Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://www.369shoes.com/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: www.369shoes.com Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Found Connection: close Date: Tue, 19 Aug 2014 09:46:25 GMT Location: http://iddqd.compress.to/ Server: Apache Content-Length: 0 Content-Type: text/html X-Powered-By: PHP/5.2.16 | malicious |
Scanned pages/files
Request | Server response | Status |
http://www.369shoes.com/ | 200 OK Content-Length: 39844 Content-Type: text/html | clean |
http://www.369shoes.com/loginform.php?path=&skin=default&tempname=default/tpl_login1.htm | 200 OK Content-Length: 1721 Content-Type: text/html | clean |
http://www.369shoes.com/loginform.php?path=&skin=default&tempname=default/\"reg.php\" | 200 OK Content-Length: 652 Content-Type: text/html | clean |
http://www.369shoes.com/loginform.php?path=&skin=default&tempname=default/function.fopen | 200 OK Content-Length: 650 Content-Type: text/html | clean |
http://www.369shoes.com/test404page.js | 404 Not Found Content-Length: 278 Content-Type: text/html | clean |
http://www.369shoes.com/bbs/api/javascript.php?key=pindex | 200 OK Content-Length: 0 Content-Type: text/html | clean |
http://credentials.51honest.org/wscredit/detail.credit?action=export&credcode=NO.20000031376&identFlag=117-40&logoFlag=js | HTTP/1.1 302 Moved Temporarily Connection: close Date: Tue, 19 Aug 2014 09:44:07 GMT Location: http://ss.51honest.org/axb.credit?action=axbFlow&reUrl=http:%2F%2Fcredentials.51honest.org%2Fwscredit%2Fdetail.credit%3Faction%3Dexport%26credcode%3DNO.20000031376%26identFlag%3D117-40%26logoFlag%3Djs Server: Apache-Coyote/1.1 Content-Length: 0 | clean |
http://ss.51honest.org/axb.credit?action=axbflow&reurl=http:%2f%2fcredentials.51honest.org%2fwscredit%2fdetail.credit%3faction%3dexport%26credcode%3dno.20000031376%26identflag%3d117-40%26logoflag%3djs | 404 Not Found Content-Length: 952 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=369shoes.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://369shoes.com/
Result: 369shoes.com is not infected or malware details are not published yet.
Result: 369shoes.com is not infected or malware details are not published yet.