Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://39normandy.fapturbo.hop.clickbank.net/hop/?CBRehoppp2=http%3A%2F%2Fwww.fapturbo.com%3Fhop%3D39normandy&hstr=1412783325272%7C39normandy%7C%7Cd3d2e75dzc%7Cfapturbo&code=%7B0%7D&key=02AC42F7&parms=&s=default&ds=0 (imitation of visitor from search engine) GET /hop/?CBRehoppp2=http%3A%2F%2Fwww.fapturbo.com%3Fhop%3D39normandy&hstr=1412783325272%7C39normandy%7C%7Cd3d2e75dzc%7Cfapturbo&code=%7B0%7D&key=02AC42F7&parms=&s=default&ds=0 HTTP/1.1 Host: 39normandy.fapturbo.hop.clickbank.net Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 301 Moved Permanently Cache-Control: no-store Connection: close Date: Wed, 08 Oct 2014 15:48:45 GMT Pragma: no-cache Location: http://www.fapturbo.com?hop=39normandy Server: Apache/2.2.29 (FreeBSD) mod_jk/1.2.40 mod_ssl/2.2.29 OpenSSL/0.9.8y Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html;charset=UTF-8 Expires: 0 P3P: CP="ADM OUR IND COM" | suspicious |
URL: http://www.fapturbo.com?hop=39normandy (imitation of visitor from search engine) GET / HTTP/1.1 Host: www.fapturbo.com?hop=39normandy Referer: http://www.google.com/search?q=redirect+check2 | HTTP/1.1 302 Found Cache-Control: no-cache, no-store, must-revalidate, max-age=0 Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Wed, 08 Oct 2014 15:48:42 GMT Pragma: no-cache Location: http://fapturbo2.com/ Server: LiteSpeed Content-Length: 0 Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=dc2babaf6853918bfc2881cb84eb9641; path=/ X-Powered-By: PHP/5.3.28 | suspicious |
Scanned pages/files
Request | Server response | Status |
http://39normandy.fapturbo.hop.clickbank.net/ | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://39normandy.fapturbo.hop.clickbank.net/test404page.js | HTTP/1.1 301 Moved Permanently Cache-Control: no-store Connection: close Date: Wed, 08 Oct 2014 15:48:50 GMT Pragma: no-cache Location: http://39normandy.fapturbo.hop.clickbank.net/hop/test404page.js?CBRehoppp2=http%3A%2F%2Fwww.fapturbo.com%3Fhop%3D39normandy&hstr=1412783330257%7C39normandy%7C%7C4sq48qeg28%7Cfapturbo&code=%7B0%7D&key=C0904F00&parms=&s=default&ds=0 Server: Apache/2.2.29 (FreeBSD) mod_jk/1.2.40 mod_ssl/2.2.29 OpenSSL/0.9.8y Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html;charset=UTF-8 Expires: 0 P3P: CP="ADM OUR IND COM" Set-Cookie: p=01.A128E03F3603A0D62D8AAC621CE98CE3AC4F63FC58C55B68EC9DB6D9736824C245983CB0E00FC34936730BFD30B5B250C7F81FC7; Domain=.clickbank.net; Expires=Mon, 06-Apr-2015 15:48:50 GMT; Path=/ Set-Cookie: q=01.0B94C768563EFBBEC6AA2956A553AC98EDF920059325C138183537BCF4A4930F62E2DB7E8A2267274C2DD359E0D106DF5DB054D2; Domain=.clickbank.net; Expires=Mon, 07-Oct-2019 15:48:50 GMT; Path=/ | clean |
