Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=curtindoimagensnofacebook.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://curtindoimagensnofacebook.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: mathewcallinghamassociates.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sun, 11 May 2014 03:21:04 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=848bdb7fa2d66d3e24e814790048caf2; path=/
X-Powered-By: PHP/5.4.27
GET / HTTP/1.1
Host: mathewcallinghamassociates.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Sun, 11 May 2014 03:21:04 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=848bdb7fa2d66d3e24e814790048caf2; path=/
X-Powered-By: PHP/5.4.27
Second query (visit from search engine):
GET / HTTP/1.1
Host: mathewcallinghamassociates.com
Referer: http://www.google.com/search?q=mathewcallinghamassociates.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: mathewcallinghamassociates.com
Referer: http://www.google.com/search?q=mathewcallinghamassociates.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://curtindoimagensnofacebook.com/ | 200 OK Content-Length: 13895 Content-Type: text/html | clean |
http://widgets.amung.us/small.js | 200 OK Content-Length: 4801 Content-Type: application/x-javascript | clean |
http://curtindoimagensnofacebook.com/hot | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Tue, 15 Apr 2014 22:23:07 GMT Pragma: no-cache Location: http://premioverde.com Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Pingback: http://curtindoimagensnofacebook.com/xmlrpc.php | clean |
http://premioverde.com/ | 200 OK Content-Length: 13596 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: curtindoimagensnofacebook.com <!DOCTYPE html> <html> <head prefix="og: http://ogp.me/ns# fb: http://ogp.me/ns/fb#"> <meta charset="utf-8" /> <title>Os melhores videos da internet !!!!!!</title> <link href="http://curtindoimagensnofacebook.com/videos/videos.css" rel="stylesheet" /> <script>(function(){ window._fbds = window._fbds || {}; _fbds.pixelId = 1424415281133398; var fbds = document.createElement('script'); fbds.async = true; fbds.src = '//connect.facebook.net/en_US/fbds.js'; var s = document.getElementsByTagName('script')[0]; s.parentNode.insertBefore(fbds, s); })(); window._fbq = window._fbq || []; ...[16335 bytes skipped]... | ||
http://premioverde.com/hot | HTTP/1.1 302 Found Connection: close Date: Tue, 15 Apr 2014 22:23:08 GMT Location: http://curtindoimagensnofacebook.com/videos/marimar Server: Apache Vary: Accept-Encoding Content-Length: 300 Content-Type: text/html; charset=iso-8859-1 | malicious |
http://curtindoimagensnofacebook.com/videos/marimar | HTTP/1.1 301 Moved Permanently Connection: close Date: Tue, 15 Apr 2014 22:23:09 GMT Location: http://curtindoimagensnofacebook.com/videos/marimar/ Server: Apache Content-Length: 339 Content-Type: text/html; charset=iso-8859-1 | clean |
http://curtindoimagensnofacebook.com/videos/marimar/ | 200 OK Content-Length: 5235 Content-Type: text/html | clean |
http://premioverde.com/newplayer.js | 200 OK Content-Length: 155552 Content-Type: application/javascript | clean |
http://premioverde.com//pagead2.googlesyndication.com/pagead/js/adsbygoogle.js/ | HTTP/1.1 302 Found Connection: close Date: Tue, 15 Apr 2014 22:23:11 GMT Location: http://curtindoimagensnofacebook.com/videos/marimar Server: Apache Vary: Accept-Encoding Content-Length: 300 Content-Type: text/html; charset=iso-8859-1 | malicious |
http://curtindoimagensnofacebook.com/test404page.js | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Tue, 15 Apr 2014 22:23:12 GMT Pragma: no-cache Location: http://premioverde.com Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Pingback: http://curtindoimagensnofacebook.com/xmlrpc.php | clean |
http://premioverde.com/test404page.js | HTTP/1.1 302 Found Connection: close Date: Tue, 15 Apr 2014 22:23:13 GMT Location: http://curtindoimagensnofacebook.com/videos/marimar Server: Apache Vary: Accept-Encoding Content-Length: 300 Content-Type: text/html; charset=iso-8859-1 | malicious |
http://curtindoimagensnofacebook.com/preload.html | 200 OK Content-Length: 1658 Content-Type: text/html | clean |
http://premioverde.com//s7.addthis.com/js/300/addthis_widget.js/ | HTTP/1.1 302 Found Connection: close Date: Tue, 15 Apr 2014 22:23:13 GMT Location: http://curtindoimagensnofacebook.com/videos/marimar Server: Apache Vary: Accept-Encoding Content-Length: 300 Content-Type: text/html; charset=iso-8859-1 | malicious |
http://curtindoimagensnofacebook.com/rising | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Tue, 15 Apr 2014 22:23:14 GMT Pragma: no-cache Location: http://premioverde.com Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Pingback: http://curtindoimagensnofacebook.com/xmlrpc.php | clean |
http://curtindoimagensnofacebook.com/top | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Tue, 15 Apr 2014 22:23:15 GMT Pragma: no-cache Location: http://premioverde.com Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Pingback: http://curtindoimagensnofacebook.com/xmlrpc.php | clean |
http://curtindoimagensnofacebook.com/videos/policia-americana | HTTP/1.1 301 Moved Permanently Connection: close Date: Tue, 15 Apr 2014 22:23:16 GMT Location: http://curtindoimagensnofacebook.com/videos/policia-americana/ Server: Apache Content-Length: 349 Content-Type: text/html; charset=iso-8859-1 | clean |
