Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=hd-redtube.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://hd-redtube.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.hd-redtube.com/ | 200 OK Content-Length: 77692 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.hardcore-sex-videos.com <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"> <html xmlns="http://www.w3.org/1999/xhtml" lang="en-US"> <head profile="http://gmpg.org/xfn/11"> <meta http-equiv="Content-Type" content="text/html; charset=UTF-8" /> <title> HD RedTube - Free HD Porn Videos</title> <meta name="robots" content="index, archive, follow" /> &l ...[4229 bytes skipped]... | ||
http://ads.juicyads.com/jsclients/jac.js | 200 OK Content-Length: 91344 Content-Type: application/x-javascript | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1/jquery.min.js?ver=1.4.2 | 200 OK Content-Length: 95786 Content-Type: text/javascript | clean |
http://www.hd-redtube.com/wp-content/themes/hd-redtube/js/superfish.js | 200 OK Content-Length: 2841 Content-Type: application/javascript | clean |
http://www.hd-redtube.com/wp-content/themes/hd-redtube/js/theme-script.js | 200 OK Content-Length: 1001 Content-Type: application/javascript | clean |
http://www.hd-redtube.com/wp-includes/js/jquery/jquery.js?ver=1.8.3 | 200 OK Content-Length: 93658 Content-Type: application/javascript | clean |
http://www.hd-redtube.com/wp-content/plugins/acurax-on-click-pop-under/js.php | 200 OK Content-Length: 2775 Content-Type: text/html | clean |
http://www.hd-redtube.com/test404page.js | 404 Not Found Content-Length: 18246 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.hardcore-sex-videos.com <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"> <html xmlns="http://www.w3.org/1999/xhtml" lang="en-US"> <head profile="http://gmpg.org/xfn/11"> <meta http-equiv="Content-Type" content="text/html; charset=UTF-8" /> <title>Page not found « HD RedTube - Free HD Porn Videos</title> <meta name="robots" content="index, ar ...[4255 bytes skipped]... | ||
http://www.hd-redtube.com/wp-content/plugins/wp-postratings/postratings-js.js?ver=1.63 | 200 OK Content-Length: 3227 Content-Type: application/javascript | clean |
http://www.hd-redtube.com/czech-porn | HTTP/1.1 302 Moved Temporarily Cache-Control: private, max-age=360, must-revalidate Connection: close Date: Sat, 06 Sep 2014 20:01:28 GMT Location: http://www.ceske-porno.tv/ Server: Apache Vary: Cookie,Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Sat, 13 Sep 2014 20:01:28 GMT X-Pingback: http://www.hd-redtube.com/xmlrpc.php X-Powered-By: PHP/5.3.28 | clean |
http://www.ceske-porno.tv/ | 200 OK Content-Length: 83696 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var puShown = false;
function doOpen(url) { if ( puShown == true ) { return true; } win = window.open(url, 'ljPu', 'toolbar,status,resizable,scrollbars,menubar,location,height=760,width=1200'); if ( win ) { win.blur(); puShown = true; { document.addEventListener( 'click', checkTarget, false ); } } function checkTarget(e) { if ( !getCookie('popundr') ) { var e = e || window.event; var win = doOpen('http://www.sex-list.cz/in.php3?id=ceskavidea'); setCookie('popundr', 1, 24*60*60*1000); } } initPu(); Antivirus reports:
| ||
http://www.ceske-porno.tv/varovani.js | 200 OK Content-Length: 1611 Content-Type: text/javascript | clean |
http://www.ceske-porno.tv/wp-content/themes/wptube/js/jquery-1.3.2.min.js | 200 OK Content-Length: 57254 Content-Type: text/javascript | clean |
http://www.ceske-porno.tv/wp-content/themes/wptube/js/jqueryslidemenu/jqueryslidemenu.js | 200 OK Content-Length: 2095 Content-Type: text/javascript | clean |
http://www.ceske-porno.tv/wp-includes/js/jquery/jquery.js?ver=1.10.2 | 200 OK Content-Length: 93128 Content-Type: text/javascript | clean |
http://www.ceske-porno.tv/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: text/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: hd-redtube.com
Result:
GET / HTTP/1.1
Host: hd-redtube.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: hd-redtube.com
Referer: http://www.google.com/search?q=hd-redtube.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: hd-redtube.com
Referer: http://www.google.com/search?q=hd-redtube.com
Result:
The result is similar to the first query. There are no suspicious redirects found.