Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://www.filesonic.com/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: www.filesonic.com Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Found Cache-Control: private Connection: close Date: Tue, 21 Jul 2015 21:27:54 GMT Location: http://www.uwatch.to/ Server: Redirector/1.0 Content-Type: text/html | suspicious |
Scanned pages/files
Request | Server response | Status |
http://www.filesonic.com/folder/11045631 | HTTP/1.1 302 Found Cache-Control: private Connection: close Date: Tue, 21 Jul 2015 21:27:55 GMT Location: http://www.uwatch.to/folder/11045631 Server: Redirector/1.0 Content-Type: text/html | clean |
http://www.uwatch.to/folder/11045631 | HTTP/1.1 301 Moved Permanently Connection: close Date: Tue, 21 Jul 2015 21:27:55 GMT Location: http://uwatch.to/folder/11045631 Server: cloudflare-nginx Content-Type: text/html CF-RAY: 2099fe1a38a505e1-WAW Set-Cookie: __cfduid=d49da21c87bd55566af42ae9243ecb9181437514075; expires=Wed, 20-Jul-16 21:27:55 GMT; path=/; domain=.uwatch.to; HttpOnly | clean |
http://uwatch.to/folder/11045631 | 200 OK Content-Length: 20457 Content-Type: text/html | clean |
http://uwatch.to/js/jquery.js | 200 OK Content-Length: 92897 Content-Type: application/x-javascript | clean |
http://www.filesonic.com//s7.addthis.com/js/300/addthis_widget.js/ | HTTP/1.1 302 Found Cache-Control: private Connection: close Date: Tue, 21 Jul 2015 21:27:56 GMT Location: http://www.uwatch.to/s7.addthis.com/js/300/addthis_widget.js/ Server: Redirector/1.0 Content-Type: text/html | clean |
http://www.uwatch.to/s7.addthis.com/js/300/addthis_widget.js/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Tue, 21 Jul 2015 21:27:56 GMT Location: http://uwatch.to/s7.addthis.com/js/300/addthis_widget.js/ Server: cloudflare-nginx Content-Type: text/html CF-RAY: 2099fe24adb005d5-WAW Set-Cookie: __cfduid=d2d02e75c5c5403b000bfc9cc05259b041437514076; expires=Wed, 20-Jul-16 21:27:56 GMT; path=/; domain=.uwatch.to; HttpOnly | clean |
http://uwatch.to/s7.addthis.com/js/300/addthis_widget.js/ | 200 OK Content-Length: 20457 Content-Type: text/html | clean |
http://uwatch.to//s7.addthis.com/js/300/addthis_widget.js/ | 200 OK Content-Length: 20457 Content-Type: text/html | clean |
http://www.google.com/recaptcha/api/challenge?k=6Lfhy-MSAAAAAGjGT-3AU-sIKpZK1MS4wKUF8iV0 | 200 OK Content-Length: 9163 Content-Type: text/javascript | clean |
http://uwatch.to/js/bootstrap.min.js | 200 OK Content-Length: 28631 Content-Type: application/x-javascript | clean |
http://uwatch.to/js/main.js | 200 OK Content-Length: 15776 Content-Type: application/x-javascript | clean |
http://uwatch.to/ | 200 OK Content-Length: 20457 Content-Type: text/html | clean |
http://uwatch.to/Watch-Movies-Online | 200 OK Content-Length: 24131 Content-Type: text/html | clean |
http://uwatch.to/Watch-TV-Shows-Online | 200 OK Content-Length: 24007 Content-Type: text/html | clean |
http://uwatch.to/handlers/facebookLogin.php | HTTP/1.1 302 Moved Temporarily Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Tue, 21 Jul 2015 21:27:58 GMT Pragma: no-cache Location: https://www.facebook.com/dialog/oauth?client_id=324710464245801&redirect_uri=http%3A%2F%2Fuwatch.to%2Fhandlers%2FfacebookLogin.php&state=edfed410dae88db1952fed9d4cbd2e12&sdk=php-sdk-3.2.3&scope=email Server: cloudflare-nginx Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT CF-RAY: 2099fe3095840afc-WAW Set-Cookie: __cfduid=dbda114d178901c33bc1e7944511baa521437514078; expires=Wed, 20-Jul-16 21:27:58 GMT; path=/; domain=.uwatch.to; HttpOnly Set-Cookie: PHPSESSID=q1gd8idjn5m0si7qm4hmj4d5p1; path=/ X-Powered-By: PHP/5.4.4-14+deb7u7 | clean |
