Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://maxpaydayloancash.com/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: maxpaydayloancash.com Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 301 Moved Permanently Connection: close Date: Sat, 05 Apr 2014 05:23:04 GMT Location: http://instant-online-refills.com/?wm=19427&tr=8030 Server: nginx/1.4.7 Content-Length: 334 Content-Type: text/html; charset=iso-8859-1 | malicious |
Scanned pages/files
Request | Server response | Status |
http://maxpaydayloancash.com/ | 200 OK Content-Length: 19016 Content-Type: text/html | clean |
http://maxpaydayloancash.com//tracedseals.starfieldtech.com/siteseal/get?scriptId=cdSiteSeal3&cdSealType=Seal3&sealId=55e4ye7y7mb73c948e86db3c0296e5f29by7mb7355e4ye76fff7f9022a42543f/ | HTTP/1.1 302 Found Connection: close Date: Sat, 05 Apr 2014 05:23:05 GMT Location: http://instant-online-refills.com/?wm=19427&tr=8030 Server: nginx/1.4.7 Content-Length: 310 Content-Type: text/html; charset=iso-8859-1 | clean |
http://instant-online-refills.com/?wm=19427&tr=8030 | 200 OK Content-Length: 7575 Content-Type: text/html | clean |
http://dpk6uif3e72gx.cloudfront.net/scripts/js3caf.js | 200 OK Content-Length: 4713 Content-Type: application/x-javascript | clean |
http://dpk6uif3e72gx.cloudfront.net/scripts/tier2caf.js | 200 OK Content-Length: 7056 Content-Type: application/x-javascript | clean |
http://maxpaydayloancash.com/scripts/feedmeCaf.php?q=&ip=78.158.11.226&max=10&hl=lt&d=instant-online-refills.com&ron=0&adult=0 | HTTP/1.1 302 Found Connection: close Date: Sat, 05 Apr 2014 05:23:06 GMT Location: http://instant-online-refills.com/?wm=19427&tr=8030 Server: nginx/1.4.7 Content-Length: 310 Content-Type: text/html; charset=iso-8859-1 | clean |
http://instant-online-refills.com/test404page.js | 400 Bad Request Content-Length: 20 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=maxpaydayloancash.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://maxpaydayloancash.com/
Result: maxpaydayloancash.com is not infected or malware details are not published yet.
Result: maxpaydayloancash.com is not infected or malware details are not published yet.