Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: gay-stories.mannfuermann.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 16 Sep 2014 07:29:23 GMT
Accept-Ranges: bytes
Server: Apache/2.2.16 (Debian)
Vary: Accept-Encoding
Content-Length: 5605
Content-Type: text/html; charset=utf-8
Last-Modified: Mon, 15 Sep 2014 22:05:09 GMT
...5605 bytes of data.
GET / HTTP/1.1
Host: gay-stories.mannfuermann.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 16 Sep 2014 07:29:23 GMT
Accept-Ranges: bytes
Server: Apache/2.2.16 (Debian)
Vary: Accept-Encoding
Content-Length: 5605
Content-Type: text/html; charset=utf-8
Last-Modified: Mon, 15 Sep 2014 22:05:09 GMT
...5605 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: gay-stories.mannfuermann.com
Referer: http://www.google.com/search?q=gay-stories.mannfuermann.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: gay-stories.mannfuermann.com
Referer: http://www.google.com/search?q=gay-stories.mannfuermann.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://gay-stories.mannfuermann.com/ | 200 OK Content-Length: 5605 Content-Type: text/html | clean |
http://adspaces.ero-advertising.com/adspace/205543.js | 200 OK Content-Length: 758 Content-Type: application/javascript | clean |
http://gay-stories.mannfuermann.com/index.html | 200 OK Content-Length: 5605 Content-Type: text/html | clean |
http://gay-stories.mannfuermann.com/mfm/stories.html | 200 OK Content-Length: 272420 Content-Type: text/html | clean |
http://ads.juicyads.com/jsclients/jac.js | 200 OK Content-Length: 91344 Content-Type: application/x-javascript | clean |
http://gay-stories.mannfuermann.com/mfm/hottest-stories.html | 200 OK Content-Length: 10468 Content-Type: text/html | clean |
http://gay-stories.mannfuermann.com/mfm/keywords.html | 200 OK Content-Length: 91465 Content-Type: text/html | clean |
http://gay-stories.mannfuermann.com/nude-men/ | 200 OK Content-Length: 55634 Content-Type: text/html | clean |
http://gay-stories.mannfuermann.com/asses/ | 200 OK Content-Length: 62407 Content-Type: text/html | clean |
http://gay-stories.mannfuermann.com/cocks/ | 200 OK Content-Length: 62102 Content-Type: text/html | clean |
http://gay-stories.mannfuermann.com/cocks/cock-0.html | 200 OK Content-Length: 55415 Content-Type: text/html | clean |
http://ads.juicyads.com/jsclients/jam_min.js | 200 OK Content-Length: 21397 Content-Type: application/x-javascript | clean |
http://gay-stories.mannfuermann.com/mfm/stories/stories-abused.html | 200 OK Content-Length: 15172 Content-Type: text/html | clean |
http://gay-stories.mannfuermann.com/mfm/stories/a-jock-nerd-story.html | 200 OK Content-Length: 16897 Content-Type: text/html | clean |
http://gay-stories.mannfuermann.com/mfm/stories/stories-bottom.html | 200 OK Content-Length: 114464 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=gay-stories.mannfuermann.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://gay-stories.mannfuermann.com/
Result: gay-stories.mannfuermann.com is not infected or malware details are not published yet.
Result: gay-stories.mannfuermann.com is not infected or malware details are not published yet.