http://curtindoimagensnofacebook.com/videos/policia-americana/ | 200 OK Content-Length: 6783 Content-Type: text/html | malicious |
Malicious iFrame found. size: 100x80 src: http://www.curtindoimagensnofacebook.com/header/ This URL is marked by Yandex as suspicious <iframe src="http://www.curtindoimagensnofacebook.com/header/" frameborder="no" scrolling="no" width="100%" height="80"> | ||
http://curtindoimagensnofacebook.com//pagead2.googlesyndication.com/pagead/js/adsbygoogle.js/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Tue, 15 Apr 2014 22:23:17 GMT Pragma: no-cache Location: http://curtindoimagensnofacebook.com/pagead2.googlesyndication.com/pagead/js/adsbygoogle.js/ Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Pingback: http://curtindoimagensnofacebook.com/xmlrpc.php | clean |
http://curtindoimagensnofacebook.com/pagead2.googlesyndication.com/pagead/js/adsbygoogle.js/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Tue, 15 Apr 2014 22:23:18 GMT Pragma: no-cache Location: http://premioverde.com Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Pingback: http://curtindoimagensnofacebook.com/xmlrpc.php | clean |
http://curtindoimagensnofacebook.com//s7.addthis.com/js/300/addthis_widget.js/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Tue, 15 Apr 2014 22:23:20 GMT Pragma: no-cache Location: http://curtindoimagensnofacebook.com/s7.addthis.com/js/300/addthis_widget.js/ Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Pingback: http://curtindoimagensnofacebook.com/xmlrpc.php | clean |
http://curtindoimagensnofacebook.com/s7.addthis.com/js/300/addthis_widget.js/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Tue, 15 Apr 2014 22:23:22 GMT Pragma: no-cache Location: http://premioverde.com Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Pingback: http://curtindoimagensnofacebook.com/xmlrpc.php | clean |
http://curtindoimagensnofacebook.com/videos/garconete | HTTP/1.1 301 Moved Permanently Connection: close Date: Tue, 15 Apr 2014 22:23:23 GMT Location: http://curtindoimagensnofacebook.com/videos/garconete/ Server: Apache Content-Length: 341 Content-Type: text/html; charset=iso-8859-1 | clean |
http://curtindoimagensnofacebook.com/videos/garconete/ | 200 OK Content-Length: 5909 Content-Type: text/html | malicious |
Malicious iFrame found. size: 100x80 src: http://www.curtindoimagensnofacebook.com/header/ This URL is marked by Yandex as suspicious <iframe src="http://www.curtindoimagensnofacebook.com/header/" frameborder="no" scrolling="no" width="100%" height="80"> | ||
http://curtindoimagensnofacebook.com/videos/enchendo-pneu-do-carro/ | 200 OK Content-Length: 5525 Content-Type: text/html | malicious |
Malicious iFrame found. size: 100x80 src: http://www.curtindoimagensnofacebook.com/header/ This URL is marked by Yandex as suspicious <iframe src="http://www.curtindoimagensnofacebook.com/header/" frameborder="no" scrolling="no" width="100%" height="80"> | ||
http://curtindoimagensnofacebook.com/videos/lavadora-de-carros/ | 200 OK Content-Length: 6533 Content-Type: text/html | malicious |
Malicious iFrame found. size: 100x80 src: http://www.curtindoimagensnofacebook.com/header/ This URL is marked by Yandex as suspicious <iframe src="http://www.curtindoimagensnofacebook.com/header/" frameborder="no" scrolling="no" width="100%" height="80"> | ||
http://curtindoimagensnofacebook.com/videos/vendedora-de-oculos/ | 200 OK Content-Length: 5991 Content-Type: text/html | malicious |
Malicious iFrame found. size: 100x80 src: http://www.curtindoimagensnofacebook.com/header/ This URL is marked by Yandex as suspicious <iframe src="http://www.curtindoimagensnofacebook.com/header/" frameborder="no" scrolling="no" width="100%" height="80"> | ||
http://curtindoimagensnofacebook.com/videos/pegando-moedas/ | 200 OK Content-Length: 5462 Content-Type: text/html | malicious |
Malicious iFrame found. size: 100x80 src: http://www.curtindoimagensnofacebook.com/header/ This URL is marked by Yandex as suspicious <iframe src="http://www.curtindoimagensnofacebook.com/header/" frameborder="no" scrolling="no" width="100%" height="80"> | ||
http://curtindoimagensnofacebook.com/videos/perdendo-a-cabeca/ | 200 OK Content-Length: 6315 Content-Type: text/html | malicious |
Malicious iFrame found. size: 100x80 src: http://www.curtindoimagensnofacebook.com/header/ This URL is marked by Yandex as suspicious <iframe src="http://www.curtindoimagensnofacebook.com/header/" frameborder="no" scrolling="no" width="100%" height="80"> | ||
http://curtindoimagensnofacebook.com/videos/faxineira/ | 200 OK Content-Length: 5475 Content-Type: text/html | malicious |
Malicious iFrame found. size: 100x80 src: http://www.curtindoimagensnofacebook.com/header/ This URL is marked by Yandex as suspicious <iframe src="http://www.curtindoimagensnofacebook.com/header/" frameborder="no" scrolling="no" width="100%" height="80"> | ||
http://curtindoimagensnofacebook.com/videos | HTTP/1.1 301 Moved Permanently Connection: close Date: Tue, 15 Apr 2014 22:23:26 GMT Location: http://curtindoimagensnofacebook.com/videos/ Server: Apache Content-Length: 331 Content-Type: text/html; charset=iso-8859-1 | clean |
http://curtindoimagensnofacebook.com/videos/ | 200 OK Content-Length: 7878 Content-Type: text/html | clean |