Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=dagratis.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://dagratis.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://dagratis.com/ | 200 OK Content-Length: 100953 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: videosmejores.net <html>
<head><meta name="google-site-verification" content="2T_vkFUoFg2iaQCmYNNxtFPJLD79yV9x0QgcICfW6cw" /> <title>Da Gratis - Sexo Caliente muy porno videos Conocelas ahora muy zorras mujeres infieles</title> <meta http-equiv="Content-Type" content="text/html; charset=utf-8"> <meta name="description" CONTENT="Da Gratis - Sexo Caliente muy porno videos Conocelas ahora muy zorras mujeres infiel ...[4668 bytes skipped]... | ||
https://ads.exoclick.com/ads.js | 200 OK Content-Length: 401 Content-Type: text/javascript | clean |
http://adspaces.ero-advertising.com/adspace/304598.js | 200 OK Content-Length: 1553 Content-Type: application/javascript | clean |
http://adspaces.ero-advertising.com/adspace/304597.js | 200 OK Content-Length: 1549 Content-Type: application/javascript | clean |
http://adspaces.ero-advertising.com/adspace/304600.js | 200 OK Content-Length: 1546 Content-Type: application/javascript | clean |
http://adspaces.ero-advertising.com/adspace/304595.js | 200 OK Content-Length: 1557 Content-Type: application/javascript | clean |
http://adspaces.ero-advertising.com/adspace/304596.js | 200 OK Content-Length: 1545 Content-Type: application/javascript | clean |
http://dagratis.com/link.php?h | HTTP/1.1 302 Found Connection: close Date: Mon, 22 Sep 2014 06:34:26 GMT Location: http://lezblovelive.com Server: nginx/1.1.19 Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Set-Cookie: av=NmVhMTZlYTg0NWRiYWRmYmUyZGVmYjk1ZjJjODk2NWV8MXwxfDE0MTEzNjc2NjZ8fHwxODU%3D; path=/ Set-Cookie: avarc=4c1c1411367666c185r; expires=Tue, 23-Sep-2014 06:34:26 GMT; path=/ X-Powered-By: PHP/5.2.17 | clean |
http://lezblovelive.com/ | 200 OK Content-Length: 42513 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: dagratis.com <html>
<head> <title>lezblovelive.com</title> <meta http-equiv="Content-Type" content="text/html;charset=utf-8"> <base target="_blank"> <script type="text/javascript"> function addBookmark(url, title) { if (!url) url = location.href; if (!title) title = document.title; //Gecko if ((typeof window.sidebar == "object") && (typeof window. ...[4486 bytes skipped]... | ||
http://lezblovelive.com/link.php?h | HTTP/1.1 302 Found Connection: close Date: Mon, 22 Sep 2014 07:49:39 GMT Location: http://femalesaged.com Server: Apache/2.2.15 (CentOS) Content-Length: 0 Content-Type: text/html; charset=UTF-8 Set-Cookie: av=NDhkZTQyY2ZiNDAwOWNhYzczOThjMDYzYTEyY2FlMTJ8MXwxfDE0MTEzNzIxNzl8fHw5NQ%3D%3D; path=/ Set-Cookie: avarc=4c1c1411372179c95r; expires=Tue, 23-Sep-2014 07:49:39 GMT; path=/ X-Powered-By: PHP/5.2.17 | clean |
http://femalesaged.com/ | 200 OK Content-Length: 110560 Content-Type: text/html | clean |
http://femalesaged.com/link.php?h | HTTP/1.1 302 Found Connection: close Date: Mon, 22 Sep 2014 06:34:30 GMT Location: http://gratispara.net Server: nginx/1.1.19 Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Set-Cookie: av=YzYxMWRkNjk5Y2E3NmE3M2JlZmY0YzRkN2QxNGRkNjh8MXwxfDE0MTEzNjc2NzB8fHw3Ng%3D%3D; path=/ Set-Cookie: avarc=4c1c1411367670c76r; expires=Tue, 23-Sep-2014 06:34:30 GMT; path=/ X-Powered-By: PHP/5.2.17 | clean |
