Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://www.dfntu.com/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: www.dfntu.com Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Found Connection: close Date: Thu, 11 Jun 2015 10:51:04 GMT Location: http://clcktrck.net/path/lp.php?trvid=10003&trvx=3721aa50&search=www.dfntu.com&smid=kjjXU1FBBO&dom=dfntu.com Server: cloudflare-nginx Content-Type: text/html;charset=UTF-8 CF-RAY: 1f4cc236199405e1-WAW Set-Cookie: __cfduid=ddaf2329fcff94e85498f3d07623920ab1434019864; expires=Fri, 10-Jun-16 10:51:04 GMT; path=/; domain=.dfntu.com; HttpOnly | malicious |
URL: http://clcktrck.net/path/lp.php?trvid=10003&trvx=3721aa50&search=www.dfntu.com&smid=kjjXU1FBBO&dom=dfntu.com (imitation of visitor from search engine) GET /path/lp.php?trvid=10003&trvx=3721aa50&search=www.dfntu.com&smid=kjjXU1FBBO&dom=dfntu.com HTTP/1.1 Host: clcktrck.net Referer: http://www.google.com/search?q=redirect+check2 | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Thu, 11 Jun 2015 10:51:03 GMT Pragma: no-cache Location: http://www.dietreport.net/garcinia-cambogia/international.php?oid=1023&sxid=4c1o80e69u58 Server: Apache Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: THRIVE_SESS=kvuuu3safsiottd7d8csh5nqn2; path=/; domain=.clcktrck.net; HttpOnly Set-Cookie: ClickId=4c1o80e69u58; expires=Sat, 11-Jul-2015 10:51:03 GMT; path=/; domain=.clcktrck.net Set-Cookie: OfferPage=http%3A%2F%2Faffiliate.gmtracker.com%2Frd%2Fr.php%3Fsid%3D3601%26pub%3D301252%26c1%3D4c1o80e69u58%26c2%3D%26c3%3D; expires=Sat, 11-Jul-2015 10:51:03 GMT; path=/; domain=.clcktrck.net X-Powered-By: PHP/5.4.16 X-UA-Compatible: IE=Edge,chrome=1 | suspicious |
Scanned pages/files
Request | Server response | Status |
http://www.dfntu.com/ | 200 OK Content-Length: 814 Content-Type: text/html | clean |
http://www.dfntu.com/test404page.js | 200 OK Content-Length: 155 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=dfntu.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://dfntu.com/
Result: dfntu.com is not infected or malware details are not published yet.
Result: dfntu.com is not infected or malware details are not published yet.