Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=hothotgals.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://hothotgals.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://www.hothotgals.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Tue, 16 Sep 2014 02:25:39 GMT Location: http://hothotgals.com/ Server: Apache Content-Length: 298 Content-Type: text/html; charset=iso-8859-1 | clean |
http://hothotgals.com/ | 200 OK Content-Length: 19371 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: lolaspics.com <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"> <html xmlns="http://www.w3.org/1999/xhtml"> <head> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <title>HotHotGals.com</title> <link rel="shortcut icon" href="favicon.ico" type="image/x-icon" /> <meta name="Description" content="Hot Big Tit ...[4734 bytes skipped]... | ||
http://adspaces.ero-advertising.com/adspace/321742.js | 200 OK Content-Length: 4099 Content-Type: application/javascript | clean |
http://www.hothotgals.com/cgi-bin/atc/out.cgi?id=107&l=top1&u=http://fataunt.biz/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Tue, 16 Sep 2014 02:25:41 GMT Location: http://hothotgals.com/cgi-bin/atc/out.cgi?id=107&l=top1&u=http://fataunt.biz/ Server: Apache Content-Length: 361 Content-Type: text/html; charset=iso-8859-1 | clean |
http://hothotgals.com/cgi-bin/atc/out.cgi?id=107&l=top1&u=http://fataunt.biz/ | HTTP/1.1 302 Found Connection: close Date: Tue, 16 Sep 2014 02:25:41 GMT Location: http://google.com/ Server: Apache Content-Length: 266 Content-Type: text/html; charset=iso-8859-1 | clean |
http://google.com/ | HTTP/1.1 302 Found Cache-Control: private Connection: close Date: Tue, 16 Sep 2014 01:25:30 GMT Location: http://www.google.lt/?gws_rd=cr&ei=ipEXVMeSDYLmywPExYAg Server: gws Content-Length: 256 Content-Type: text/html; charset=UTF-8 Alternate-Protocol: 80:quic,p=0.002 P3P: CP="This is not a P3P policy! See http://www.google.com/support/accounts/bin/answer.py?hl=en&answer=151657 for more info." Set-Cookie: PREF=ID=b5944a78a980aba2:FF=0:TM=1410830730:LM=1410830730:S=SZsF2xVRJ6Ce243S; expires=Thu, 15-Sep-2016 01:25:30 GMT; path=/; domain=.google.com Set-Cookie: NID=67=K-2jVMk44zif4iVTGxjWb49l1NNJNouawYUYPY3KCb2PYOoHCmr3O0HGa-DqZSr2LvF7qw0TRR26Ed0kHPrZbgwxajH0kUR37EVMbgVnUjDyCvBHHKUcVbA_nwgP_dsa; expires=Wed, 18-Mar-2015 01:25:30 GMT; path=/; domain=.google.com; HttpOnly X-Frame-Options: SAMEORIGIN X-XSS-Protection: 1; mode=block | clean |
http://www.google.lt/?gws_rd=cr&ei=ipexvmesdylmywpexyag | 200 OK Content-Length: 52176 Content-Type: text/html | clean |
https://www.google.lt/webhp?tab=ww | 200 OK Content-Length: 64427 Content-Type: text/html | clean |
https://www.google.lt/imghp?hl=lt&tab=wi | 200 OK Content-Length: 58225 Content-Type: text/html | clean |
https://www.google.lt/webhp?hl=lt&tab=iw | 200 OK Content-Length: 64427 Content-Type: text/html | clean |
http://www.google.lt/intl/lt/options/ | HTTP/1.1 301 Moved Permanently Cache-Control: public, max-age=2592000 Connection: close Date: Tue, 16 Sep 2014 01:25:31 GMT Location: http://www.google.lt/intl/lt/about/products/ Server: sffe Content-Length: 241 Content-Type: text/html; charset=UTF-8 Expires: Thu, 16 Oct 2014 01:25:31 GMT Alternate-Protocol: 80:quic,p=0.002 X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block | clean |
http://www.google.lt/intl/lt/about/products/ | 200 OK Content-Length: 7068 Content-Type: text/html | clean |
http://www.google.lt//www.google.com/js/gweb/analytics/autotrack.js/ | 404 Not Found Content-Length: 1471 Content-Type: text/html | clean |
