Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=za1sms.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: za1sms.com
Result:
GET / HTTP/1.1
Host: za1sms.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: za1sms.com
Referer: http://www.google.com/search?q=za1sms.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: za1sms.com
Referer: http://www.google.com/search?q=za1sms.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://www.za1sms.com/ | HTTP/1.1 302 Found Connection: close Date: Wed, 28 Jan 2015 04:37:36 GMT Location: http://portalmobi.com/in.cgi?2&group=ero-vse Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 | clean |
http://portalmobi.com/in.cgi?2&group=ero-vse | HTTP/1.1 302 Found Connection: close Date: Wed, 28 Jan 2015 04:57:26 GMT Location: http://devok.net/ Server: nginx Content-Length: 281 Content-Type: text/html; charset=iso-8859-1 Set-Cookie: dmvgp=DYobADIAAgAXADZsyFT__zZsyFRAAAEAAAA2bMhUAA--; expires=Thu, 28-Jan-2016 04:57:26 GMT; path=/; domain=portalmobi.com | clean |
http://devok.net/ | 200 OK Content-Length: 7563 Content-Type: text/html | clean |
http://devok.net/test404page.js | 404 Not Found Content-Length: 286 Content-Type: text/html | clean |