%22locale%22%3Bs%3A44%3A%22aHnt0lWJ2BUQRwjQBNue8XxUDMSmLEgWbgIYeqTTi8M%3D%22%3Bs%3A8%3A%22template%22%3Bs%3A44%3A%22CAK87lK2Kl3DSTPz3yjlAJsDZQhAkF9b2hWgQXhA4SQ%3D%22%3Bs%3A3%3A%22css%22%3Ba%3A4%3A%7Bi%3A0%3Bs%3A44%3A%22GfY%2Fs4omqNI%2BAdEhHeL54MzPXcA%2FRO9G5bzF%2B9I5J4c%3D%22%3Bi%3A1%3Bs%3A44%3A%22F2dMZpzO5CLPpdV7961kLGvZ8mmxvianM368m%2BwCc50%3D%22%3Bi%3A2%3Bs%3A44%3A%22DiputAfvDjw2aYWQG8Low5YmDuHw%2BIGbfUX9OAuiYNs%3D%22%3Bi%3A3%3Bs%3A44%3A%229cDHVwGUfuScceDuciJbd8s4B9WqKESNRWLWmDuG2XM%3D%22%3B%7Ds%3A14%3A%22webMailOptions%22%3Ba%3A2%3A%7Bs%3A8%3A%22squirrel%22%3Bs%3A44%3A%22B73R%2B9etN7XHJC%2Fas9IBbG76FvH94HbPNPKxpT7YsTM%3D%22%3Bs%3A7%3A%22atmail6%22%3Bs%3A44%3A%22yDgz7nWbN5YjvnxwOR%2FLN2emBMs4uuLC8CJhqibx7Lk%3D%22%3B%7Ds%3A13%3A%22imgFolderPath%22%3Bs%3A44%3A%222mgbLrYmA8SqHDKRaTC4mvuJaiIN7TREVyC9hEO8e1s%3D%22%3Bs%3A12%3A%22jsFolderPath%22%3Bs%3A44%3A%22xAUGY%2FYS2pIC6vtUmOKZaHP7%2FHpXyXDdicTHevXOO%2FI%3D%22%3Bs%3A8%3A%22formPath%22%3Bs%3A44%3A%22jU1CxyPFP1my%2F5Ml%2B2%2Bq9QKvaS8S2F2X%2BfUw1eNnBTo%3D%22%3Bs%3A10%3A%22brandingVo%22%3Bs%3A44%3A%228chW03VzoINORufdk77ftC%2F7ScNycMW1J7pTMLJ%2Fqz0%3D%22%3Bs%3A5%3A%22brand%22%3Bs%3A44%3A%22Iw%2BJDhKU79BSBhnkXhYKoS%2BOFANd4x%2BTUpozo8Ig48g%3D%22%3B%7D; expires=Sun, 14-Sep-2014 00:52:29 GMT; path=/; domain=webmail.ffacp.pt
Set-Cookie: BIGipServermassenet-amen.pt-http=2409897388.20480.0000; path=/
X-Powered-By: PHP/5.2.6-1+lenny15
...6149 bytes of data.
