Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=ww5.samoa-office.de
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: ww5.samoa-office.de
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Connection: close
Date: Sat, 20 Dec 2014 21:08:25 GMT
Pragma: no-cache
Server: Apache
Vary: User-Agent,Accept-Encoding
Content-Type: text/html; charset=UTF-8
Expires: Mon, 26 Jul 1997 05:00:00 GMT
Last-Modified: Sat, 20 Dec 2014 21:08:25 GMT
Set-Cookie: tu=7e8596db858f45657bc9edd469d8a22f; expires=Tue, 31-Dec-2019 23:00:00 GMT; path=/; domain=samoa-office.de; httponly
X-Adblock-Key: MFwwDQYJKoZIhvcNAQEBBQADSwAwSAJBANnylWw2vLY4hUn9w06zQKbhKBfvjFUCsdFlb6TdQhxb9RXWXuI4t31c+o8fYOv/s8q1LGPga3DE1L/tHU4LENMCAwEAAQ==_fPOYmVx06mYc6Px9+JxZzYBYwaFhIb+Ly2zMyGsPmHjwF0oPj0UpLPQ9ZtbzJJIhFehWhYifm8tqDhNlK0PiIQ==
X-Cache: MISS from 931531
X-Powered-By: PHP/5.3.3-7+squeeze19
GET / HTTP/1.1
Host: ww5.samoa-office.de
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Connection: close
Date: Sat, 20 Dec 2014 21:08:25 GMT
Pragma: no-cache
Server: Apache
Vary: User-Agent,Accept-Encoding
Content-Type: text/html; charset=UTF-8
Expires: Mon, 26 Jul 1997 05:00:00 GMT
Last-Modified: Sat, 20 Dec 2014 21:08:25 GMT
Set-Cookie: tu=7e8596db858f45657bc9edd469d8a22f; expires=Tue, 31-Dec-2019 23:00:00 GMT; path=/; domain=samoa-office.de; httponly
X-Adblock-Key: MFwwDQYJKoZIhvcNAQEBBQADSwAwSAJBANnylWw2vLY4hUn9w06zQKbhKBfvjFUCsdFlb6TdQhxb9RXWXuI4t31c+o8fYOv/s8q1LGPga3DE1L/tHU4LENMCAwEAAQ==_fPOYmVx06mYc6Px9+JxZzYBYwaFhIb+Ly2zMyGsPmHjwF0oPj0UpLPQ9ZtbzJJIhFehWhYifm8tqDhNlK0PiIQ==
X-Cache: MISS from 931531
X-Powered-By: PHP/5.3.3-7+squeeze19
Second query (visit from search engine):
GET / HTTP/1.1
Host: ww5.samoa-office.de
Referer: http://www.google.com/search?q=ww5.samoa-office.de
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: ww5.samoa-office.de
Referer: http://www.google.com/search?q=ww5.samoa-office.de
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://ww5.samoa-office.de/ | 200 OK Content-Length: 30111 Content-Type: text/html | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js | 200 OK Content-Length: 72174 Content-Type: text/javascript | clean |
