Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://122.0x000000a.0x000000000039.0x00000000007/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: 122.0x000000a.0x000000000039.0x00000000007 Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sun, 31 Aug 2014 04:53:16 GMT Location: http://66151.com Server: Microsoft-IIS/6.0 Content-Type: text/html X-Powered-By: ASP.NET X-Powered-By: PHP/5.2.5 | malicious |
Scanned pages/files
Request | Server response | Status |
http://122.0x000000a.0x000000000039.0x00000000007/ | 200 OK Content-Length: 17376 Content-Type: text/html | clean |
http://122.0x000000a.0x000000000039.0x00000000007/j.js | 200 OK Content-Length: 238 Content-Type: application/x-javascript | clean |
http://122.0x000000a.0x000000000039.0x00000000007/vj2w6/ | 200 OK Content-Length: 27512 Content-Type: text/html | clean |
http://122.0x000000a.0x000000000039.0x00000000007/pnsj5/ | 200 OK Content-Length: 2896 Content-Type: text/html | clean |
http://122.0x000000a.0x000000000039.0x00000000007/test404page.js | 404 Not Found Content-Length: 23 Content-Type: text/html | clean |
http://122.0x000000a.0x000000000039.0x00000000007/pv2e3/ | 200 OK Content-Length: 33492 Content-Type: text/html | clean |
http://js.users.51.la/15237847.js | 200 OK Content-Length: 1981 Content-Type: application/x-javascript | clean |
http://122.0x000000a.0x000000000039.0x00000000007/2m1id/ | 200 OK Content-Length: 0 Content-Type: text/html | clean |
http://122.0x000000a.0x000000000039.0x00000000007/xa9cz/ | 200 OK Content-Length: 5792 Content-Type: text/html | clean |
http://122.0x000000a.0x000000000039.0x00000000007/gn5gj/ | 200 OK Content-Length: 17376 Content-Type: text/html | clean |
http://122.0x000000a.0x000000000039.0x00000000007/kutiw/ | 200 OK Content-Length: 32334 Content-Type: text/html | clean |
http://122.0x000000a.0x000000000039.0x00000000007/netlb/ | 200 OK Content-Length: 33357 Content-Type: text/html | clean |
http://122.0x000000a.0x000000000039.0x00000000007/0umuu/ | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://122.0x000000a.0x000000000039.0x00000000007/lbfim/ | 200 OK Content-Length: 32931 Content-Type: text/html | clean |
http://122.0x000000a.0x000000000039.0x00000000007/edxen/ | 200 OK Content-Length: 32525 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=122.0x000000a.0x000000000039.0x00000000007
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://122.0x000000a.0x000000000039.0x00000000007/
Result: 122.0x000000a.0x000000000039.0x00000000007 is not infected or malware details are not published yet.
Result: 122.0x000000a.0x000000000039.0x00000000007 is not infected or malware details are not published yet.