Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: nudechat.freelivecamgirls.com
Result:
HTTP/1.1 200 OK
Connection: Keep-Alive
Date: Sun, 25 Jan 2015 13:02:27 GMT
ETag: TESTBED
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Keep-Alive: timeout=5, max=7
P3P: CP="DSP LAW"
Set-Cookie: cams_who=r,RR8G6dvqYUwSLNtJPAnHUS6Oy01Ww3zazhhNvtU9KlCKVDD4wT8BO8Hv_8BEZ6ihaPw5aVJEaAvSmb8VdsV5qkaomKU2kvTdF40Rr3ic0JSnxAvDXKg02mkSGT_KZWlddVYJW_AEBV0lF5UrJ6/vGJ86AXct03Ocu16z2zRI8Swx6Jtk8_2xo8dwCFJf88aiNKPwiCQVAkvurBdEu4MbuQ--; path=/; domain=nudechat.freelivecamgirls.com
Set-Cookie: v_hash=_english_6245; path=/; domain=.nudechat.freelivecamgirls.com; expires=Tue, 24-Feb-2015 13:02:27 GMT
Set-Cookie: IP_COUNTRY=Lithuania; path=/; domain=.nudechat.freelivecamgirls.com; expires=Tue, 24-Feb-2015 13:02:27 GMT
Set-Cookie: cams_tr=r,V8rjiUIGmintSi_drdLS0FYl17PgZer_v20I_mvaGJxfff2JmkpYpkewTLTQA_6F; path=/; domain=.nudechat.freelivecamgirls.com; expires=Tue, 24-Feb-2015 13:02:27 GMT
Set-Cookie: LOCATION_FROM_IP=country&Lithuania&area_code&0&longitude&25.3167&country_name&Lithuania&lat&54.6833&country_code<®ion&65&state&&city&Vilnius&postal_code&&latitude&54.6833&lon&25.3167&dma_code&0&country_code3<U; path=/; domain=.nudechat.freelivecamgirls.com; expires=Tue, 24-Feb-2015 13:02:27 GMT
Set-Cookie: HISTORY=20150125-1-Dc; path=/; domain=.nudechat.freelivecamgirls.com; expires=Tue, 24-Feb-2015 13:02:27 GMT
Set-Cookie: AB_TRACKING=TqDpG8EvH7bGEuin5ROM2l; path=/; domain=.nudechat.freelivecamgirls.com; expires=Tue, 24-Feb-2015 13:02:27 GMT
Set-Cookie: ANON_CONFIRM=TRUE; path=/; domain=.nudechat.freelivecamgirls.com; expires=Mon, 26-Jan-2015 13:02:27 GMT
Set-Cookie: REFERRAL_URL=; path=/; domain=.nudechat.freelivecamgirls.com; expires=Mon, 26-Jan-2015 01:02:27 GMT
Set-Cookie: click_id_time=1792784127_2015-01-25 05:02:27; path=/; domain=.nudechat.freelivecamgirls.com; expires=Tue, 24-Feb-2015 13:02:27 GMT
X-ApacheServer: ki52-19.friendfinderinc.com
GET / HTTP/1.1
Host: nudechat.freelivecamgirls.com
Result:
HTTP/1.1 200 OK
Connection: Keep-Alive
Date: Sun, 25 Jan 2015 13:02:27 GMT
ETag: TESTBED
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html;charset=UTF-8
Keep-Alive: timeout=5, max=7
P3P: CP="DSP LAW"
Set-Cookie: cams_who=r,RR8G6dvqYUwSLNtJPAnHUS6Oy01Ww3zazhhNvtU9KlCKVDD4wT8BO8Hv_8BEZ6ihaPw5aVJEaAvSmb8VdsV5qkaomKU2kvTdF40Rr3ic0JSnxAvDXKg02mkSGT_KZWlddVYJW_AEBV0lF5UrJ6/vGJ86AXct03Ocu16z2zRI8Swx6Jtk8_2xo8dwCFJf88aiNKPwiCQVAkvurBdEu4MbuQ--; path=/; domain=nudechat.freelivecamgirls.com
Set-Cookie: v_hash=_english_6245; path=/; domain=.nudechat.freelivecamgirls.com; expires=Tue, 24-Feb-2015 13:02:27 GMT
Set-Cookie: IP_COUNTRY=Lithuania; path=/; domain=.nudechat.freelivecamgirls.com; expires=Tue, 24-Feb-2015 13:02:27 GMT
Set-Cookie: cams_tr=r,V8rjiUIGmintSi_drdLS0FYl17PgZer_v20I_mvaGJxfff2JmkpYpkewTLTQA_6F; path=/; domain=.nudechat.freelivecamgirls.com; expires=Tue, 24-Feb-2015 13:02:27 GMT
Set-Cookie: LOCATION_FROM_IP=country&Lithuania&area_code&0&longitude&25.3167&country_name&Lithuania&lat&54.6833&country_code<®ion&65&state&&city&Vilnius&postal_code&&latitude&54.6833&lon&25.3167&dma_code&0&country_code3<U; path=/; domain=.nudechat.freelivecamgirls.com; expires=Tue, 24-Feb-2015 13:02:27 GMT