http://ww5.samoa-office.de/search/redirect.php?f=http%3A%2F%2Fjmpdirect01.com%2Fctrd%2Fclick%2Fnewjump1.do%3Faffiliate%3D45549%26subid%3D507371%26terms%3Dsamoa-office%26ai%3Dng2CZ3SkFPB65VMXNN0sGnXPROTdyDWIs7LLavPTI5wViwt7Z4z076koQyx4QwFn5upIwiU-O_WmQnDW4ws4e4APZ9eJC_lSiubnJYNC07UFJdWKSvDPS0K3v4-vDLEjeK-8lOZWTxF4Yjk4J_6TsrlWCizye3DEKJv0ZpbDlRfinAJwkqo1uIZqmpiqur9-VS-72O3wgI6XFLyXF-egPmvGDdrW8LxuSB <span>...820 symbols skipped</span> | HTTP/1.1 302 Moved Temporarily Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Connection: close Date: Sat, 20 Dec 2014 21:08:27 GMT Pragma: no-cache Location: http://ww5.samoa-office.de/search/tcerider.php?f=http%3A%2F%2Fjmpdirect01.com%2Fctrd%2Fclick%2Fnewjump1.do%3Faffiliate%3D45549%26subid%3D507371%26terms%3Dsamoa-office%26ai%3Dng2CZ3SkFPB65VMXNN0sGnXPROTdyDWIs7LLavPTI5wViwt7Z4z076koQyx4QwFn5upIwiU-O_WmQnDW4ws4e4APZ9eJC_lSiubnJYNC07UFJdWKSvDPS0K3v4-vDLEjeK-8lOZWTxF4Yjk4J_6TsrlWCizye3DEKJv0ZpbDlRfinAJwkqo1uIZqmpiqur9-VS-72O3wgI6XFLyXF-egPmvGDdrW8LxuSB3iKT8DhkTef5mkIhuFOuUmT9qL_1QUdr8c1Q6-bzlHoqmMtCB1L88vIyjHWPYsmp7dP6a6txIsgAD378POIOpxkBX0u6uYqUSgptjOJdvN4cDfA2VPQx4tfrYYK1GJ_NKuUUIAF0hTaqpvvYALfBmN3bxA5TDjL7gbOrvvADCOBRDQJC0Fn2zbGm7fiviJjhq0_Y5kHYGRN3zPjdSqaj36udhbWouT%26version%3D1.2&v=MGNjODljMzFmZDhlOWJhNjBjNjUwMDRhOWY0NzYxMTcJMQl3dzUuc2Ftb2Etb2ZmaWNlLmRlNTQ5NWU1NDliNDRhMDUuODYyMDM1ODIJd3c1LnNhbW9hLW9mZmljZS5kZTU0OTVlNTQ5YjQ1NmQ2LjMzNzY4Njc1CTE0MTkxMDk3MDYJYWRfN18w&l=NAlBRFMJNDY2YjU0MDRhZTM0NDU5OWNjOWNhMDJhZDk0YzNiOTAJMC4wMDAzCTAJMTMJCTMxCTIJMQkwCTk0MTFiNGQzM2Q2OWMxOTI5NGViYzU1M2RiZDJhNGZlCWh0dHA6Ly92ZXJpZmllZHVwZGF0ZXMudGVjaG5vbG9neQkyMDU1ODA4NTcJYwk1NDA3MzA4NQkJc2Ftb2Etb2ZmaWNlCTEwMDYJNwkyMAkyNQkxNDE5MTA5NzA2CTAuMDAwNglOCTAJMAkwCQkwLjAwMDMJCQkJCQl3dzUuc2Ftb2Etb2ZmaWNlLmRlNTQ5NWU1NDliNDRhMDUuODYyMDM1ODIJMC4wMDA2CTAJCTEJMTQ3OAkxMjA1CTgwMzYwMzQ1CQ%3D%3D Server: Apache Vary: User-Agent,Accept-Encoding Content-Length: 0 Content-Type: text/html Expires: Mon, 26 Jul 1997 05:00:00 GMT Last-Modified: Sat, 20 Dec 2014 21:08:27 GMT X-Cache: MISS from 931531 X-Powered-By: PHP/5.3.3-7+squeeze19 | clean |
http://ww5.samoa-office.de/search/tcerider.php?f=http%3a%2f%2fjmpdirect01.com%2fctrd%2fclick%2fnewjump1.do%3faffiliate%3d45549%26subid%3d507371%26terms%3dsamoa-office%26ai%3dng2cz3skfpb65vmxnn0sgnxprotdydwis7llavpti5wviwt7z4z076koqyx4qwfn5upiwiu-o_wmqndw4ws4e4apz9ejc_lsiubnjync07ufjdwksvdps0k3v4-vdlejek-8lozwtxf4yjk4j_6tsrlwcizye3dekjv0zpbdlrfinajwkqo1uizqmpiqur9-vs-72o3wgi6xflyxf-egpmvgddrw8lxusb <span>...820 symbols skipped</span> | 200 OK Content-Length: 0 Content-Type: text/html | clean |
http://ww5.samoa-office.de/test404page.js | 200 OK Content-Length: 22912 Content-Type: text/html | clean |
