Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=fa3df2ti79giuk6mhkqj6pkswh.hop.clickbank.net
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://fa3df2ti79giuk6mhkqj6pkswh.hop.clickbank.net/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: fa3df2ti79giuk6mhkqj6pkswh.hop.clickbank.net
Result:
HTTP/1.1 301 Moved Permanently
Cache-Control: no-store
Connection: close
Date: Sun, 05 Oct 2014 21:46:47 GMT
Pragma: no-cache
Location: http://fa3df2ti79giuk6mhkqj6pkswh.hop.clickbank.net/hop/?CBRehoppp2=http%3A%2F%2Fwww.thewowcolosseum.com%3Fhop%3Ddprundle&hstr=1412545607695%7Cdprundle%7C%7Cw94485edxn%7Cwcolosseum&code=%7B0%7D&key=B90E08B7&parms=&s=default&ds=0
Server: Apache/2.2.29 (FreeBSD) mod_jk/1.2.40 mod_ssl/2.2.29 OpenSSL/0.9.8y
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html;charset=UTF-8
Expires: 0
P3P: CP="ADM OUR IND COM"
Set-Cookie: p=01.C4A2688D287E9782854165139E86FCDF4E0F73CDBF14B220BB41D83E71116263572A4C0360FEF79F17EB8036056AC1F0AA5371CD; Domain=.clickbank.net; Expires=Fri, 03-Apr-2015 21:46:47 GMT; Path=/
Set-Cookie: q=01.F008017CA2E52A3202FB9523B4657E40B5C6E21D5692E6BD7FBB9B574E9E20E0918E9896331FB38BAC6620CF99C538FD5E8F9E39; Domain=.clickbank.net; Expires=Fri, 04-Oct-2019 21:46:47 GMT; Path=/
...0 bytes of data.
GET / HTTP/1.1
Host: fa3df2ti79giuk6mhkqj6pkswh.hop.clickbank.net
Result:
HTTP/1.1 301 Moved Permanently
Cache-Control: no-store
Connection: close
Date: Sun, 05 Oct 2014 21:46:47 GMT
Pragma: no-cache
Location: http://fa3df2ti79giuk6mhkqj6pkswh.hop.clickbank.net/hop/?CBRehoppp2=http%3A%2F%2Fwww.thewowcolosseum.com%3Fhop%3Ddprundle&hstr=1412545607695%7Cdprundle%7C%7Cw94485edxn%7Cwcolosseum&code=%7B0%7D&key=B90E08B7&parms=&s=default&ds=0
Server: Apache/2.2.29 (FreeBSD) mod_jk/1.2.40 mod_ssl/2.2.29 OpenSSL/0.9.8y
Vary: Accept-Encoding
Content-Length: 0
Content-Type: text/html;charset=UTF-8
Expires: 0
P3P: CP="ADM OUR IND COM"
Set-Cookie: p=01.C4A2688D287E9782854165139E86FCDF4E0F73CDBF14B220BB41D83E71116263572A4C0360FEF79F17EB8036056AC1F0AA5371CD; Domain=.clickbank.net; Expires=Fri, 03-Apr-2015 21:46:47 GMT; Path=/
Set-Cookie: q=01.F008017CA2E52A3202FB9523B4657E40B5C6E21D5692E6BD7FBB9B574E9E20E0918E9896331FB38BAC6620CF99C538FD5E8F9E39; Domain=.clickbank.net; Expires=Fri, 04-Oct-2019 21:46:47 GMT; Path=/
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: fa3df2ti79giuk6mhkqj6pkswh.hop.clickbank.net
Referer: http://www.google.com/search?q=fa3df2ti79giuk6mhkqj6pkswh.hop.clickbank.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: fa3df2ti79giuk6mhkqj6pkswh.hop.clickbank.net
