Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=feetspecialists.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: feetspecialists.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 09 Jan 2015 10:20:01 GMT
Accept-Ranges: bytes
ETag: "f2a-50c32d4fa6685"
Server: Apache/2.4.6 (Ubuntu)
Vary: Accept-Encoding
Content-Length: 3882
Content-Type: text/html
Last-Modified: Fri, 09 Jan 2015 07:09:04 GMT
...3882 bytes of data.
GET / HTTP/1.1
Host: feetspecialists.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 09 Jan 2015 10:20:01 GMT
Accept-Ranges: bytes
ETag: "f2a-50c32d4fa6685"
Server: Apache/2.4.6 (Ubuntu)
Vary: Accept-Encoding
Content-Length: 3882
Content-Type: text/html
Last-Modified: Fri, 09 Jan 2015 07:09:04 GMT
...3882 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: feetspecialists.com
Referer: http://www.google.com/search?q=feetspecialists.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: feetspecialists.com
Referer: http://www.google.com/search?q=feetspecialists.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://feetspecialists.com/ | 200 OK Content-Length: 3882 Content-Type: text/html | clean |
http://s7.addthis.com/js/250/addthis_widget.js | 200 OK Content-Length: 10591 Content-Type: text/javascript | clean |
http://feetspecialists.com/terms.html | 200 OK Content-Length: 12789 Content-Type: text/html | clean |
http://feetspecialists.com/privacy.html | 200 OK Content-Length: 13339 Content-Type: text/html | clean |
http://feetspecialists.com/test404page.js | HTTP/1.1 302 Found Connection: close Date: Fri, 09 Jan 2015 10:20:05 GMT Location: http://sameid.net/limit.html Server: Apache/2.4.6 (Ubuntu) Content-Length: 212 Content-Type: text/html; charset=iso-8859-1 Set-Cookie: uri=%2Ftest404page%2Ejs;Path=/;Max-Age=31536000 Set-Cookie: ref=direct;Path=/;Max-Age=31536000 | clean |
http://sameid.net/limit.html | 200 OK Content-Length: 5242 Content-Type: text/html | clean |
http://sameid.net/ | 200 OK Content-Length: 3882 Content-Type: text/html | clean |
http://sameid.net/terms.html | 200 OK Content-Length: 12789 Content-Type: text/html | clean |
http://sameid.net/privacy.html | 200 OK Content-Length: 13339 Content-Type: text/html | clean |
http://sameid.net/test404page.js | 404 Not Found Content-Length: 3296 Content-Type: text/html | clean |
http://feetspecialists.com/order?plan=pp-oneday | HTTP/1.1 302 Found Connection: close Date: Fri, 09 Jan 2015 10:20:10 GMT Location: https://www.paypal.com/cgi-bin/webscr?cmd=_xclick&business=iiveras.lt%40gmail.com&amount=9.99&no_note=1&custom=-1000-no-1-05646eca&no_shipping=1&return=http%3A%2F%2Fsameid.net%2Fthankyou&rm=2&item_name=SameID%20One%20Day%20Access%20-%201000%20requests Server: Apache/2.4.6 (Ubuntu) Content-Length: 467 Content-Type: text/html; charset=iso-8859-1 | clean |
https://www.paypal.com/cgi-bin/webscr?cmd=_xclick&business=iiveras.lt%40gmail.com&amount=9.99&no_note=1&custom=-1000-no-1-05646eca&no_shipping=1&return=http%3a%2f%2fsameid.net%2fthankyou&rm=2&item_name=sameid%20one%20day%20access%20-%201000%20requests | HTTP/1.1 302 Moved Temporarily Connection: close Connection: Transfer-Encoding Date: Fri, 09 Jan 2015 10:20:35 GMT Location: https://www.paypal.com/lt/cgi-bin/webscr?cmd=_flow&SESSION=M9ad_ILEBUg6Gc1uAaalJBlk5k4iRDw-9LmmBNQKjwx2rlGN8KmYLHITtfm&dispatch=50a222a57771920b6a3d7b606239e4d529b525e0b7e69bf0224adecfb0124e9b61f737ba21b08198d8562aa8a3da7ac30bbfba73b3e80dcc