http://ww5.samoa-office.de/search/redirect.php?f=http%3A%2F%2Fjmpdirect01.com%2Fctrd%2Fclick%2Fnewjump1.do%3Faffiliate%3D45549%26subid%3D507371%26terms%3Dsamoa-office%26ai%3DWSQExGF2UIg7iW82j4Ql_4d69UQj85jhRDqUbtxugAO54awTOnoEZIzQiPbolO6zDw_Y1CeZG6Tc8ISuM1JG0MhEM6yjYFI8d5430uoRQBA_erlVooe7OW6CGZX4p8v3wDUg9iiY8JkyTnr4OdLAb4c37MXcONaYTmdTdN4IoTrG9uXlX2BhEA0y7v6mP0IRZxNRUbjl8cwl2B3aFHHovxIGidSGvgUBz3 <span>...820 symbols skipped</span> | HTTP/1.1 302 Moved Temporarily Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Connection: close Date: Sat, 20 Dec 2014 21:08:28 GMT Pragma: no-cache Location: http://ww5.samoa-office.de/search/tcerider.php?f=http%3A%2F%2Fjmpdirect01.com%2Fctrd%2Fclick%2Fnewjump1.do%3Faffiliate%3D45549%26subid%3D507371%26terms%3Dsamoa-office%26ai%3DWSQExGF2UIg7iW82j4Ql_4d69UQj85jhRDqUbtxugAO54awTOnoEZIzQiPbolO6zDw_Y1CeZG6Tc8ISuM1JG0MhEM6yjYFI8d5430uoRQBA_erlVooe7OW6CGZX4p8v3wDUg9iiY8JkyTnr4OdLAb4c37MXcONaYTmdTdN4IoTrG9uXlX2BhEA0y7v6mP0IRZxNRUbjl8cwl2B3aFHHovxIGidSGvgUBz33p2TQ8dxHrTFUGxdZ7rfKsnBLtlXfgE6MRQkeqVjKAPl7yvE5ngNVGV3WbkI1lDFg15U3kM9_XaYoWNUpwd49oCdsDQKM571FcaHPh7e1zNzgu51Qy1iNGrool4IQsXcrFp6VtR10Cfqjt-DeyCtoaLEbe4wGAoW33XCy0ZiwIxbJletbfqSqyXZg3Pg7-WZx8q1wO1DWIS0kuAeYKIG5mBpju5w2Q%26version%3D1.2&v=NDc1ZGNkZmQ2NjMyMGE4OWNkNmVhMmMxZjM0MzgzMmEJMQl3dzUuc2Ftb2Etb2ZmaWNlLmRlNTQ5NWU1NDliNDRhMDUuODYyMDM1ODIJd3c1LnNhbW9hLW9mZmljZS5kZTU0OTVlNTQ5YjQ1NmQ2LjMzNzY4Njc1CTE0MTkxMDk3MDYJYWRfN18x&l=NAlBRFMJODUyMjUzNDAyZGJlNDExYjQzNTlmODFiMWUzZmM3NWUJMC4wMDAzCTAJMTMJCTMxCTIJMgkwCTYwOGNjMDY2ZTI0OWQxNzExZDhiODM0NjRmYTE1NmEwCWh0dHA6Ly92ZXJpZmllZHVwZGF0ZXMudGVjaG5vbG9neQkyMDU1ODA4NTcJYwk1NDA3MzA4NQkJc2Ftb2Etb2ZmaWNlCTEwMDYJNwkyMAkyNQkxNDE5MTA5NzA2CTAuMDAwNglOCTAJMAkwCQkwLjAwMDMJCQkJCQl3dzUuc2Ftb2Etb2ZmaWNlLmRlNTQ5NWU1NDliNDRhMDUuODYyMDM1ODIJMC4wMDA2CTAJCTEJMTQ3OAkxMjA1CTgwMzYwMzQ1CQ%3D%3D Server: Apache Vary: User-Agent,Accept-Encoding Content-Length: 0 Content-Type: text/html Expires: Mon, 26 Jul 1997 05:00:00 GMT Last-Modified: Sat, 20 Dec 2014 21:08:28 GMT X-Cache: MISS from 051375 X-Powered-By: PHP/5.3.3-7+squeeze19 | clean |
http://ww5.samoa-office.de/search/tcerider.php?f=http%3a%2f%2fjmpdirect01.com%2fctrd%2fclick%2fnewjump1.do%3faffiliate%3d45549%26subid%3d507371%26terms%3dsamoa-office%26ai%3dwsqexgf2uig7iw82j4ql_4d69uqj85jhrdqubtxugao54awtonoezizqipbolo6zdw_y1cezg6tc8isum1jg0mhem6yjyfi8d5430uorqba_erlvooe7ow6cgzx4p8v3wdug9iiy8jkytnr4odlab4c37mxconaytmdtdn4iotrg9uxlx2bhea0y7v6mp0irzxnrubjl8cwl2b3afhhovxigidsgvgubz3 <span>...820 symbols skipped</span> | 200 OK Content-Length: 0 Content-Type: text/html | clean |