Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=xn--rutasgpsllanosymontaas-3ec.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://xn--rutasgpsllanosymontaas-3ec.com/ | HTTP/1.1 200 OK Date: Tue, 20 Jan 2015 18:16:15 GMT Accept-Ranges: bytes ETag: "bee8434107d01:11f05" Server: Microsoft-IIS/6.0 Content-Length: 35407 Content-Location: http://xn--rutasgpsllanosymontaas-3ec.com/Index.html Content-Type: text/html Last-Modified: Sun, 23 Nov 2014 11:25:36 GMT X-Powered-By: PleskWin X-Powered-By: ASP.NET | clean |
http://xn--rutasgpsllanosymontaas-3ec.com/index.html | 200 OK Content-Length: 35407 Content-Type: text/html | malicious |
Page code contains blacklisted domain: mbcobretti.com <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="es" lang="es"> <title>http://www.rutasgpsllanosymontañas.com/Caminos y senderos de Sancti-Spíritus , el Campo Charro , la Sierra de Francia,Gata,las Hurdes y Batuecas</title> <head&g ...[7926 bytes skipped]... Malicious iFrame found. The same iFrame was found in 66 websites. size: 0x0 src: http://mbcobretti.com/hydra.php This URL is marked by Google as suspicious <iframe src=http://mbcobretti.com/hydra.php frameborder="0" width="0" height="0" scrolling="no" name=counter> Malicious iFrame found. size: 700x350 src: http://www.rutasgpsllanosymontañas.com/rutasgps.htm This URL is marked by Google as suspicious <iframe src="http://www.rutasgpsllanosymontañas.com/rutasgps.htm" width="700" height="350" name="santis" style="background:transparent;valign-top:0px;"> | ||
http://www.aemet.es/js/jquery.mobile.min.js | 200 OK Content-Length: 113180 Content-Type: application/javascript | clean |
http://xn--rutasgpsllanosymontaas-3ec.com//s7.addthis.com/js/300/addthis_widget.js/ | 404 Not Found Content-Length: 1818 Content-Type: text/html | clean |
http://xn--rutasgpsllanosymontaas-3ec.com/test404page.js | 404 Not Found Content-Length: 1818 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: xn--rutasgpsllanosymontaas-3ec.com
Result:
HTTP/1.1 200 OK
Date: Tue, 20 Jan 2015 18:16:15 GMT
Accept-Ranges: bytes
ETag: "bee8434107d01:11f05"
Server: Microsoft-IIS/6.0
Content-Length: 35407
Content-Location: http://xn--rutasgpsllanosymontaas-3ec.com/Index.html
Content-Type: text/html
Last-Modified: Sun, 23 Nov 2014 11:25:36 GMT
X-Powered-By: PleskWin
X-Powered-By: ASP.NET
...35407 bytes of data.
GET / HTTP/1.1
Host: xn--rutasgpsllanosymontaas-3ec.com
Result:
HTTP/1.1 200 OK
Date: Tue, 20 Jan 2015 18:16:15 GMT
Accept-Ranges: bytes
ETag: "bee8434107d01:11f05"
Server: Microsoft-IIS/6.0
Content-Length: 35407
Content-Location: http://xn--rutasgpsllanosymontaas-3ec.com/Index.html
Content-Type: text/html
Last-Modified: Sun, 23 Nov 2014 11:25:36 GMT
X-Powered-By: PleskWin
X-Powered-By: ASP.NET
...35407 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: xn--rutasgpsllanosymontaas-3ec.com
Referer: http://www.google.com/search?q=xn--rutasgpsllanosymontaas-3ec.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: xn--rutasgpsllanosymontaas-3ec.com
Referer: http://www.google.com/search?q=xn--rutasgpsllanosymontaas-3ec.com
Result:
The result is similar to the first query. There are no suspicious redirects found.