Referer: http://www.google.com/search?q=fa3df2ti79giuk6mhkqj6pkswh.hop.clickbank.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://fa3df2ti79giuk6mhkqj6pkswh.hop.clickbank.net/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-store Connection: close Date: Sun, 05 Oct 2014 21:46:47 GMT Pragma: no-cache Location: http://fa3df2ti79giuk6mhkqj6pkswh.hop.clickbank.net/hop/?CBRehoppp2=http%3A%2F%2Fwww.thewowcolosseum.com%3Fhop%3Ddprundle&hstr=1412545607695%7Cdprundle%7C%7Cw94485edxn%7Cwcolosseum&code=%7B0%7D&key=B90E08B7&parms=&s=default&ds=0 Server: Apache/2.2.29 (FreeBSD) mod_jk/1.2.40 mod_ssl/2.2.29 OpenSSL/0.9.8y Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html;charset=UTF-8 Expires: 0 P3P: CP="ADM OUR IND COM" Set-Cookie: p=01.C4A2688D287E9782854165139E86FCDF4E0F73CDBF14B220BB41D83E71116263572A4C0360FEF79F17EB8036056AC1F0AA5371CD; Domain=.clickbank.net; Expires=Fri, 03-Apr-2015 21:46:47 GMT; Path=/ Set-Cookie: q=01.F008017CA2E52A3202FB9523B4657E40B5C6E21D5692E6BD7FBB9B574E9E20E0918E9896331FB38BAC6620CF99C538FD5E8F9E39; Domain=.clickbank.net; Expires=Fri, 04-Oct-2019 21:46:47 GMT; Path=/ | clean |
http://fa3df2ti79giuk6mhkqj6pkswh.hop.clickbank.net/hop/?cbrehoppp2=http%3a%2f%2fwww.thewowcolosseum.com%3fhop%3ddprundle&hstr=1412545607695%7cdprundle%7c%7cw94485edxn%7cwcolosseum&code=%7b0%7d&key=b90e08b7&parms=&s=default&ds=0 | HTTP/1.1 301 Moved Permanently Cache-Control: no-store Connection: close Date: Sun, 05 Oct 2014 21:46:47 GMT Pragma: no-cache Location: http://fa3df2ti79giuk6mhkqj6pkswh.hop.clickbank.net/hop/?CBRehoppp2=http%3A%2F%2Fwww.thewowcolosseum.com%3Fhop%3Ddprundle&hstr=1412545607975%7Cdprundle%7C%7Cw9448pedxn%7Cwcolosseum&code=%7B%7D&key=9F06836E&parms=cbrehoppp2%3Dhttp%253a%252f%252fwww.thewowcolosseum.com%253fhop%253ddprundle%26hstr%3D1412545607695%257cdprundle%257c%257cw94485edxn%257cwcolosseum%26code%3D%257b0%257d%26key%3Db90e08b7%26parms%3D%26ds%3D0&s=default&ds=0 Server: Apache/2.2.29 (FreeBSD) mod_jk/1.2.40 mod_ssl/2.2.29 OpenSSL/0.9.8y Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html;charset=UTF-8 Expires: 0 P3P: CP="ADM OUR IND COM" Set-Cookie: p=01.2A41B2601F25CECD87D1A634ABCE62B76DC3B18D273B6DA84F36AEC0C3ADCE62F6E01A1D3473D0AD831B8C40924796967D0E66D7; Domain=.clickbank.net; Expires=Fri, 03-Apr-2015 21:46:47 GMT; Path=/ Set-Cookie: q=01.8EEEFDF6DF6B7462869BF41E43220C201748276685A88785B83AD84C215366D621744066C74F83A10CD0F1F1EBC7ED52984D4132; Domain=.clickbank.net; Expires=Fri, 04-Oct-2019 21:46:47 GMT; Path=/ | clean |
http://fa3df2ti79giuk6mhkqj6pkswh.hop.clickbank.net/hop/?cbrehoppp2=http%3a%2f%2fwww.thewowcolosseum.com%3fhop%3ddprundle&hstr=1412545607975%7cdprundle%7c%7cw9448pedxn%7cwcolosseum&code=%7b%7d&key=9f06836e&parms=cbrehoppp2%3dhttp%253a%252f%252fwww.thewowcolosseum.com%253fhop%253ddprundle%26hstr%3d1412545607695%257cdprundle%257c%257cw94485edxn%257cwcolosseum%26code%3d%257b0%257d%26key%3db90e08b7%26parms%3d%26ds%3d0&s=default&ds=0 | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://fa3df2ti79giuk6mhkqj6pkswh.hop.clickbank.net/test404page.js | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |