Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://gungroker.com/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: gungroker.com Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Found Date: Tue, 15 Apr 2014 03:36:04 GMT Location: http://www.searchremagnified.com/?dn=gungroker.com&pid=9PO28A2FW Server: Apache/2.2.3 (Red Hat) Vary: Accept-Encoding,User-Agent Content-Length: 0 Content-Type: text/html; charset=UTF-8 Set-Cookie: gvc=911vr1450785643605144; expires=Sun, 14-Apr-2019 03:36:04 GMT; path=/; domain=gungroker.com; httponly X-Cnection: close X-Powered-By: PHP/5.3.21 | malicious |
URL: http://www.searchremagnified.com/?dn=gungroker.com&pid=9PO28A2FW (imitation of visitor from search engine) GET /?dn=gungroker.com&pid=9PO28A2FW HTTP/1.1 Host: www.searchremagnified.com Referer: http://www.google.com/search?q=redirect+check2 | HTTP/1.1 302 Found Date: Tue, 15 Apr 2014 03:36:04 GMT Location: http://freeresultsguide.com/?dn=gungroker.com&pid=9PO28A2FW Server: Apache/2.2.3 (Red Hat) Vary: Accept-Encoding Content-Length: 338 Content-Type: text/html; charset=iso-8859-1 X-Cnection: close | suspicious |
Scanned pages/files
Request | Server response | Status |
http://gungroker.com/content/ | HTTP/1.1 302 Found Date: Tue, 15 Apr 2014 03:36:04 GMT Location: http://www.searchremagnified.com/?dn=gungroker.com&pid=9PO28A2FW Server: Apache/2.2.3 (Red Hat) Vary: Accept-Encoding,User-Agent Content-Length: 0 Content-Type: text/html; charset=UTF-8 Set-Cookie: gvc=905vr1450785645012913; expires=Sun, 14-Apr-2019 03:36:04 GMT; path=/; domain=gungroker.com; httponly X-Cnection: close X-Powered-By: PHP/5.3.21 | clean |
http://www.searchremagnified.com/?dn=gungroker.com&pid=9po28a2fw | HTTP/1.1 302 Found Date: Tue, 15 Apr 2014 03:36:04 GMT Location: http://freeresultsguide.com/?dn=gungroker.com&pid=9po28a2fw Server: Apache/2.2.3 (Red Hat) Vary: Accept-Encoding Content-Length: 338 Content-Type: text/html; charset=iso-8859-1 X-Cnection: close | clean |
http://freeresultsguide.com/?dn=gungroker.com&pid=9po28a2fw | 200 OK Content-Length: 2425 Content-Type: text/html | clean |
http://freeresultsguide.com/?dn=gungroker.com&fp=a8aKA0Ow2ACH6kRB5%2FJbXc3oJZqWmkoIryBkNHK08qLj0RLYNauMm%2BBk4EX4ar7kny2RA2QV7N4nyndozBfz3A%3D%3D&prvtof=i9X9o8I01RqDknvtKhLnin1PXEhnET42bUTCtiTCmzk%3D&poru=stJ841%2BfHp3N0ZWPrZdb5wopE1ZhfqArq9PiCqqYZldP2jHHiJcOqeIzYF45foAaOo1TPb2aSjupYuWZBJkZtgZU6LIww005FQHj8XVnZrA%3D& | 200 OK Content-Length: 271 Content-Type: text/html | clean |
http://freeresultsguide.com/test404page.js | HTTP/1.1 302 Found Date: Tue, 15 Apr 2014 03:36:05 GMT Location: http://pagesinxt.com/?dn=freeresultsguide.com&flrdr=yes&nxte=js Server: Apache/2.2.3 (Red Hat) Vary: Accept-Encoding,User-Agent Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Cnection: close X-Powered-By: PHP/5.3.21 | clean |
http://pagesinxt.com/?dn=freeresultsguide.com&flrdr=yes&nxte=js | HTTP/1.1 302 Found Date: Tue, 15 Apr 2014 03:36:06 GMT Location: http://mypageresults.com/?dn=freeresultsguide.com&flrdr=yes&nxte=js Server: Apache/2.2.3 (Red Hat) Vary: Accept-Encoding Content-Length: 338 Content-Type: text/html; charset=iso-8859-1 X-Cnection: close | clean |
http://mypageresults.com/?dn=freeresultsguide.com&flrdr=yes&nxte=js | 200 OK Content-Length: 2521 Content-Type: text/html | clean |
http://mypageresults.com/?dn=freeresultsguide.com&fp=e5fMaZRvpCV0%2FCp5zx100H%2FdEYg2Kovbm08ucHW7BVwGEk6euM1Sa5Lrhe4DDz7E8xBMCk3dLQHpsb9bP9C7ug%3D%3D&prvtof=gyugZAUEK7YCe2H6liVQl2tHhvdJBa2R4oHMu7ukRhc%3D&poru=sFrj0y%2Bm9pnBGN0xbPERHrDtoVGDywwnsoehq045%2BvmysvOzgqk74Eniw3JCmTX7JWaqAZtGZEzVO5BSVXSKJLONQ9Gh3fU2b6lVPRMhzkM%3D&flrdr=yes&nxte=js | 200 OK Content-Length: 271 Content-Type: text/html | clean |
http://mypageresults.com/test404page.js | HTTP/1.1 302 Found Date: Tue, 15 Apr 2014 03:36:07 GMT Location: http://pagesinxt.com/?dn=mypageresults.com&flrdr=yes&nxte=js Server: Apache/2.2.3 (Red Hat) Vary: Accept-Encoding,User-Agent Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Cnection: close X-Powered-By: PHP/5.3.21 | clean |
http://pagesinxt.com/?dn=mypageresults.com&flrdr=yes&nxte=js | HTTP/1.1 302 Found Date: Tue, 15 Apr 2014 03:36:07 GMT Location: http://mypageresults.com/?dn=mypageresults.com&flrdr=yes&nxte=js Server: Apache/2.2.3 (Red Hat) Vary: Accept-Encoding Content-Length: 335 Content-Type: text/html; charset=iso-8859-1 X-Cnection: close | clean |
http://mypageresults.com/?dn=mypageresults.com&flrdr=yes&nxte=js | 200 OK Content-Length: 2495 Content-Type: text/html | clean |
http://mypageresults.com/?dn=mypageresults.com&fp=RExYDBbLwuMwQYYIR3H7MgEfh5AFboDdctFZTpsodIWhFPhWX5ccgBO6Td5cjxFn5Ld3QqXmPldrLDpmqi31%2FA%3D%3D&prvtof=ZqPMwTWIGxJkf0CTMIIqyKRJmIBuR5Zlxv6LXdvlqVo%3D&poru=8A42Jxb1jf2T7Ls0IpTqpLN0CjzG9CDfK7JBiFlz%2F0i4Mr7y5Ks8stnvnZ4PZkX1vHf9NKUPBpFCN7IN1JKJuaOSUjIJrv5lBsqQ8SjNp58%3D&flrdr=yes&nxte=js | 200 OK Content-Length: 272 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=gungroker.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://gungroker.com/
Result: gungroker.com is not infected or malware details are not published yet.
Result: gungroker.com is not infected or malware details are not published yet.