http://39normandy.fapturbo.hop.clickbank.net/hop/test404page.js?cbrehoppp2=http%3a%2f%2fwww.fapturbo.com%3fhop%3d39normandy&hstr=1412783330257%7c39normandy%7c%7c4sq48qeg28%7cfapturbo&code=%7b0%7d&key=c0904f00&parms=&s=default&ds=0 | HTTP/1.1 301 Moved Permanently Cache-Control: no-store Connection: close Date: Wed, 08 Oct 2014 15:48:50 GMT Pragma: no-cache Location: http://39normandy.fapturbo.hop.clickbank.net/hop/test404page.js?CBRehoppp2=http%3A%2F%2Fwww.fapturbo.com%3Fhop%3D39normandy&hstr=1412783330533%7C39normandy%7C%7C4sq48leg28%7Cfapturbo&code=%7B%7D&key=84A5EA43&parms=cbrehoppp2%3Dhttp%253a%252f%252fwww.fapturbo.com%253fhop%253d39normandy%26hstr%3D1412783330257%257c39normandy%257c%257c4sq48qeg28%257cfapturbo%26code%3D%257b0%257d%26key%3Dc0904f00%26parms%3D%26ds%3D0&s=default&ds=0 Server: Apache/2.2.29 (FreeBSD) mod_jk/1.2.40 mod_ssl/2.2.29 OpenSSL/0.9.8y Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html;charset=UTF-8 Expires: 0 P3P: CP="ADM OUR IND COM" Set-Cookie: p=01.5798983CB232DDAFD3838F5CAE7CB1A1A8A28E024E5DBCF34A6246DA51FCB51CCEB6AB74009F3E8C22C5CADE86DE9099B42C7788; Domain=.clickbank.net; Expires=Mon, 06-Apr-2015 15:48:50 GMT; Path=/ Set-Cookie: q=01.4C27D5D51A668440A110B6C4B3BBF567766178844F7288BB9A75A4362FDF43A0173593A455F4E52825BC9FB8933B1BB19F206053; Domain=.clickbank.net; Expires=Mon, 07-Oct-2019 15:48:50 GMT; Path=/ | clean |
http://39normandy.fapturbo.hop.clickbank.net/hop/test404page.js?cbrehoppp2=http%3a%2f%2fwww.fapturbo.com%3fhop%3d39normandy&hstr=1412783330533%7c39normandy%7c%7c4sq48leg28%7cfapturbo&code=%7b%7d&key=84a5ea43&parms=cbrehoppp2%3dhttp%253a%252f%252fwww.fapturbo.com%253fhop%253d39normandy%26hstr%3d1412783330257%257c39normandy%257c%257c4sq48qeg28%257cfapturbo%26code%3d%257b0%257d%26key%3dc0904f00%26parms%3d%26ds%3d0&s=default&ds=0 | HTTP/1.1 301 Moved Permanently Cache-Control: no-store Connection: close Date: Wed, 08 Oct 2014 15:48:50 GMT Pragma: no-cache Location: http://39normandy.fapturbo.hop.clickbank.net/hop/test404page.js?CBRehoppp2=http%3A%2F%2Fwww.fapturbo.com%3Fhop%3D39normandy&hstr=1412783330806%7C39normandy%7C%7Cd3d2e73hzc%7Cfapturbo&code=%7B%7D&key=315C0363&parms=cbrehoppp2%3Dhttp%253a%252f%252fwww.fapturbo.com%253fhop%253d39normandy%26hstr%3D1412783330533%257c39normandy%257c%257c4sq48leg28%257cfapturbo%26code%3D%257b%257d%26key%3D84a5ea43%26parms%3Dcbrehoppp2%253dhttp%25253a%25252f%25252fwww.fapturbo.com%25253fhop%25253d39normandy%2526hstr%253d1412783330257%25257c39normandy%25257c%25257c4sq48qeg28%25257cfapturbo%2526code%253d%25257b0%25257d%2526key%253dc0904f00%2526parms%253d%2526ds%253d0%26ds%3D0&s=default&ds=0 Server: Apache/2.2.29 (FreeBSD) mod_jk/1.2.40 mod_ssl/2.2.29 OpenSSL/0.9.8y Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html;charset=UTF-8 Expires: 0 P3P: CP="ADM OUR IND COM" Set-Cookie: p=01.E628F7DBEE4E13ABE6A0CD33D8E0B10B95C2A8DE6A094BFA1084B8CB5E8A5F4F8A7775DCDA747C267C2D83A4B003648802D7D135; Domain=.clickbank.net; Expires=Mon, 06-Apr-2015 15:48:50 GMT; Path=/ Set-Cookie: q=01.87BFCBD1BE57118C863FC424860C701310C4913535C14AA5728AB6167C43CD02AD833CD0EC7580D81BE8AA8B477DEEE0F07ED8E0; Domain=.clickbank.net; Expires=Mon, 07-Oct-2019 15:48:50 GMT; Path=/ | clean |