Server: Apache Content-Encoding: gzip Content-Type: text/html DC: slc-a-origin-www-2.paypal.com Set-Cookie: cwrClyrK4LoCV1fydGbAxiNL6iG=DKz5a2DfGIZiRQAvpcaw8Amdcrmh1Hz95hfFaU6kfZjZknz-H12KyQ5auYf4iIZB0tSHKlDKIn70RNifnc1rbSBTKeeTc1JanQps4ib181uj9iqORqBSK3Z9cn1lQ62SdzYZy5MQiFdUOz0O_OkEX53hq3JuO-HIA-P8jiM7S3UiTgn-J52oFDqH9OrulYZsKO9yL-t9zXG3wprP1JcLgDEHl2TseJ3-2f5lOC4P9OtSOYS0DZLhXgvhQcu; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: KHcl0EuY7AKSMgfvHl7J5E7hPtK=hQNLhngolYlIHsVgJe8KErOzF8YVilqPNOySEswECc3m0k0etSO8u1QyYCsRiXzb-uS7XWakv5kniDBY; expires=Thu, 04-Jan-2035 10:20:35 GMT; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: cookie_check=yes; expires=Mon, 06-Jan-2025 10:20:35 GMT; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: navcmd=_xclick; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: abc_switch_cross_paypal=R1190%26WPSG%3da%40500%7c1420885234%7ce%3bv%3bw%3b6%26; expires=Sun, 19-Apr-2015 10:20:35 GMT; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: tYO7fcUaay8ZtLdfOSkkxbhU8o0=IC5WJaqhowolQUYB_VxMWWF7ffNJPJuxwss5EaALPYLj5Dstb0uQElaLw8vRQRC1RTHfTW; expires=Tue, 10-Mar-2015 10:20:35 GMT; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: pNTcMTtQfrJuaJiwEnWXQ6yNxfq=k7vXm9rIxMNP7www59Lu2kwpRXeObOSPqNHW5XWYA0ctJTfaECylZQfRui0F130MbYgcVtqrx3FMMCztj76qDl0pEcbr3fWVH_rYvsJ9P6I9mcgplOemuyhQ1Z8MOGgTvM-UPrUd1ivxACgjALuyP7lAW1hZTHVB8sbBw7fmvWpoN3ygFclsetM8ltxnw20RCIZdfBx_0nUKE3eSKmttOd888YvnsatAblnwavVEO37rG-2RaZG7S_NZQhM8wnc3dDuTYdKV-HmSod1SUo3YMfuX0Pu-JS0JtvJoauGCC39XpVbJKwIzTZsSK-hD2BIN-Ty51N97UlqRTiYAc_QkBBxh0kBh8jEVwAS1IkNwPnZPspvr; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: Apache=10.73.8.137.1420798834603026; path=/; expires=Sun, 01-Jan-45 10:20:34 GMT Set-Cookie: X-PP-SILOVER=name%3DLIVE5.WEB.1%26silo_version%3D880%26app%3Dappdisp%26TIME%3D1923854164; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: X-PP-SILOVER=; Expires=Thu, 01 Jan 1970 00:00:01 GMT Set-Cookie: Apache=10.73.8.70.1420798834590713; path=/; expires=Sun, 01-Jan-45 10:20:34 GMT Set-Cookie: AKDC=slc-a-origin-www-2.paypal.com; expires=Fri, 09-Jan-2015 10:50:35 GMT; path=/; secure Strict-Transport-Security: max-age=63072000 X-Frame-Options: SAMEORIGIN | clean |
https://www.paypal.com/lt/cgi-bin/webscr?cmd=_flow&session=m9ad_ilebug6gc1uaaaljblk5k4irdw-9lmmbnqkjwx2rlgn8kmylhittfm&dispatch=50a222a57771920b6a3d7b606239e4d529b525e0b7e69bf0224adecfb0124e9b61f737ba21b08198d8562aa8a3da7ac30bbfba73b3e80dcc | 200 OK Content-Length: 14322 Content-Type: text/html | clean |
https://www.paypalobjects.com/WEBSCR-640-20141004-1/js/lib/min/global.js | 200 OK Content-Length: 61553 Content-Type: application/x-javascript | clean |
https://www.paypalobjects.com/WEBSCR-640-20141004-1/js/lib/min/widgets.js | 200 OK Content-Length: 142696 Content-Type: application/x-javascript | clean |
https://www.paypalobjects.com/WEBSCR-640-20141004-1/js/site_catalyst/pp_jscode_080706.js | 200 OK Content-Length: 61883 Content-Type: application/x-javascript | clean |
http://feetspecialists.com/order?plan=pp-premium | HTTP/1.1 302 Found Connection: close Date: Fri, 09 Jan 2015 10:20:15 GMT Location: https://www.paypal.com/cgi-bin/webscr?cmd=_xclick-subscriptions&business=iiveras.lt%40gmail.com&a3=19.99&p3=1&t3=M&src=1&no_note=1&custom=-300-yes-32-8f5af0e9&no_shipping=1&return=http%3A%2F%2Fsameid.net%2Fthankyou&rm=2&item_name=SameID%20Premium%20-%20300%20requests%2Fday Server: Apache/2.4.6 (Ubuntu) Content-Length: 501 Content-Type: text/html; charset=iso-8859-1 | clean |
