Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://0x07a.0x0000000a.0x00000012.0x00003/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: 0x07a.0x0000000a.0x00000012.0x00003 Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sun, 31 Aug 2014 00:49:02 GMT Location: http://66151.com Server: Microsoft-IIS/6.0 Content-Type: text/html X-Powered-By: ASP.NET X-Powered-By: PHP/5.2.5 | malicious |
Scanned pages/files
Request | Server response | Status |
http://0x07a.0x0000000a.0x00000012.0x00003/ | 200 OK Content-Length: 14480 Content-Type: text/html | clean |
http://0x07a.0x0000000a.0x00000012.0x00003/j.js | 200 OK Content-Length: 238 Content-Type: application/x-javascript | clean |
http://0x07a.0x0000000a.0x00000012.0x00003/ue6yy/ | 200 OK Content-Length: 4344 Content-Type: text/html | clean |
http://0x07a.0x0000000a.0x00000012.0x00003/test404page.js | 404 Not Found Content-Length: 23 Content-Type: text/html | clean |
http://0x07a.0x0000000a.0x00000012.0x00003/oicky/ | 200 OK Content-Length: 4344 Content-Type: text/html | clean |
http://0x07a.0x0000000a.0x00000012.0x00003/sdlej/ | 200 OK Content-Length: 23168 Content-Type: text/html | clean |
http://0x07a.0x0000000a.0x00000012.0x00003/cqslz/ | 200 OK Content-Length: 4344 Content-Type: text/html | clean |
http://0x07a.0x0000000a.0x00000012.0x00003/arj61/ | 200 OK Content-Length: 5792 Content-Type: text/html | clean |
http://0x07a.0x0000000a.0x00000012.0x00003/0qnvw/ | 200 OK Content-Length: 18824 Content-Type: text/html | clean |
http://0x07a.0x0000000a.0x00000012.0x00003/45j35/ | 200 OK Content-Length: 15928 Content-Type: text/html | clean |
http://0x07a.0x0000000a.0x00000012.0x00003/tkr81/ | 200 OK Content-Length: 33097 Content-Type: text/html | clean |
http://js.users.51.la/15237847.js | 200 OK Content-Length: 1981 Content-Type: application/x-javascript | clean |
http://0x07a.0x0000000a.0x00000012.0x00003/ri343/ | 200 OK Content-Length: 32014 Content-Type: text/html | clean |
http://0x07a.0x0000000a.0x00000012.0x00003/160xw/ | 200 OK Content-Length: 11584 Content-Type: text/html | clean |
http://0x07a.0x0000000a.0x00000012.0x00003/pm7bs/ | 200 OK Content-Length: 32562 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=0x07a.0x0000000a.0x00000012.0x00003
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://0x07a.0x0000000a.0x00000012.0x00003/
Result: 0x07a.0x0000000a.0x00000012.0x00003 is not infected or malware details are not published yet.
Result: 0x07a.0x0000000a.0x00000012.0x00003 is not infected or malware details are not published yet.