http://39normandy.fapturbo.hop.clickbank.net/hop/test404page.js?cbrehoppp2=http%3a%2f%2fwww.fapturbo.com%3fhop%3d39normandy&hstr=1412783330806%7c39normandy%7c%7cd3d2e73hzc%7cfapturbo&code=%7b%7d&key=315c0363&parms=cbrehoppp2%3dhttp%253a%252f%252fwww.fapturbo.com%253fhop%253d39normandy%26hstr%3d1412783330533%257c39normandy%257c%257c4sq48leg28%257cfapturbo%26code%3d%257b%257d%26key%3d84a5ea43%26parm <span>...272 symbols skipped</span> | HTTP/1.1 301 Moved Permanently Cache-Control: no-store Connection: close Date: Wed, 08 Oct 2014 15:48:51 GMT Pragma: no-cache Location: http://39normandy.fapturbo.hop.clickbank.net/hop/test404page.js?CBRehoppp2=http%3A%2F%2Fwww.fapturbo.com%3Fhop%3D39normandy&hstr=1412783331198%7C39normandy%7C%7Cd3d2e72qzc%7Cfapturbo&code=%7B%7D&key=60CAA09E&parms=cbrehoppp2%3Dhttp%253a%252f%252fwww.fapturbo.com%253fhop%253d39normandy%26hstr%3D1412783330806%257c39normandy%257c%257cd3d2e73hzc%257cfapturbo%26code%3D%257b%257d%26key%3D315c0363%26parms%3Dcbrehoppp2%253dhttp%25253a%25252f%25252fwww.fapturbo.com%25253fhop%25253d39normandy%2526hstr%253d1412783330533%25257c39normandy%25257c%25257c4sq48leg28%25257cfapturbo%2526code%253d%25257b%25257d%2526key%253d84a5ea43%2526parms%253dcbrehoppp2%25253dhttp%2525253a%2525252f%2525252fwww.fapturbo.com%2525253fhop%2525253d39normandy%252526hstr%25253d1412783330257%2525257c39normandy%2525257c%2525257c4sq48qeg28%2525257cfapturbo%252526code%25253d%2525257b0%2525257d%252526key%25253dc0904f00%252526parms%25253d%252526ds%25253d0%2526ds%253d0%26ds%3D0&s=default&ds=0 Server: Apache/2.2.29 (FreeBSD) mod_jk/1.2.40 mod_ssl/2.2.29 OpenSSL/0.9.8y Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html;charset=UTF-8 Expires: 0 P3P: CP="ADM OUR IND COM" Set-Cookie: p=01.5A7C46E2D5C809475E876CE39260083A8C9CA48C4BA2ABBDAB1C6C8BC7FF03366D1BDC1BAAE775A054134B10EB3B18F8913D4943; Domain=.clickbank.net; Expires=Mon, 06-Apr-2015 15:48:51 GMT; Path=/ Set-Cookie: q=01.45F50E5764707BF8666779F5AC98A14414A696DF0CF93ADB1E5614719F46E4ECA31C36238BB3F50C44783E30AA04DDD111E7E524; Domain=.clickbank.net; Expires=Mon, 07-Oct-2019 15:48:51 GMT; Path=/ | clean |
http://39normandy.fapturbo.hop.clickbank.net/hop/test404page.js?cbrehoppp2=http%3a%2f%2fwww.fapturbo.com%3fhop%3d39normandy&hstr=1412783331198%7c39normandy%7c%7cd3d2e72qzc%7cfapturbo&code=%7b%7d&key=60caa09e&parms=cbrehoppp2%3dhttp%253a%252f%252fwww.fapturbo.com%253fhop%253d39normandy%26hstr%3d1412783330806%257c39normandy%257c%257cd3d2e73hzc%257cfapturbo%26code%3d%257b%257d%26key%3d315c0363%26parm <span>...559 symbols skipped</span> | HTTP/1.1 301 Moved