Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://d0m.eu/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: d0m.eu Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Found Connection: close Date: Thu, 25 Jun 2015 01:21:06 GMT Location: http://advidi.optimuum.com/f77d28ba2e956a1c/cd?aff_id=1808&aff_sub3=6cvuq9u5PH/ Server: cloudflare-nginx Content-Type: text/html;charset=UTF-8 CF-RAY: 1fbcda8cb19d0b02-WAW Set-Cookie: __cfduid=dc08ec886832baeb566ab06d0eb5aeca11435195266; expires=Fri, 24-Jun-16 01:21:06 GMT; path=/; domain=.d0m.eu; HttpOnly | malicious |
URL: http://advidi.optimuum.com/f77d28ba2e956a1c/cd?aff_id=1808&aff_sub3=6cvuq9u5PH/ (imitation of visitor from search engine) GET /f77d28ba2e956a1c/cd?aff_id=1808&aff_sub3=6cvuq9u5PH/ HTTP/1.1 Host: advidi.optimuum.com Referer: http://www.google.com/search?q=redirect+check2 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Thu, 25 Jun 2015 01:21:06 GMT Location: http://stuntoffer.com/?limited_offer=R40Q12UaGnLc&exit_block_type=noescape5&video=15&url=%5Bhttp%3A%2F%2Fadvidi.optimuum.com%2Fcb%2Fcb68a32a61c1c4e3%2Fcfd079406f5238932f5228ac1a192480%5D Server: nginx/1.0.15 Content-Length: 0 Content-Type: text/html;charset=utf-8 Set-Cookie: cb68a32a61c1c4e3=%5B%5B146%5D%2C%5B3130%5D%2C%5B22388%5D%5D; max-age=2592000 X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-Who: redirects-front-euw1b X-XSS-Protection: 1; mode=block | suspicious |
Scanned pages/files
Request | Server response | Status |
http://d0m.eu/ | 404 Not Found Content-Length: 4427 Content-Type: text/html | clean |
http://d0m.eu/cdn-cgi/se/javascripts/modernizr.js | 200 OK Content-Length: 7305 Content-Type: application/javascript | clean |
http://d0m.eu/. | 404 Not Found Content-Length: 4427 Content-Type: text/html | clean |
http://d0m.eu/test404page.js | 404 Not Found Content-Length: 3426 Content-Type: text/html | clean |
http://d0m.eu/wp-includes/js/jquery/jquery_gstnduzk.js | 200 OK Content-Length: 95807 Content-Type: application/javascript | clean |
http://d0m.eu/wp-includes/js/jquery/jquery-migrate.min_1klw5sa.js | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://d0m.eu/wp-content/themes/vermillon/js/functions_ywk4ms8b2.js | 200 OK Content-Length: 896 Content-Type: application/javascript | clean |
http://d0m.eu/?cat=1 | 404 Not Found Content-Length: 4427 Content-Type: text/html | clean |
http://d0m.eu/?m=201506 | 404 Not Found Content-Length: 4427 Content-Type: text/html | clean |
http://d0m.eu/?feed=rss2 | 404 Not Found Content-Length: 4427 Content-Type: text/html | clean |
http://d0m.eu/?feed=comments-rss2 | 404 Not Found Content-Length: 4427 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=d0m.eu
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://d0m.eu/
Result: d0m.eu is not infected or malware details are not published yet.
Result: d0m.eu is not infected or malware details are not published yet.