GET / HTTP/1.1
Host: webmail.ffacp.pt
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 14 Sep 2014 00:37:28 GMT
Server: Apache
Vary: Accept-Encoding
Content-Length: 6149
Content-Type: text/html; charset=UTF-8
Set-Cookie: isEncrypted=b%3A1%3B; expires=Sun, 14-Sep-2014 00:52:29 GMT; path=/; domain=webmail.ffacp.pt
Set-Cookie: isEncrypted=b%3A1%3B; expires=Sun, 14-Sep-2014 00:52:29 GMT; path=/; domain=webmail.ffacp.pt
Set-Cookie: isEncrypted=b%3A1%3B; expires=Sun, 14-Sep-2014 00:52:29 GMT; path=/; domain=webmail.ffacp.pt
Set-Cookie: style=a%3A9%3A%7Bs%3A6%3A%22locale%22%3Bs%3A44%3A%22aHnt0lWJ2BUQRwjQBNue8XxUDMSmLEgWbgIYeqTTi8M%3D%22%3Bs%3A8%3A%22template%22%3Bs%3A44%3A%22CAK87lK2Kl3DSTPz3yjlAJsDZQhAkF9b2hWgQXhA4SQ%3D%22%3Bs%3A3%3A%22css%22%3Ba%3A4%3A%7Bi%3A0%3Bs%3A44%3A%22GfY%2Fs4omqNI%2BAdEhHeL54MzPXcA%2FRO9G5bzF%2B9I5J4c%3D%22%3Bi%3A1%3Bs%3A44%3A%22F2dMZpzO5CLPpdV7961kLGvZ8mmxvianM368m%2BwCc50%3D%22%3Bi%3A2%3Bs%3A44%3A%22DiputAfvDjw2aYWQG8Low5YmDuHw%2BIGbfUX9OAuiYNs%3D%22%3Bi%3A3%3Bs%3A44%3A%229cDHVwGUfuScceDuciJbd8s4B9WqKESNRWLWmDuG2XM%3D%22%3B%7Ds%3A14%3A%22webMailOptions%22%3Ba%3A2%3A%7Bs%3A8%3A%22squirrel%22%3Bs%3A44%3A%22B73R%2B9etN7XHJC%2Fas9IBbG76FvH94HbPNPKxpT7YsTM%3D%22%3Bs%3A7%3A%22atmail6%22%3Bs%3A44%3A%22yDgz7nWbN5YjvnxwOR%2FLN2emBMs4uuLC8CJhqibx7Lk%3D%22%3B%7Ds%3A13%3A%22imgFolderPath%22%3Bs%3A44%3A%222mgbLrYmA8SqHDKRaTC4mvuJaiIN7TREVyC9hEO8e1s%3D%22%3Bs%3A12%3A%22jsFolderPath%22%3Bs%3A44%3A%22xAUGY%2FYS2pIC6vtUmOKZaHP7%2FHpXyXDdicTHevXOO%2FI%3D%22%3Bs%3A8%3A%22formPath%22%3Bs%3A44%3A%22jU1CxyPFP1my%2F5Ml%2B2%2Bq9QKvaS8S2F2X%2BfUw1eNnBTo%3D%22%3Bs%3A10%3A%22brandingVo%22%3Bs%3A44%3A%228chW03VzoINORufdk77ftC%2F7ScNycMW1J7pTMLJ%2Fqz0%3D%22%3Bs%3A5%3A%22brand%22%3Bs%3A44%3A%22Iw%2BJDhKU79BSBhnkXhYKoS%2BOFANd4x%2BTUpozo8Ig48g%3D%22%3B%7D; expires=Sun, 14-Sep-2014 00:52:29 GMT; path=/; domain=webmail.ffacp.pt
Set-Cookie: BIGipServermassenet-amen.pt-http=2409897388.20480.0000; path=/
X-Powered-By: PHP/5.2.6-1+lenny15
...6149 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: webmail.ffacp.pt
Referer: http://www.google.com/search?q=webmail.ffacp.pt
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: webmail.ffacp.pt
Referer: http://www.google.com/search?q=webmail.ffacp.pt
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://webmail.ffacp.pt/ | 200 OK Content-Length: 6149 Content-Type: text/html | clean |
http://webmail.ffacp.pt/wam_themes/common/_js/jquery.min.js | 200 OK Content-Length: 85925 Content-Type: application/javascript | clean |
http://webmail.ffacp.pt/wam_themes/common/_js/jquery-ui.min.js | 200 OK Content-Length: 200719 Content-Type: application/javascript | clean |
http://webmail.ffacp.pt/wam_themes/common/_js/common.js | 200 OK Content-Length: 5811 Content-Type: application/javascript | clean |
http://webmail.ffacp.pt/wam_themes/custom_brand/_js/functions.js | 200 OK Content-Length: 2123 Content-Type: application/javascript | clean |
http://webmail.ffacp.pt/test404page.js | 404 Not Found Content-Length: 212 Content-Type: text/html | clean |