https://www.paypal.com/cgi-bin/webscr?cmd=_xclick-subscriptions&business=iiveras.lt%40gmail.com&a3=19.99&p3=1&t3=m&src=1&no_note=1&custom=-300-yes-32-8f5af0e9&no_shipping=1&return=http%3a%2f%2fsameid.net%2fthankyou&rm=2&item_name=sameid%20premium%20-%20300%20requests%2fday | HTTP/1.1 302 Moved Temporarily Connection: close Connection: Transfer-Encoding Date: Fri, 09 Jan 2015 10:20:39 GMT Location: https://www.paypal.com/lt/cgi-bin/webscr?cmd=_flow&SESSION=EU8uZ00VInMc21yeA_8F8iSffzDW1fDjz6_icX0Rqu9wFXhuSNFXHb2q7j0&dispatch=5885d80a13c0db1f8e263663d3faee8d66f31424b43e9a70645c907a6cbd8fb4 Server: Apache Content-Encoding: gzip Content-Type: text/html DC: slc-a-origin-www-2.paypal.com Set-Cookie: cwrClyrK4LoCV1fydGbAxiNL6iG=K4tUe6rIJzl68m2Upaps9oah03bSU1UMP5x69LrKlTX-ZBtapd2eXi_Xs1caJayn3H24YG0WCx8K4qz7GkP_pI3V_MZGCO4TdKsQjidvfPQW12JpkV9G7tXsh1-h-M9ZCMz69sK5YxYoDqiro094cRCZxoDHIPwAgcwhJ3sWQU1VnR_7w6cAkNSgOmPkUpS1ruBCfrCwCQfU0inWisn3SsFQdSSzSnFBTdQHcEwod8FgeZcMRMZY6yylDqElWUPg_cbszeOoNLjbJO1278DP32EJODSCnPoI0TwmnYqNI5cXYRvySGt_xc-Qz2mBJpL1b2M2sIgp5mN2BprhgAfHTHNVyM4WW4ymwOG8GhVUEpGi_c1cNS7Go8iAckQuJ6HqbejKPQ44gLiHHY7HwR3Tj2Asstztrym1j2N8zdwNM8I1SH_ODnDviC5UbZi; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: KHcl0EuY7AKSMgfvHl7J5E7hPtK=O8edw173LXhMn-mT6U5lSWcSiLnXZvaEKD2LLz1VkIU8DZlbjdyv4Ro13jJSqPFpnbttvyb7HqmwVy99; expires=Thu, 04-Jan-2035 10:20:39 GMT; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: cookie_check=yes; expires=Mon, 06-Jan-2025 10:20:39 GMT; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: navcmd=_xclick-subscriptions; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: pNTcMTtQfrJuaJiwEnWXQ6yNxfq=nQhmbCfVcYRu57Wzx_qYmvSqTOwbPitrvH0V5dhEnebVU0ZOs-4FrEt9Ws01IiAeES2wuVIDzC0HG3rvYPKWmS4TA1ckvBM1zRhIVPyzBMD09ZL1cw3xfSw6d5sKekOm6oocSq2RLIrhSwbgciP3T0q0MQilh6xJB0r8xj_tgQpJ9mnWfqj1jy1k5JkZzAyNeYYR-W6RR69FX1euRqD79zs-JJAhtDwDlUNyKrFlgO1rOGhubWDVy-bpttNPKBZQfSEchCtxYO8a1n6O_IUoWpkP7GIB0tJTFiPbIe9IO3CFIhFIzKdcCwUOaySstxBDlVBOaXm4iR0JXHImooRTJNwAKjYL7FX7MHgt15-jUHPGctb-; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: navlns=0.0; expires=Sun, 08-Jan-2017 10:20:39 GMT; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: Apache=10.73.8.137.1420798838839155; path=/; expires=Sun, 01-Jan-45 10:20:38 GMT Set-Cookie: X-PP-SILOVER=name%3DLIVE5.WEB.1%26silo_version%3D880%26app%3Dslingshot%26TIME%3D1990963028; domain=.paypal.com; path=/; Secure; HttpOnly Set-Cookie: X-PP-SILOVER=; Expires=Thu, 01 Jan 1970 00:00:01 GMT Set-Cookie: Apache=10.73.8.62.1420798838828611; path=/; expires=Sun, 01-Jan-45 10:20:38 GMT Set-Cookie: AKDC=slc-a-origin-www-2.paypal.com; expires=Fri, 09-Jan-2015 10:50:39 GMT; path=/; secure Strict-Transport-Security: max-age=63072000 X-Frame-Options: SAMEORIGIN | clean |
https://www.paypal.com/lt/cgi-bin/webscr?cmd=_flow&session=eu8uz00vinmc21yea_8f8isffzdw1fdjz6_icx0rqu9wfxhusnfxhb2q7j0&dispatch=5885d80a13c0db1f8e263663d3faee8d66f31424b43e9a70645c907a6cbd8fb4 | 200 OK Content-Length: 54 Content-Type: text/html | clean |
http://feetspecialists.com/order?plan=pp-business | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |