Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=manga.new-tops.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://manga.new-tops.com/ | 200 OK Content-Length: 86744 Content-Type: text/html | clean |
http://manga.new-tops.com/go.php?link=~2&ref=top-porn-gamessexgameparkcom | HTTP/1.1 302 Found Connection: close Date: Wed, 28 May 2014 03:18:04 GMT Location: http://top-porn-games.sexgamepark.com/?id=manganew-topscom Server: Apache/2 Vary: Accept-Encoding,User-Agent Content-Length: 0 Content-Type: text/html Set-Cookie: clicks=1; expires=Fri, 30-May-2014 03:18:04 GMT Set-Cookie: top-porn-gamessexgameparkcom=visited; expires=Fri, 30-May-2014 03:18:04 GMT Set-Cookie: ctime=1401247084; expires=Fri, 30-May-2014 03:18:04 GMT X-Powered-By: PHP/5.2.11 | clean |
http://top-porn-games.sexgamepark.com/?id=manganew-topscom | 200 OK Content-Length: 52409 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: new-tops.com ...[22287 bytes skipped]... br/><center> <div class="rank n25">25</div> <div class="inout inout25"> 13<br> <span>76</span> </div> </center> </div> <div class="right right25"> <h1><a href="go.php?link=~25&ref=manganew-topscom">Hentai Cuckolds World</a></h1> <a href="go.php?link=~25&ref=manganew-topscom"><img src=http://new-tops.com/manga/hcw7.jpg alt="Hentai Cuckolds World" width=130 height=110 border=0><br></a> <div class="txt txt25">The latest and greatest hentai cuckolds</div> </div> </div> <div class="element e26"> <div class="left"> <center> <div class="rank n26">26</div> <div class="inout inout26"> 11<br> <span>41</span> </div> </center> </div ...[48546 bytes skipped]... | ||
http://top-porn-games.sexgamepark.com/go.php?link=~1&ref=famouscartoonsexjournalcom | HTTP/1.1 302 Found Connection: close Date: Tue, 27 May 2014 20:15:50 GMT Location: http://famous.cartoonsexjournal.com/ Server: Apache/2.2.23 (Unix) mod_ssl/2.2.23 OpenSSL/1.0.0-fips PHP/5.2.17 Content-Length: 0 Content-Type: text/html Set-Cookie: clicks=1; expires=Thu, 29-May-2014 20:15:50 GMT Set-Cookie: famouscartoonsexjournalcom=visited; expires=Thu, 29-May-2014 20:15:50 GMT Set-Cookie: ctime=1401221750; expires=Thu, 29-May-2014 20:15:50 GMT X-Powered-By: PHP/5.2.17 | clean |
http://famous.cartoonsexjournal.com/ | 200 OK Content-Length: 41824 Content-Type: text/html | clean |
http://famous.cartoonsexjournal.com/out.php?p=50&l=p301&o=a3fff1 | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate Connection: close Date: Wed, 28 May 2014 03:18:09 GMT Pragma: no-cache Location: http://www.hentai-movie.com/cgi-bin/in.cgi?famouscsj Server: nginx Content-Length: 0 Content-Type: text/html Set-Cookie: ats_cookie=1401247089%7C%7C1%7C; expires=Fri, 27-Jun-2014 03:18:09 GMT Set-Cookie: ats_trade=bookmarks%7Chentai-movie.com%7C; expires=Thu, 29-May-2014 03:18:09 GMT Set-Cookie: ca=hentai-movie.com; expires=Wed, 28-May-2014 04:18:09 GMT | clean |
http://www.hentai-movie.com/cgi-bin/in.cgi?famouscsj | HTTP/1.1 302 Found Connection: close Date: Wed, 28 May 2014 03:18:09 GMT Location: http://www.hentai-movie.com/index.html Server: Apache/1.3.41 (Unix) PHP/4.4.9 with Suhosin-Patch Content-Type: text/html; charset=iso-8859-1 Set-Cookie: from=famouscsj; expires=Thu, 29-May-2014 03-18-09 GMT; path=/; Set-Cookie: uid=89485762; expires=Fri, 29-May-2015 03-18-09 GMT; path=/; Set-Cookie: time=1401247089; expires=Thu, 29-May-2014 03-18-09 GMT; path=/; Set-Cookie: cn=1; path=/; | clean |
http://www.hentai-movie.com/index.html | 200 OK Content-Length: 39795 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) <!--
sw=screen.width+'x'+screen.height;
bd=screen.colorDepth;
dt=new Date();dt=dt.getTimezoneOffset()/-60;
loc=escape(document.location);
re=escape(parent.document.referrer);re=(re=="undefined"||re=="")?"bookmark":re;
req="id="+3281+"&loc="+loc+"&re="+re+"&tz="+dt+"&sw="+sw+"&bd="+bd+"&js=0";
document.write('<img width=4 height=4 src="http://cs.sexcounter.com/cs/?'+req+'">');
Antivirus reports:
| ||
http://www.hentai-movie.com/cgi-bin/out.cgi?n=hgfriend&id=1651&url=http%3A%2F%2Fwww.hentaigirlfriend.com%2Frand.php&p=1 | HTTP/1.1 302 Found Connection: close Date: Wed, 28 May 2014 03:18:10 GMT Location: http://www.hentaigirlfriend.com/rand.php Server: Apache/1.3.41 (Unix) PHP/4.4.9 with Suhosin-Patch Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.hentaigirlfriend.com/rand.php | HTTP/1.1 302 Found Connection: close Date: Wed, 28 May 2014 03:18:10 GMT Location: http://www.hentaigirlfriend.com Server: Apache/2.4.9 (Fedora) mod_fastcgi/mod_fastcgi-SNAP-0910052141 OpenSSL/1.0.1e-fips mod_fcgid/2.3.9 PHP/5.5.12 Content-Length: 0 Content-Type: text/html X-Powered-By: PHP/5.5.12 | clean |
http://www.hentaigirlfriend.com/ | HTTP/1.1 302 Found Connection: close Date: Wed, 28 May 2014 03:18:11 GMT Location: http://www.megabooru.com Server: Apache/2.4.9 (Fedora) mod_fastcgi/mod_fastcgi-SNAP-0910052141 OpenSSL/1.0.1e-fips mod_fcgid/2.3.9 PHP/5.5.12 Content-Length: 384 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.megabooru.com/ | 200 OK Content-Length: 36798 Content-Type: text/html | clean |
http://www.megabooru.com/lib/jquery-1.4.2.min.js | 200 OK Content-Length: 72174 Content-Type: text/javascript | clean |
http://www.hentai-movie.com/lib/jquery.autocomplete.js | HTTP/1.1 302 Found Connection: close Date: Wed, 28 May 2014 03:18:13 GMT Location: http://galls.maniacpass.com/ Server: Apache/1.3.41 (Unix) PHP/4.4.9 with Suhosin-Patch Content-Type: text/html; charset=iso-8859-1 | clean |
http://galls.maniacpass.com/ | 200 OK Content-Length: 42563 Content-Type: text/html | clean |
http://maniacpass.com/jsc/jquery/jquery.js | 200 OK Content-Length: 91555 Content-Type: application/javascript | clean |
http://maniacpass.com/jsc/ui/ui.min.js | 200 OK Content-Length: 208528 Content-Type: application/javascript | clean |
http://maniacpass.com/js/tabcontent.js | 200 OK Content-Length: 8866 Content-Type: application/javascript | clean |
http://maniacpass.com/js/jquery.bxSlider.min.js | 200 OK Content-Length: 21774 Content-Type: application/javascript | clean |
http://maniacpass.com/loader.php?js[]=searchGlobal&js[]=new_main | 200 OK Content-Length: 0 Content-Type: text/javascript | clean |
http://www.hentai-movie.com/lib/index.html?id=404 | HTTP/1.1 302 Found Connection: close Date: Wed, 28 May 2014 03:18:15 GMT Location: http://galls.maniacpass.com/ Server: Apache/1.3.41 (Unix) PHP/4.4.9 with Suhosin-Patch Content-Type: text/html; charset=iso-8859-1 | clean |
http://galls.maniacpass.com/test404page.js | HTTP/1.1 200 OK Connection: close Date: Wed, 28 May 2014 03:18:15 GMT Accept-Ranges: bytes ETag: "-1973649741965707987" Server: lighttpd/1.4.11 Content-Length: 118 Content-Type: text/html Last-Modified: Tue, 28 Nov 2006 23:00:00 GMT | clean |
