Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=nhtowel.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: nhtowel.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache
Date: Sun, 21 Sep 2014 09:27:38 GMT
Pragma: no-cache
Server: Microsoft-IIS/7.5
Content-Length: 5419
Content-Type: text/html; charset=utf-8
Expires: -1
P3p: CP="CAO PSA OUR"
Set-Cookie: SessionID=d7a3f4dd-4e74-4cfd-b4e8-fc5a9584b034; path=/
Set-Cookie: VisitorID=357ed0c6-1483-4491-87c9-3f5d7aec7476&Exp=9/21/2017 2:27:39 AM; expires=Thu, 21-Sep-2017 09:27:39 GMT; path=/
X-AspNet-Version: 4.0.30319
X-Powered-By: ASP.NET
...5419 bytes of data.
GET / HTTP/1.1
Host: nhtowel.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache
Date: Sun, 21 Sep 2014 09:27:38 GMT
Pragma: no-cache
Server: Microsoft-IIS/7.5
Content-Length: 5419
Content-Type: text/html; charset=utf-8
Expires: -1
P3p: CP="CAO PSA OUR"
Set-Cookie: SessionID=d7a3f4dd-4e74-4cfd-b4e8-fc5a9584b034; path=/
Set-Cookie: VisitorID=357ed0c6-1483-4491-87c9-3f5d7aec7476&Exp=9/21/2017 2:27:39 AM; expires=Thu, 21-Sep-2017 09:27:39 GMT; path=/
X-AspNet-Version: 4.0.30319
X-Powered-By: ASP.NET
...5419 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: nhtowel.com
Referer: http://www.google.com/search?q=nhtowel.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: nhtowel.com
Referer: http://www.google.com/search?q=nhtowel.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://nhtowel.com/ | 200 OK Content-Length: 5419 Content-Type: text/html | clean |
http://code.jquery.com/jquery-latest.min.js | 200 OK Content-Length: 95786 Content-Type: application/x-javascript | clean |
http://nhtowel.com/js/standard.js?rte=1&tm=2&dn=nhtowel.com&tid=1020 | 200 OK Content-Length: 1297 Content-Type: text/javascript | clean |
http://nhtowel.com/static/cash-advance?slt=21&slr=1&lpt=0&yt= | HTTP/1.1 302 Found Cache-Control: private Date: Sun, 21 Sep 2014 09:27:41 GMT Location: /click Server: Microsoft-IIS/7.5 Content-Length: 123 Content-Type: text/html; charset=utf-8 P3p: CP="CAO PSA OUR" Set-Cookie: SessionID=80ae7b7d-9810-4dc2-bb76-ec485091132f; path=/ Set-Cookie: VisitorID=2f9d32e0-40b7-4805-a90c-286809c68876&Exp=9/21/2017 2:27:41 AM; expires=Thu, 21-Sep-2017 09:27:41 GMT; path=/ X-AspNet-Version: 4.0.30319 X-Powered-By: ASP.NET | clean |
http://nhtowel.com/click | 200 OK Content-Length: 5419 Content-Type: text/html | clean |
http://nhtowel.com/static/debt-consolidation?slt=21&slr=2&lpt=0&yt= | HTTP/1.1 302 Found Cache-Control: private Date: Sun, 21 Sep 2014 09:27:43 GMT Location: /click Server: Microsoft-IIS/7.5 Content-Length: 123 Content-Type: text/html; charset=utf-8 P3p: CP="CAO PSA OUR" Set-Cookie: SessionID=8e50b7e6-2a31-4224-bdc6-243554ad01f0; path=/ Set-Cookie: VisitorID=edb2c47b-820f-477b-8dc2-2b82b9d63b11&Exp=9/21/2017 2:27:43 AM; expires=Thu, 21-Sep-2017 09:27:43 GMT; path=/ X-AspNet-Version: 4.0.30319 X-Powered-By: ASP.NET | clean |