Permanently Cache-Control: no-store Connection: close Date: Wed, 08 Oct 2014 15:48:51 GMT Pragma: no-cache Location: http://39normandy.fapturbo.hop.clickbank.net/hop/test404page.js?CBRehoppp2=http%3A%2F%2Fwww.fapturbo.com%3Fhop%3D39normandy&hstr=1412783331476%7C39normandy%7C%7Cd3d2e7hqzc%7Cfapturbo&code=%7B%7D&key=F1BB7C82&parms=cbrehoppp2%3Dhttp%253a%252f%252fwww.fapturbo.com%253fhop%253d39normandy%26hstr%3D1412783331198%257c39normandy%257c%257cd3d2e72qzc%257cfapturbo%26code%3D%257b%257d%26key%3D60caa09e%26parms%3Dcbrehoppp2%253dhttp%25253a%25252f%25252fwww.fapturbo.com%25253fhop%25253d39normandy%2526hstr%253d1412783330806%25257c39normandy%25257c%25257cd3d2e73hzc%25257cfapturbo%2526code%253d%25257b%25257d%2526key%253d315c0363%2526parms%253dcbrehoppp2%25253dhttp%2525253a%2525252f%2525252fwww.fapturbo.com%2525253fhop%2525253d39normandy%252526hstr%25253d1412783330533%2525257c39normandy%2525257c%2525257c4sq48leg28%2525257cfapturbo%252526code%25253d%2525257b%2525257d%252526key%25253d84a5ea43%252526parms%25253dcbrehoppp2%2525253dhttp%252525253a%252525252f%252525252fwww.fapturbo.com%252525253fhop%252525253d39normandy%25252526hstr%2525253d1412783330257%252525257c39normandy%252525257c%252525257c4sq48qeg28%252525257cfapturbo%25252526code%2525253d%252525257b0%252525257d%25252526key%2525253dc0904f00%25252526parms%2525253d%25252526ds%2525253d0%252526ds%25253d0%2526ds%253d0%26ds%3D0&s=default&ds=0 Server: Apache/2.2.29 (FreeBSD) mod_jk/1.2.40 mod_ssl/2.2.29 OpenSSL/0.9.8y Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html;charset=UTF-8 Expires: 0 P3P: CP="ADM OUR IND COM" Set-Cookie: p=01.F5D56B4DE80CC7D9B82E7F2FFBB34C7BC51F925FD6BF3BB6776863A27F5C42F657BB35E2F13432909486F778261DE04B3E41DBB3; Domain=.clickbank.net; Expires=Mon, 06-Apr-2015 15:48:51 GMT; Path=/ Set-Cookie: q=01.174308A09C7F74091EABF5AA193CE2381BEC0F3C7E7BC922D3CC532954CCE741ADA94C696B4792DDB47C512943BBE199D0CBACD6; Domain=.clickbank.net; Expires=Mon, 07-Oct-2019 15:48:51 GMT; Path=/ | clean |
http://39normandy.fapturbo.hop.clickbank.net/hop/test404page.js?cbrehoppp2=http%3a%2f%2fwww.fapturbo.com%3fhop%3d39normandy&hstr=1412783331476%7c39normandy%7c%7cd3d2e7hqzc%7cfapturbo&code=%7b%7d&key=f1bb7c82&parms=cbrehoppp2%3dhttp%253a%252f%252fwww.fapturbo.com%253fhop%253d39normandy%26hstr%3d1412783331198%257c39normandy%257c%257cd3d2e72qzc%257cfapturbo%26code%3d%257b%257d%26key%3d60caa09e%26parm <span>...890 symbols skipped</span> | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=39normandy.fapturbo.hop.clickbank.net
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://39normandy.fapturbo.hop.clickbank.net/
Result: 39normandy.fapturbo.hop.clickbank.net is not infected or malware details are not published yet.
Result: 39normandy.fapturbo.hop.clickbank.net is not infected or malware details are not published yet.