Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=ww35.armtrak.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://ww35.armtrak.com/ | HTTP/1.1 302 Found Connection: Keep-Alive Date: Sun, 25 Jan 2015 16:29:34 GMT Location: http://www.seektoexplore.com/?dn=armtrak.com&pid=7POO0ORN4 Server: Apache Vary: Accept-Encoding,User-Agent Content-Length: 0 Content-Type: text/html; charset=UTF-8 Keep-Alive: timeout=5, max=110 Set-Cookie: gvc=922vr1697489746618486; expires=Fri, 24-Jan-2020 16:29:34 GMT; path=/; domain=ww35.armtrak.com; httponly | clean |
http://www.seektoexplore.com/?dn=armtrak.com&pid=7poo0orn4 | 200 OK Content-Length: 2421 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: armtrak.com <!--
top.location="http://www.seektoexplore.com/?dn=armtrak.com&fp=xU1VZ6h1r22ifiRomxOxJjdK6CWNWfbTIeFDuy5QnJxHLzd%2BEPcb2L3ZPdBTjJJzpjEBRxcrzTnYlXqsKWJtcA%3D%3D&prvtof=UbEMZ8a7MAEJH5RJ1wDfr4EOKlLpxK3QA9lSkgCKDC4%3D&poru=e%2BPtwR6fa7X19AaHUYdj6MDKkrPbpUzOZkkCaij96YyK9r3z1Lf6Wl%2FFMUSz6qD%2FtPYOWXDcQ2IMWXYtLnI0rYk23RLNEfpOoAo8K1mABzQ%3D&cifr=1&"; /* --> <script type="text/javascript"> <!-- dimensionUpdated = 0; function applyFrameKiller() ...[2260 bytes skipped]... | ||
http://www.seektoexplore.com/?dn=armtrak.com&fp=xU1VZ6h1r22ifiRomxOxJjdK6CWNWfbTIeFDuy5QnJxHLzd%2BEPcb2L3ZPdBTjJJzpjEBRxcrzTnYlXqsKWJtcA%3D%3D&prvtof=0ZlqU9egXEAFH0r47HIh9eZ97CX2FuT9NA42G9f0nRc%3D&poru=YGhgOntpsxBDbXRfA5hsfumBqUS%2BIb9Tp2MMU9aHLPW3GlkIjBYMixycmzaxtO%2BtRnJxq37FEuLP%2BsHCd7HxwhogMbpvRS2dTHmHZLCGklM%3D& | 200 OK Content-Length: 271 Content-Type: text/html | clean |
http://www.seektoexplore.com/test404page.js | 200 OK Content-Length: 272 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: ww35.armtrak.com
Result:
HTTP/1.1 302 Found
Connection: Keep-Alive
Date: Sun, 25 Jan 2015 16:29:34 GMT
Location: http://www.seektoexplore.com/?dn=armtrak.com&pid=7POO0ORN4
Server: Apache
Vary: Accept-Encoding,User-Agent
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Keep-Alive: timeout=5, max=110
Set-Cookie: gvc=922vr1697489746618486; expires=Fri, 24-Jan-2020 16:29:34 GMT; path=/; domain=ww35.armtrak.com; httponly
...0 bytes of data.
GET / HTTP/1.1
Host: ww35.armtrak.com
Result:
HTTP/1.1 302 Found
Connection: Keep-Alive
Date: Sun, 25 Jan 2015 16:29:34 GMT
Location: http://www.seektoexplore.com/?dn=armtrak.com&pid=7POO0ORN4
Server: Apache
Vary: Accept-Encoding,User-Agent
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Keep-Alive: timeout=5, max=110
Set-Cookie: gvc=922vr1697489746618486; expires=Fri, 24-Jan-2020 16:29:34 GMT; path=/; domain=ww35.armtrak.com; httponly
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: ww35.armtrak.com
Referer: http://www.google.com/search?q=ww35.armtrak.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: ww35.armtrak.com
Referer: http://www.google.com/search?q=ww35.armtrak.com
Result:
The result is similar to the first query. There are no suspicious redirects found.