Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://www.drughuloo.com/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: www.drughuloo.com Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Object moved Cache-Control: private Date: Fri, 09 May 2014 06:38:07 GMT Location: http://www.80667.net/ Server: IIS Content-Length: 142 Content-Type: text/html 123: asp.net Set-Cookie: ASPSESSIONIDCSCCRSQC=IAAEICJBKLACLNCKJFOKGGMH; path=/ X-Powered-By: WAF/2.0 | malicious |
Scanned pages/files
Request | Server response | Status |
http://www.drughuloo.com/ | 200 OK Content-Length: 5499 Content-Type: text/html | clean |
http://www.drughuloo.com/JS/prototype.js | HTTP/1.1 200 OK Date: Fri, 09 May 2014 06:38:16 GMT Accept-Ranges: bytes ETag: "050f428f444cb1:109c" Server: IIS Content-Length: 49387 Content-Location: http://www.drughuloo.com/JS/prototype.js Content-Type: application/x-javascript Last-Modified: Thu, 26 Aug 2010 07:56:16 GMT 123: asp.net X-Died: timeout at scan.pm line 1538. X-Powered-By: WAF/2.0 | clean |
http://www.drughuloo.com/js/prototype.js | HTTP/1.1 200 OK Date: Fri, 09 May 2014 06:38:18 GMT Accept-Ranges: bytes ETag: "050f428f444cb1:109c" Server: IIS Content-Length: 49387 Content-Location: http://www.drughuloo.com/js/prototype.js Content-Type: application/x-javascript Last-Modified: Thu, 26 Aug 2010 07:56:16 GMT 123: asp.net X-Died: timeout at scan.pm line 1538. X-Powered-By: WAF/2.0 | clean |
http://www.drughuloo.com/test404page.js | 404 Not Found Content-Length: 1308 Content-Type: text/html | clean |
http://www.drughuloo.com/JS/scriptaculous.js | HTTP/1.1 200 OK Date: Fri, 09 May 2014 06:38:23 GMT Accept-Ranges: bytes ETag: "050f428f444cb1:109c" Server: IIS Content-Length: 922 Content-Location: http://www.drughuloo.com/JS/scriptaculous.js Content-Type: application/x-javascript Last-Modified: Thu, 26 Aug 2010 07:56:16 GMT 123: asp.net X-Powered-By: WAF/2.0 | clean |
http://www.drughuloo.com/js/scriptaculous.js | HTTP/1.1 200 OK Date: Fri, 09 May 2014 06:38:24 GMT Accept-Ranges: bytes ETag: "050f428f444cb1:109c" Server: IIS Content-Length: 922 Content-Location: http://www.drughuloo.com/js/scriptaculous.js Content-Type: application/x-javascript Last-Modified: Thu, 26 Aug 2010 07:56:16 GMT 123: asp.net X-Powered-By: WAF/2.0 | clean |
http://www.drughuloo.com/JS/checklogin.js | HTTP/1.1 200 OK Date: Fri, 09 May 2014 06:38:24 GMT Accept-Ranges: bytes ETag: "805ff925f444cb1:109c" Server: IIS Content-Length: 34005 Content-Location: http://www.drughuloo.com/JS/checklogin.js Content-Type: application/x-javascript Last-Modified: Thu, 26 Aug 2010 07:56:11 GMT 123: asp.net X-Powered-By: WAF/2.0 | clean |
http://www.drughuloo.com/js/checklogin.js | HTTP/1.1 200 OK Date: Fri, 09 May 2014 06:38:30 GMT Accept-Ranges: bytes ETag: "805ff925f444cb1:109c" Server: IIS Content-Length: 34005 Content-Location: http://www.drughuloo.com/js/checklogin.js Content-Type: application/x-javascript Last-Modified: Thu, 26 Aug 2010 07:56:11 GMT 123: asp.net X-Powered-By: WAF/2.0 | clean |
http://www.drughuloo.com/count/CounterLink.asp?style=none | 200 OK Content-Length: 827 Content-Type: text/html | clean |
http://www.drughuloo.com/AD/llsx/images/js.js | 404 Not Found Content-Length: 1308 Content-Type: text/html | clean |
http://www.drughuloo.com/js/menu.js | HTTP/1.1 200 OK Date: Fri, 09 May 2014 06:38:37 GMT Accept-Ranges: bytes ETag: "80b95b28f444cb1:109c" Server: IIS Content-Length: 2207 Content-Location: http://www.drughuloo.com/js/menu.js Content-Type: application/x-javascript Last-Modified: Thu, 26 Aug 2010 07:56:15 GMT 123: asp.net X-Powered-By: WAF/2.0 | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=drughuloo.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://drughuloo.com/
Result: drughuloo.com is not infected or malware details are not published yet.
Result: drughuloo.com is not infected or malware details are not published yet.