https://www.facebook.com/dialog/oauth?client_id=324710464245801&redirect_uri=http%3a%2f%2fuwatch.to%2fhandlers%2ffacebooklogin.php&state=edfed410dae88db1952fed9d4cbd2e12&sdk=php-sdk-3.2.3&scope=email | HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Connection: close Date: Tue, 21 Jul 2015 21:27:59 GMT Pragma: no-cache Vary: Accept-Encoding Content-Type: text/html;charset=utf-8 Expires: Sat, 01 Jan 2000 00:00:00 GMT Facebook-API-Version: v2.0 Strict-Transport-Security: max-age=15552000; preload X-Content-Type-Options: nosniff X-FB-Debug: n8tHrnIeXKAZsSDIB3/hV3dWs6MpwchXrOByk35swC21MhlxbzTzQzNXQLekmABEAhx+lFK9Iff5QA2q3i8h8A== X-Frame-Options: DENY X-UA-Compatible: IE=edge X-XSS-Protection: 0 | clean |
https://www.facebook.com/login.php?skip_api_login=1&api_key=324710464245801&signed_next=1&next=https%3a%2f%2fwww.facebook.com%2fv2.0%2fdialog%2foauth%3fredirect_uri%3dhttp%253a%252f%252fuwatch.to%252fhandlers%252ffacebooklogin.php%26state%3dedfed410dae88db1952fed9d4cbd2e12%26scope%3demail%26client_id%3d324710464245801%26ret%3dlogin%26sdk%3dphp-sdk-3.2.3&cancel_url=http%3a%2f%2fuwat <span>...218 symbols skipped</span> | HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Connection: close Date: Tue, 21 Jul 2015 21:27:59 GMT Pragma: no-cache Vary: Accept-Encoding Content-Type: text/html Expires: Sat, 01 Jan 2000 00:00:00 GMT Strict-Transport-Security: max-age=15552000; preload X-Content-Type-Options: nosniff X-FB-Debug: COgFujZvQQrjlswNfdd24p2/QN80k44RNdcEaj6K+8jchi60Z01juBeDUyqNJPzC8XTrez9NB82L5hPsGwVKLQ== X-Frame-Options: DENY X-UA-Compatible: IE=edge,chrome=1 X-XSS-Protection: 0 | clean |
https://www.facebook.com/login.php?skip_api_login=1&%3bapi_key=324710464245801&%3bsigned_next=1&%3bnext=https%3a%2f%2fwww.facebook.com%2fv2.0%2fdialog%2foauth%3fredirect_uri%3dhttp%253a%252f%252fuwatch.to%252fhandlers%252ffacebooklogin.php%26state%3dedfed410dae88db1952fed9d4cbd2e12%26scope%3demail%26client_id%3d324710464245801%26ret%3dlogin%26sdk%3dphp-sdk-3.2.3&%3bcanc <span>...267 symbols skipped</span> | HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Connection: close Date: Tue, 21 Jul 2015 21:27:59 GMT Pragma: no-cache Vary: Accept-Encoding Content-Type: text/html Expires: Sat, 01 Jan 2000 00:00:00 GMT Strict-Transport-Security: max-age=15552000; preload X-Content-Type-Options: nosniff X-FB-Debug: liVwAsus0PCopEcigQUxxvAlTZVOkleaDRZe2sUQX4yQUVwKeW6JoBFOb9cA8mckweGP0YqmwHFOhgapoKmxTw== X-Frame-Options: DENY X-UA-Compatible: IE=edge,chrome=1 X-XSS-Protection: 0 | clean |
https://www.facebook.com/login.php?skip_api_login=1&%3bamp%3bapi_key=324710464245801&%3bamp%3bsigned_next=1&%3bamp%3bnext=https%3a%2f%2fwww.facebook.com%2fv2.0%2fdialog%2foauth%3fredirect_uri%3dhttp%253a%252f%252fuwatch.to%252fhandlers%252ffacebooklogin.php%26state%3dedfed410dae88db1952fed9d4cbd2e12%26scope%3demail%26client_id%3d324710464245801%26ret%3dlogin%26sdk%3dphp-sdk-3. <span>...322 symbols skipped</span> | HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Connection: close Date: Tue, 21 Jul 2015 21:28:00 GMT Pragma: no-cache Vary: Accept-Encoding Content-Type: text/html Expires: Sat, 01 Jan 2000 00:00:00 GMT Strict-Transport-Security: max-age=15552000; preload X-Content-Type-Options: nosniff X-FB-Debug: O31zecqb/g30M8uAXWYYJhePGYAIZ8zebqn9PdES6Y7BROh7px3Cewig6qPoLboXQK8N3a3N6TtnA4ddEZsvSA== X-Frame-Options: DENY X-UA-Compatible: IE=edge,chrome=1 X-XSS-Protection: 0 | clean |