http://nhtowel.com/test404page.js | 200 OK Content-Length: 5420 Content-Type: text/html | clean |
http://nhtowel.com/static/insurance?slt=21&slr=3&lpt=0&yt= | HTTP/1.1 302 Found Cache-Control: private Date: Sun, 21 Sep 2014 09:27:44 GMT Location: /click Server: Microsoft-IIS/7.5 Content-Length: 123 Content-Type: text/html; charset=utf-8 P3p: CP="CAO PSA OUR" Set-Cookie: SessionID=8a973405-4e49-4805-9453-daff7cc50b61; path=/ Set-Cookie: VisitorID=83e19093-c96b-4f12-a4c3-639953cb59d4&Exp=9/21/2017 2:27:45 AM; expires=Thu, 21-Sep-2017 09:27:45 GMT; path=/ X-AspNet-Version: 4.0.30319 X-Powered-By: ASP.NET | clean |
http://nhtowel.com/static/free-credit-report?slt=21&slr=4&lpt=0&yt= | HTTP/1.1 302 Found Cache-Control: private Date: Sun, 21 Sep 2014 09:27:45 GMT Location: /click Server: Microsoft-IIS/7.5 Content-Length: 123 Content-Type: text/html; charset=utf-8 P3p: CP="CAO PSA OUR" Set-Cookie: SessionID=91c9c236-eb7f-45b3-b618-857722cae942; path=/ Set-Cookie: VisitorID=d9ec5ad5-f7e4-453c-8aad-cb652833087d&Exp=9/21/2017 2:27:45 AM; expires=Thu, 21-Sep-2017 09:27:45 GMT; path=/ X-AspNet-Version: 4.0.30319 X-Powered-By: ASP.NET | clean |
http://nhtowel.com/static/cell-phones?slt=21&slr=5&lpt=0&yt= | HTTP/1.1 302 Found Cache-Control: private Date: Sun, 21 Sep 2014 09:27:45 GMT Location: /click Server: Microsoft-IIS/7.5 Content-Length: 123 Content-Type: text/html; charset=utf-8 P3p: CP="CAO PSA OUR" Set-Cookie: SessionID=c776a94b-4533-40d5-9220-380db9323e54; path=/ Set-Cookie: VisitorID=423634d9-6cb6-4664-8d28-b608a1bb15f8&Exp=9/21/2017 2:27:46 AM; expires=Thu, 21-Sep-2017 09:27:46 GMT; path=/ X-AspNet-Version: 4.0.30319 X-Powered-By: ASP.NET | clean |
http://nhtowel.com/static/life-insurance?slt=21&slr=6&lpt=0&yt= | 500 Status read failed: Соединение ÑазоÑвано дÑÑгой ÑÑоÑоной Content-Length: 140 Content-Type: text/plain | clean |
http://nhtowel.com/static/credit-card-application?slt=21&slr=7&lpt=0&yt= | 500 Status read failed: Соединение ÑазоÑвано дÑÑгой ÑÑоÑоной Content-Length: 140 Content-Type: text/plain | clean |
http://nhtowel.com/static/real-estate?slt=21&slr=8&lpt=0&yt= | 500 Status read failed: Соединение ÑазоÑвано дÑÑгой ÑÑоÑоной Content-Length: 140 Content-Type: text/plain | clean |
http://nhtowel.com/static/cheap-airfare?slt=21&slr=9&lpt=0&yt= | 500 Status read failed: Соединение ÑазоÑвано дÑÑгой ÑÑоÑоной Content-Length: 140 Content-Type: text/plain | clean |
http://nhtowel.com/static/finance?slt=21&slr=10&lpt=0&yt= | 500 Status read failed: Соединение ÑазоÑвано дÑÑгой ÑÑоÑоной Content-Length: 140 Content-Type: text/plain | clean |
http://nhtowel.com/renewal.aspx | 500 Status read failed: Соединение ÑазоÑвано дÑÑгой ÑÑоÑоной Content-Length: 140 Content-Type: text/plain | clean |