http://www.hentai-movie.com/lib/jquery.cookie.js | HTTP/1.1 302 Found Connection: close Date: Wed, 28 May 2014 03:18:15 GMT Location: http://galls.maniacpass.com/ Server: Apache/1.3.41 (Unix) PHP/4.4.9 with Suhosin-Patch Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.hentai-movie.com/lib/jquery.form-defaults.js | HTTP/1.1 302 Found Connection: close Date: Wed, 28 May 2014 03:18:15 GMT Location: http://galls.maniacpass.com/ Server: Apache/1.3.41 (Unix) PHP/4.4.9 with Suhosin-Patch Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.hentai-movie.com/lib/jquery.tablesorter.min.js | HTTP/1.1 302 Found Connection: close Date: Wed, 28 May 2014 03:18:16 GMT Location: http://galls.maniacpass.com/ Server: Apache/1.3.41 (Unix) PHP/4.4.9 with Suhosin-Patch Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.hentai-movie.com/lib/shimmie.js | HTTP/1.1 302 Found Connection: close Date: Wed, 28 May 2014 03:18:16 GMT Location: http://galls.maniacpass.com/ Server: Apache/1.3.41 (Unix) PHP/4.4.9 with Suhosin-Patch Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.hentai-movie.com/themes/megabooru/sidebar.js | HTTP/1.1 302 Found Connection: close Date: Wed, 28 May 2014 03:18:16 GMT Location: http://galls.maniacpass.com/ Server: Apache/1.3.41 (Unix) PHP/4.4.9 with Suhosin-Patch Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.hentai-movie.com/themes/megabooru/script.js?123 | HTTP/1.1 302 Found Connection: close Date: Wed, 28 May 2014 03:18:16 GMT Location: http://galls.maniacpass.com/ Server: Apache/1.3.41 (Unix) PHP/4.4.9 with Suhosin-Patch Content-Type: text/html; charset=iso-8859-1 | clean |
http://syndication.exoclick.com/splash.php?cat=99&idsite=275952&idzone=854562&login=z3n666&type=3 | 200 OK Content-Length: 5827 Content-Type: application/x-javascript | clean |
http://xapi.juicyads.com/js/jac.js | 200 OK Content-Length: 91344 Content-Type: application/x-javascript | clean |
http://famous.cartoonsexjournal.com/cgi-bin/out.cgi?n=channel&id=1746&url=http%3A%2F%2Fcartoonpornchannel.com%2F&p=2 | 404 Not Found Content-Length: 213 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: manga.new-tops.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 28 May 2014 03:18:04 GMT
Server: Apache/2
Vary: Accept-Encoding,User-Agent
Content-Type: text/html
Set-Cookie: bhit=0; expires=Fri, 30-May-2014 03:18:04 GMT
Set-Cookie: intm=1401247084; expires=Fri, 30-May-2014 03:18:04 GMT
Set-Cookie: refer=noref; expires=Fri, 30-May-2014 03:18:04 GMT
Set-Cookie: noref=visited; expires=Fri, 30-May-2014 03:18:04 GMT
Set-Cookie: page=main; expires=Fri, 30-May-2014 03:18:04 GMT
X-Powered-By: PHP/5.2.11
GET / HTTP/1.1
Host: manga.new-tops.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 28 May 2014 03:18:04 GMT
Server: Apache/2
Vary: Accept-Encoding,User-Agent
Content-Type: text/html
Set-Cookie: bhit=0; expires=Fri, 30-May-2014 03:18:04 GMT
Set-Cookie: intm=1401247084; expires=Fri, 30-May-2014 03:18:04 GMT
Set-Cookie: refer=noref; expires=Fri, 30-May-2014 03:18:04 GMT
Set-Cookie: noref=visited; expires=Fri, 30-May-2014 03:18:04 GMT
Set-Cookie: page=main; expires=Fri, 30-May-2014 03:18:04 GMT
X-Powered-By: PHP/5.2.11
Second query (visit from search engine):
GET / HTTP/1.1
Host: manga.new-tops.com
Referer: http://www.google.com/search?q=manga.new-tops.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: manga.new-tops.com
Referer: http://www.google.com/search?q=manga.new-tops.com
Result:
The result is similar to the first query. There are no suspicious redirects found.