http://www.google.lt//www.google.com/ | 404 Not Found Content-Length: 1440 Content-Type: text/html | clean |
http://www.google.lt/test404page.js | 404 Not Found Content-Length: 1439 Content-Type: text/html | clean |
http://www.google.lt/preferences?hl=lt | 200 OK Content-Length: 63728 Content-Type: text/html | clean |
http://www.google.lt/imghp?hl=lt&tab=wi | 200 OK Content-Length: 52174 Content-Type: text/html | clean |
http://www.google.lt/imghp?hl=lt&tab=ii | 200 OK Content-Length: 52206 Content-Type: text/html | clean |
http://www.google.lt/history/optout?hl=lt | HTTP/1.1 302 Found Cache-Control: private Connection: close Date: Tue, 16 Sep 2014 01:25:33 GMT Location: https://history.google.com/history/optout?hl=lt Server: Search-History HTTP Server Content-Length: 244 Content-Type: text/html; charset=UTF-8 Alternate-Protocol: 80:quic,p=0.002 Set-Cookie: PREF=ID=7fb5a6affb13e51c:TM=1410830733:LM=1410830733:S=4AV-iEY2hEH5vR0h; expires=Thu, 15-Sep-2016 01:25:33 GMT; path=/; domain=.google.lt X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-XSS-Protection: 1; mode=block | clean |
https://history.google.com/history/optout?hl=lt | HTTP/1.1 302 Found Cache-Control: private Connection: close Date: Tue, 16 Sep 2014 01:25:33 GMT Location: http://www.google.com/ Server: Search-History HTTP Server Content-Length: 219 Content-Type: text/html; charset=UTF-8 Alternate-Protocol: 443:quic,p=0.002 Set-Cookie: PREF=ID=bc4195cecaabffc1:TM=1410830733:LM=1410830733:S=A3x1F46KpuqoXD-N; expires=Thu, 15-Sep-2016 01:25:33 GMT; path=/; domain=.google.com X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-XSS-Protection: 1; mode=block | clean |
http://www.google.com/ | HTTP/1.1 302 Found Cache-Control: private Connection: close Date: Tue, 16 Sep 2014 01:25:33 GMT Location: http://www.google.lt/?gws_rd=cr&ei=jZEXVLHrE6f9ygOam4C4Dw Server: gws Content-Length: 258 Content-Type: text/html; charset=UTF-8 Alternate-Protocol: 80:quic,p=0.002 P3P: CP="This is not a P3P policy! See http://www.google.com/support/accounts/bin/answer.py?hl=en&answer=151657 for more info." Set-Cookie: PREF=ID=12bb0092c7a13800:FF=0:TM=1410830733:LM=1410830733:S=cD0v5vQE36lWtKBJ; expires=Thu, 15-Sep-2016 01:25:33 GMT; path=/; domain=.google.com Set-Cookie: NID=67=OQZdhVIS6LacbGCx9_4ky2bf6ait4ZBEAE8hoXQhbgoBERsISsFnIFOYAlV0gZyN-hKvDJVlW-lptCN8zvo_4UBP8MDxygdxxciZvYv9Nw4LJA3EKyvCsR3SLNEYwmSE; expires=Wed, 18-Mar-2015 01:25:33 GMT; path=/; domain=.google.com; HttpOnly X-Frame-Options: SAMEORIGIN X-XSS-Protection: 1; mode=block | clean |
http://www.google.lt/?gws_rd=cr&ei=jzexvlhre6f9ygoam4c4dw | 200 OK Content-Length: 52176 Content-Type: text/html | clean |
http://www.google.lt/chrome/index.html?hl=lt&brand=CHNG&utm_source=lt-hpp&utm_medium=hpp&utm_campaign=lt | 200 OK Content-Length: 24906 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: hothotgals.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=52592000, public
Connection: keep-alive, close
Date: Tue, 16 Sep 2014 02:25:40 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
X-Powered-By: PleskLin
GET / HTTP/1.1
Host: hothotgals.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=52592000, public
Connection: keep-alive, close
Date: Tue, 16 Sep 2014 02:25:40 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
X-Powered-By: PleskLin
Second query (visit from search engine):
GET / HTTP/1.1
Host: hothotgals.com
Referer: http://www.google.com/search?q=hothotgals.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: hothotgals.com
Referer: http://www.google.com/search?q=hothotgals.com
Result:
The result is similar to the first query. There are no suspicious redirects found.