https://www.facebook.com/login.php?skip_api_login=1&%3bamp%3bamp%3bapi_key=324710464245801&%3bamp%3bamp%3bsigned_next=1&%3bamp%3bamp%3bnext=https%3a%2f%2fwww.facebook.com%2fv2.0%2fdialog%2foauth%3fredirect_uri%3dhttp%253a%252f%252fuwatch.to%252fhandlers%252ffacebooklogin.php%26state%3dedfed410dae88db1952fed9d4cbd2e12%26scope%3demail%26client_id%3d324710464245801%26ret%3dlogin% <span>...383 symbols skipped</span> | HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Connection: close Date: Tue, 21 Jul 2015 21:28:00 GMT Pragma: no-cache Vary: Accept-Encoding Content-Type: text/html Expires: Sat, 01 Jan 2000 00:00:00 GMT Strict-Transport-Security: max-age=15552000; preload X-Content-Type-Options: nosniff X-FB-Debug: Rgq3SwrOM1U2BCP0z3EULReVXF8outC4dSFwnSOdo3hp3BECAesEd1/ZCzA2kxboqvbvJLqMTCliKXOu/yvAVQ== X-Frame-Options: DENY X-UA-Compatible: IE=edge,chrome=1 X-XSS-Protection: 0 | clean |
http://www.facebook.com/test404page.js | 404 Not Found Content-Length: 72 Content-Type: text/html | clean |
http://www.facebook.com/ | HTTP/1.1 302 Found Connection: close Date: Tue, 21 Jul 2015 21:28:01 GMT Location: https://www.facebook.com/ Content-Length: 0 Content-Type: text/html X-FB-Debug: aTutyVfL8FOV98UsltXq1ywrBPCbEMksFNYyTOu35eXm832A7NotEeAlPnJQBCdmqbqK5wuyEAbbmQvTtY94YQ== | clean |
https://www.facebook.com/ | HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Connection: close Date: Tue, 21 Jul 2015 21:28:01 GMT Pragma: no-cache Vary: Accept-Encoding Content-Type: text/html Expires: Sat, 01 Jan 2000 00:00:00 GMT Strict-Transport-Security: max-age=15552000; preload X-Content-Type-Options: nosniff X-FB-Debug: B7cCGTUKI0mT4ItaixqYe/PTIhKXBNLImz/khaHRtxZSyy7itA1LJLA9/zocttqGQqBlXisvTfXye01sxFZTrA== X-Frame-Options: DENY X-UA-Compatible: IE=edge,chrome=1 X-XSS-Protection: 0 | clean |
https://www.facebook.com/?_fb_noscript=1 | 200 OK Content-Length: 50369 Content-Type: text/html | clean |
https://fbstatic-a.akamaihd.net/rsrc.php/v2/y1/r/ycgLLqQN6kU.js | 200 OK Content-Length: 141585 Content-Type: application/x-javascript | clean |
http://www.facebook.com/legal/terms | HTTP/1.1 302 Found Connection: close Date: Tue, 21 Jul 2015 21:28:02 GMT Location: https://www.facebook.com/legal/terms Content-Length: 0 Content-Type: text/html X-Content-Type-Options: nosniff X-FB-Debug: oEcTFmpmAqcx4f/SKkiv+iDiiKL6xuDN0lQJ4W7Qeo8SAuPWy3Vr2E7ilD+17g0oiYD0sN2WIQC+Bbw3iqQo0w== X-UA-Compatible: IE=edge,chrome=1 | clean |
https://www.facebook.com/legal/terms | HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Connection: close Date: Tue, 21 Jul 2015 21:28:03 GMT Pragma: no-cache Vary: Accept-Encoding Content-Type: text/html Expires: Sat, 01 Jan 2000 00:00:00 GMT Strict-Transport-Security: max-age=15552000; preload X-Content-Type-Options: nosniff X-FB-Debug: 1spSHO/B0YMfP8VNmBhKJewkwC2oqDm7nDJR/AsHD2U7QvBXWJ5jajF769zuj50u77uYCnloimpykepJjtBe1Q== X-Frame-Options: DENY X-UA-Compatible: IE=edge,chrome=1 X-XSS-Protection: 0 | clean |
https://www.facebook.com/legal/terms?_fb_noscript=1 | 200 OK Content-Length: 48564 Content-Type: text/html | clean |
https://www.facebook.com/principles.php | HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Connection: close Date: Tue, 21 Jul 2015 21:28:04 GMT Pragma: no-cache Vary: Accept-Encoding Content-Type: text/html Expires: Sat, 01 Jan 2000 00:00:00 GMT Strict-Transport-Security: max-age=15552000; preload X-Content-Type-Options: nosniff X-FB-Debug: GCweh2fzT9pbg1eF+u7e2D++faXvTEAH6CJR4xD3YhzR4/YtI9h0TsGLylfBGYZR2A/xPYx9vgg4Udee3pz57w== X-Frame-Options: DENY X-UA-Compatible: IE=edge,chrome=1 X-XSS-Protection: 0 | clean |
https://www.facebook.com/principles.php?_fb_noscript=1 | 200 OK Content-Length: 26689 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=filesonic.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://filesonic.com/
Result: filesonic.com is not infected or malware details are not published yet.
Result: filesonic.com is not infected or malware details are not published yet.