Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://buyvaniqa.com/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: buyvaniqa.com Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Found Cache-Control: private Date: Mon, 14 Apr 2014 09:17:25 GMT Location: http://www.hugedomains.com/domain_profile.cfm?d=buyvaniqa&e=com Server: Microsoft-IIS/8.0 Content-Length: 184 Content-Type: text/html; charset=utf-8 X-Powered-By: ASP.NET | malicious |
Scanned pages/files
Request | Server response | Status |
http://buyvaniqa.com/content/ | HTTP/1.1 302 Found Cache-Control: private Date: Mon, 14 Apr 2014 09:17:25 GMT Location: http://www.hugedomains.com/domain_profile.cfm?d=buyvaniqa&e=com Server: Microsoft-IIS/8.0 Content-Length: 184 Content-Type: text/html; charset=utf-8 X-Powered-By: ASP.NET | clean |
http://www.hugedomains.com/domain_profile.cfm?d=buyvaniqa&e=com | 200 OK Content-Length: 12977 Content-Type: text/html | clean |
http://static.HugeDomains.com/js/common.js?d=2012-02-06 | 200 OK Content-Length: 6727 Content-Type: application/x-javascript | clean |
http://buyvaniqa.com//translate.google.com/translate_a/element.js?cb=googleTranslateElementInit/ | HTTP/1.1 302 Found Cache-Control: private Date: Mon, 14 Apr 2014 09:17:27 GMT Location: http://www.hugedomains.com/domain_profile.cfm?d=buyvaniqa&e=com Server: Microsoft-IIS/8.0 Content-Length: 184 Content-Type: text/html; charset=utf-8 X-Powered-By: ASP.NET | clean |
http://www.hugedomains.com/test404page.js | HTTP/1.1 302 Found Cache-Control: private Date: Mon, 14 Apr 2014 09:14:57 GMT Location: http://www.HugeDomains.com/ Server: Microsoft-IIS/6.0 Content-Length: 193 Content-Location: http://www.HugeDomains.com/ Content-Type: text/html; charset=utf-8 Set-Cookie: BTP=1; expires=Tue, 14-Apr-15 09:14:51 GMT; domain=hugedomains.com; path=/ Set-Cookie: CFID=6150208; expires=Wed, 12-Apr-23 09:14:51 GMT; path=/; HttpOnly Set-Cookie: CFTOKEN=CE46991C-CB34-4707-805BA151CBE5BCF1; expires=Wed, 12-Apr-23 09:14:51 GMT; path=/; HttpOnly Set-Cookie: SHOPPINGCART=; expires=Wed, 14-May-14 09:14:51 GMT; path=/ Set-Cookie: REFLOC=; expires=Tue, 14-Apr-15 09:14:51 GMT; path=/ Set-Cookie: HD=AC459A3C0B2A403E828714633865FBAA097; expires=Tue, 14-Apr-15 09:14:51 GMT; path=/ Set-Cookie: FWO=vQIF2KwBCfaKGgX1oBAW6PgJWK74QUeu%2FVhbqrVEFuW9Bkq5%2B0VbquRFXrP4QUqu%2Bk9bqvNAW7m0CSvd%2FUBT3%2Fo2Wtz7NF6u%2BjBSrPFCW6r%2FRlmm%2F0As3Ig0Wqf%2B; expires=Tue, 14-Apr-15 09:14:51 GMT; path=/ Set-Cookie: PV=%2BAka%2F64QPPesAhk%3D; expires=Tue, 14-Apr-15 09:14:51 GMT; path=/ X-AspNet-Version: 4.0.30319 X-Powered-By: ASP.NET | clean |
http://www.hugedomains.com/ | HTTP/1.1 200 OK Cache-Control: private Date: Mon, 14 Apr 2014 09:14:58 GMT Accept-Ranges: bytes ETag: W/"a2a9f5e5c357cf1:29c3" Server: Microsoft-IIS/6.0 Content-Length: 22515 Content-Location: http://www.hugedomains.com/index.htm Content-Type: text/html; charset=utf-8 Last-Modified: Mon, 14 Apr 2014 09:28:30 GMT X-Powered-By: ASP.NET | clean |
http://www.hugedomains.com/index.htm | 200 OK Content-Length: 22381 Content-Type: text/html | clean |
http://www.statcounter.com/counter/counter_xhtml.js | 200 OK Content-Length: 9028 Content-Type: application/x-javascript | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=buyvaniqa.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://buyvaniqa.com/
Result: buyvaniqa.com is not infected or malware details are not published yet.
Result: buyvaniqa.com is not infected or malware details are not published yet.