Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://www.installment-loans-usa.com/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: www.installment-loans-usa.com Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 307 Moved Permanently Connection: close Date: Wed, 10 Sep 2014 11:39:26 GMT Location: http://trkur.com/tk?o=9474&p=149438 Server: Apache/2.2.27 (Unix) mod_ssl/2.2.27 OpenSSL/1.0.1e-fips mod_bwlimited/1.4 Content-Type: text/html X-Powered-By: PHP/5.4.30 | malicious |
URL: http://trkur.com/tk?o=9474&p=149438 (imitation of visitor from search engine) GET /tk?o=9474&p=149438 HTTP/1.1 Host: trkur.com Referer: http://www.google.com/search?q=redirect+check2 | HTTP/1.1 302 Found Cache-Control: no-cache, no-store, must-revalidate, max-age=0 Cache-Control: no-cache Connection: close Date: Wed, 10 Sep 2014 11:39:26 GMT Pragma: no-cache Location: http://linkjumps.com/?p=149438&o=9474&reason=country&iso=LT&rand=29,8 Server: LiteSpeed Content-Length: 377 Content-Type: text/html; charset=utf-8 X-Powered-By: PHP/5.3.27 | suspicious |
Scanned pages/files
Request | Server response | Status |
http://www.installment-loans-usa.com/ | 403 Forbidden Content-Length: 0 Content-Type: text/html | clean |
http://www.installment-loans-usa.com/test404page.js | HTTP/1.1 403 Forbidden Connection: close Date: Wed, 10 Sep 2014 11:39:26 GMT Location: http://www.installment-loans-usa.com Server: Apache/2.2.27 (Unix) mod_ssl/2.2.27 OpenSSL/1.0.1e-fips mod_bwlimited/1.4 Content-Length: 0 Content-Type: text/html X-Powered-By: PHP/5.4.30 | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=installment-loans-usa.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://installment-loans-usa.com/
Result: installment-loans-usa.com is not infected or malware details are not published yet.
Result: installment-loans-usa.com is not infected or malware details are not published yet.