Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=geile-tube.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://geile-tube.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://geile-tube.com/ | 200 OK Content-Length: 43431 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: pornorio.com ...[3147 bytes skipped]... ehst, wir haben sogar Videos von <b>Studentinen</b> die vor Ihren <a href="http://geile-tube.com/geiler-porno/anja-wackelt-mit-ihrem-arsch-vor-der-webcam-1384.html" title="Mädchen vor WebCams">Webcams</a> strippen oder knallhard in den <a href="http://geile-tube.com/kategorie/anal.html" title="Arschficken Pornos">Arsch gefickt</a> werden.<br /><br /> Alle diese geilen <a href="http://pornorio.com" title="Porno Tube"><b>Pornos</b></a> findest du kostenlos zum sofort ansehen und bewerten auf <a href="" title="">Geile-Tube.com</a> für deutsche! <br><br></div> </div> </div> <script type="text/javascript" language="javascript" charset="utf-8" src="http://spaces.slimspots.com/slimspace/316.js"></script><script type="text/j ...[695 bytes skipped]... | ||
http://s1x.slimtrade.com/s2106.js | 200 OK Content-Length: 3080 Content-Type: application/javascript | malicious |
Malicious code found. Script contains blacklisted domain: vagosex-pornos.net eval(function(p,a,c,k,e,d){e=function(c){return(c<a?'':e(parseInt(c/a)))+((c=c%a)>35?String.fromCharCode(c+29):c.toString(36))};while(c--){if(k[c]){p=p.replace(new RegExp('\\b'+e(c)+'\\b','g'),k[c])}}return p}('e p=w M("1D 1B (Y)","1E 1z (O)","1G 1t (P)","1u 1s 1v (U)","1x (N)","T 1d (23)","S 18 15 (1)","1y 1r (0)","1w 2e (0)");e x=w M("i://1Z-27.2c","i://1X-1Q.l","i://1P-1O.l","i://1M-1S.l","i://1V-1T.l","i://T.1d.1W.1R.1N","i://S.18-15.1Y","i://2 ...[2641 bytes skipped]... Decoded script: var stTrName=new Array("Vagosex Pornos (107)","Xtube Porno (81)","Xvideo Deutsch (53)","Uncensored Teen Films (43)","Tiniporn (39)","family perverse (23)","young pussy taboo (1)","Bizarre Sexuality (0)","Inzest Tube (0)");var stTrUrl=new Array("http://vagosex-pornos.net","http://xtube-porno.com","http://xvideo-deutsch.com","http://uncensored-films.com","http://tini-porn.com","http://family.perverse.videos.secretxxx.org","http://young.pussy-taboo.eu","http://bizarresexuality.freevide0.com","http://inzest-tube.com");var stTrValues=new Array("17,13,52","23,8,11","9,3,5","2,3,3","3,11,0","1,5,0","1,10,0","1,1,0","1,3,0","1,1,0","1,8,0","1,0,0","1,2,0","3,0,0","1,4,0","6,2,0","4,8,0","2,2,0","40,21,7","16,1 ...[5683 bytes skipped]... | ||
http://geile-tube.com/media/js/global.js | 200 OK Content-Length: 108097 Content-Type: application/javascript | clean |
http://adspaces.ero-advertising.com/adspace/179421.js | 200 OK Content-Length: 1553 Content-Type: application/javascript | clean |
http://adspaces.ero-advertising.com/adspace/179425.js | 200 OK Content-Length: 1279 Content-Type: application/javascript | clean |
http://spaces.slimspots.com/slimspace/316.js | 200 OK Content-Length: 44 Content-Type: text/html | clean |
http://spaces.slimspots.com/test404page.js | 404 Not Found Content-Length: 345 Content-Type: text/html | clean |
http://spaces.slimspots.com/slimspace/93.js | 200 OK Content-Length: 2900 Content-Type: text/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: geile-tube.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=2592000
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Wed, 17 Sep 2014 21:50:26 GMT
Pragma: no-cache
Server: lighttpd/1.4.28
Content-Type: text/html
Expires: Fri, 17 Oct 2014 21:50:26 GMT
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=66diuqkogh04funp0d8h9bnar6; path=/
Set-Cookie: ck=1; expires=Sat, 12-Sep-2015 21:50:26 GMT; path=/; domain=geile-tube.com
X-Powered-By: PHP/5.3.3-7+squeeze14
GET / HTTP/1.1
Host: geile-tube.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=2592000
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Wed, 17 Sep 2014 21:50:26 GMT
Pragma: no-cache
Server: lighttpd/1.4.28
Content-Type: text/html
Expires: Fri, 17 Oct 2014 21:50:26 GMT
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=66diuqkogh04funp0d8h9bnar6; path=/
Set-Cookie: ck=1; expires=Sat, 12-Sep-2015 21:50:26 GMT; path=/; domain=geile-tube.com
X-Powered-By: PHP/5.3.3-7+squeeze14
Second query (visit from search engine):
GET / HTTP/1.1
Host: geile-tube.com
Referer: http://www.google.com/search?q=geile-tube.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: geile-tube.com
Referer: http://www.google.com/search?q=geile-tube.com
Result:
The result is similar to the first query. There are no suspicious redirects found.