http://gratispara.net/ | 200 OK Content-Length: 96374 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: pusy.info <html>
<head> <title>Gratis Sexo - Gratis porno fotos, calientes mujeres de Espana </title> <meta http-equiv="Content-Type" content="text/html; charset=utf-8"> <meta name="description" CONTENT="Gratis Para -Gratis muy fotos, calientes mujeres Espana."> <meta name="keywords" CONTENT="gratispara.net, gratis, mejores,mujeres, gratis, maduras, fotos, mujeres maduras fotos,gratis,maduras fo ...[4626 bytes skipped]... | ||
http://adspaces.ero-advertising.com/adspace/304247.js | 200 OK Content-Length: 1555 Content-Type: application/javascript | clean |
http://adspaces.ero-advertising.com/adspace/304246.js | 200 OK Content-Length: 1543 Content-Type: application/javascript | clean |
http://adspaces.ero-advertising.com/adspace/304245.js | 200 OK Content-Length: 1551 Content-Type: application/javascript | clean |
http://femalesaged.com/link.php?g=1439&cu=aHR0cDovL2ZyZWUub2N4eHguY29tL2ZoZy90cG0vc2V0MDEvdmlkcy9iLzAyLz9uYXRzPU1URXhNVEk2TmpnNk5UYywwLDAsMCw=&l=block1 | HTTP/1.1 302 Found Connection: close Date: Mon, 22 Sep 2014 06:34:32 GMT Location: http://free.ocxxx.com/fhg/tpm/set01/vids/b/02/?nats=MTExMTI6Njg6NTc,0,0,0, Server: nginx/1.1.19 Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Set-Cookie: av=M2JjOGRlZjYwYjUzMWIyZmEzZTljZTI0ZGJmNDM4ZDJ8MXwwfDE0MTEzNjc2NzJ8fHw%3D; path=/ Set-Cookie: avarc=4c1c1411367672cr; expires=Tue, 23-Sep-2014 06:34:32 GMT; path=/ X-Powered-By: PHP/5.2.17 | clean |
http://free.ocxxx.com/fhg/tpm/set01/vids/b/02/?nats=mtexmti6njg6ntc,0,0,0, | 200 OK Content-Length: 6826 Content-Type: text/html | clean |
http://free.ocxxx.com/fhg/tpm/set01/vids/b/02/01.wmv | 200 OK Content-Length: 300470 Content-Type: video/x-ms-wmv | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: dagratis.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache, must-revalidate
Connection: close
Date: Mon, 22 Sep 2014 06:34:24 GMT
Pragma: no-cache
Server: nginx/1.1.19
Vary: Accept-Encoding
Content-Type: text/html
Set-Cookie: av=YTZjNjc5NWVjMjZkODIwZDIzZmJlYzJlMzY0MDY3NjF8MHwwfDE0MTEzNjc2NjR8MXx8MQ%3D%3D; path=/
Set-Cookie: faceN=0; expires=Thu, 25-Sep-2014 06:34:24 GMT
X-Powered-By: PHP/5.2.17
GET / HTTP/1.1
Host: dagratis.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache, must-revalidate
Connection: close
Date: Mon, 22 Sep 2014 06:34:24 GMT
Pragma: no-cache
Server: nginx/1.1.19
Vary: Accept-Encoding
Content-Type: text/html
Set-Cookie: av=YTZjNjc5NWVjMjZkODIwZDIzZmJlYzJlMzY0MDY3NjF8MHwwfDE0MTEzNjc2NjR8MXx8MQ%3D%3D; path=/
Set-Cookie: faceN=0; expires=Thu, 25-Sep-2014 06:34:24 GMT
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: dagratis.com
Referer: http://www.google.com/search?q=dagratis.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: dagratis.com
Referer: http://www.google.com/search?q=dagratis.com
Result:
The result is similar to the first query. There are no suspicious redirects found.