Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://www.hotlovedates.com.com/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: www.hotlovedates.com.com Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sun, 26 Oct 2014 14:08:45 GMT Location: http://gen.xyz/availability-checker.php?src=hotlovedates.com.com Server: nginx/1.4.6 (Ubuntu) Content-Type: text/html Set-Cookie: SRVNAME=W2; path=/ X-Powered-By: PHP/5.5.9-1ubuntu4.4 | malicious |
Scanned pages/files
Request | Server response | Status |
http://www.hotlovedates.com.com/browse/au_towns.html | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sun, 26 Oct 2014 14:07:41 GMT Location: http://gen.xyz/availability-checker.php?src=hotlovedates.com.com Server: nginx/1.4.6 (Ubuntu) Content-Type: text/html Set-Cookie: SRVNAME=W1; path=/ X-Powered-By: PHP/5.5.9-1ubuntu4.4 | clean |
http://gen.xyz/availability-checker.php?src=hotlovedates.com.com | HTTP/1.1 302 Found Connection: close Date: Sun, 26 Oct 2014 14:08:10 GMT Via: 1.1 varnish Age: 0 Location: http://gen.xyz/success#hotlovedates.xyz Server: C2M Server v1.01 Vary: Accept-Encoding Content-Type: text/html X-Varnish: 773688053 X-Varnish-Cache: MISS | clean |
http://gen.xyz/success | 200 OK Content-Length: 17989 Content-Type: text/html | clean |
http://gen.xyz/wp-content/themes/xyz/js/theme.js?v=1.1 | 200 OK Content-Length: 300734 Content-Type: application/javascript | clean |
http://www.hotlovedates.com.com/wp-content/themes/xyz/js/responsive-nav.js?v=1 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sun, 26 Oct 2014 14:07:46 GMT Location: http://gen.xyz/availability-checker.php?src=hotlovedates.com.com Server: nginx/1.4.6 (Ubuntu) Content-Type: text/html Set-Cookie: SRVNAME=W1; path=/ X-Powered-By: PHP/5.5.9-1ubuntu4.4 | clean |
http://gen.xyz/test404page.js | 404 Not Found Content-Length: 18550 Content-Type: text/html | clean |
http://gen.xyz/wp-content/themes/xyz/js/responsive-nav.js?v=1 | 200 OK Content-Length: 15560 Content-Type: application/javascript | clean |
http://gen.xyz/wp-content/themes/xyz/js/jquery.touchSwipe.min.js?v=1 | 200 OK Content-Length: 10629 Content-Type: application/javascript | clean |
http://gen.xyz/wp-content/themes/xyz/js/jquery.liquid-slider.js?v=1 | 200 OK Content-Length: 49175 Content-Type: application/javascript | clean |
http://gen.xyz/wp-content/themes/xyz/js/punycode.js?v=1 | 200 OK Content-Length: 11730 Content-Type: application/javascript | clean |
http://gen.xyz/ | 200 OK Content-Length: 20144 Content-Type: text/html | clean |
http://gen.xyz/about | 200 OK Content-Length: 18404 Content-Type: text/html | clean |
http://gen.xyz/registrars | 200 OK Content-Length: 32077 Content-Type: text/html | clean |
http://gen.xyz/premiums | 200 OK Content-Length: 28767 Content-Type: text/html | clean |
http://gen.xyz/media | 200 OK Content-Length: 61212 Content-Type: text/html | clean |
http://gen.xyz/blog | 200 OK Content-Length: 33778 Content-Type: text/html | clean |
http://gen.xyz//platform.twitter.com/widgets.js/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Sun, 26 Oct 2014 14:08:25 GMT Pragma: no-cache Via: 1.1 varnish Age: 0 Location: http://gen.xyz/platform.twitter.com/widgets.js/ Server: C2M Server v1.01 Vary: Accept-Encoding Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Pingback: http://gen.xyz/xmlrpc.php X-Varnish: 1643839145 X-Varnish-Cache: MISS | clean |
http://gen.xyz/platform.twitter.com/widgets.js/ | 404 Not Found Content-Length: 18567 Content-Type: text/html | clean |
http://gen.xyz/xyz101 | 200 OK Content-Length: 23623 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=hotlovedates.com.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://hotlovedates.com.com/
Result: hotlovedates.com.com is not infected or malware details are not published yet.
Result: hotlovedates.com.com is not infected or malware details are not published yet.