Set-Cookie: HISTORY=20150125-1-Dc; path=/; domain=.nudechat.freelivecamgirls.com; expires=Tue, 24-Feb-2015 13:02:27 GMT
Set-Cookie: AB_TRACKING=TqDpG8EvH7bGEuin5ROM2l; path=/; domain=.nudechat.freelivecamgirls.com; expires=Tue, 24-Feb-2015 13:02:27 GMT
Set-Cookie: ANON_CONFIRM=TRUE; path=/; domain=.nudechat.freelivecamgirls.com; expires=Mon, 26-Jan-2015 13:02:27 GMT
Set-Cookie: REFERRAL_URL=; path=/; domain=.nudechat.freelivecamgirls.com; expires=Mon, 26-Jan-2015 01:02:27 GMT
Set-Cookie: click_id_time=1792784127_2015-01-25 05:02:27; path=/; domain=.nudechat.freelivecamgirls.com; expires=Tue, 24-Feb-2015 13:02:27 GMT
X-ApacheServer: ki52-19.friendfinderinc.com
Second query (visit from search engine):
GET / HTTP/1.1
Host: nudechat.freelivecamgirls.com
Referer: http://www.google.com/search?q=nudechat.freelivecamgirls.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: nudechat.freelivecamgirls.com
Referer: http://www.google.com/search?q=nudechat.freelivecamgirls.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://nudechat.freelivecamgirls.com/ | 200 OK Content-Length: 114645 Content-Type: text/html | clean |
http://nudechat.freelivecamgirls.com/javascript/live_cams/cams-xslt_android-1308767060.js | 200 OK Content-Length: 70891 Content-Type: text/javascript | clean |
http://nudechat.freelivecamgirls.com/lvswon.cgi?m=&rand=751315476&no_pic=1&attach_studio= | 200 OK Content-Length: 126091 Content-Type: text/javascript | clean |
http://nudechat.freelivecamgirls.com/wonuserinfo.cgi?m= | 200 OK Content-Length: 53 Content-Type: text/javascript | clean |
http://nudechat.freelivecamgirls.com/camschat.cgi?type=userinfo&m=&rand=751315476 | 200 OK Content-Length: 1371 Content-Type: text/javascript | clean |
http://nudechat.freelivecamgirls.com/camschat.cgi?type=admirer_points&m=&include_stream=1&skip_min_points=1 | 200 OK Content-Length: 15 Content-Type: text/javascript | clean |
http://graphics.cams.com/images/common/js/jquery/jquery-1.4.4.min.js | 200 OK Content-Length: 78601 Content-Type: application/x-javascript | clean |
http://graphics.cams.com/images/cams/js/lazy.js | 200 OK Content-Length: 9298 Content-Type: application/x-javascript | clean |
http://graphics.cams.com/css/live_cams/cams/english/6245/cam_cell_orig-1410285789.js | 200 OK Content-Length: 11634 Content-Type: text/javascript | clean |
http://graphics.cams.com/css/live_cams/cams/english/6245/cam_cell-1403648255.js | 200 OK Content-Length: 17328 Content-Type: text/javascript | clean |
http://graphics.cams.com/css/live_cams/cams/english/6245/cam_cell_mini-1400788636.js | 200 OK Content-Length: 2017 Content-Type: text/javascript | clean |
http://graphics.cams.com/css/live_cams/cams/english/6245/recorded_cell-1400788636.js | 200 OK Content-Length: 6713 Content-Type: text/javascript | clean |
http://graphics.cams.com/javascript/live_cams/cams-global_misc-1407348366.js | 200 OK Content-Length: 11316 Content-Type: text/javascript | clean |
http://graphics.cams.com/css/live_cams/cams/english/6245/the_cell_lazy-1413922147.js | 200 OK Content-Length: 13545 Content-Type: text/javascript | clean |
http://nudechat.freelivecamgirls.com/p/register.cgi?&who=r,RR8G6dvqYUwSLNtJPAnHUS6Oy01Ww3zazhhNvtU9KlCKVDD4wT8BO8Hv_8BEZ6ihaPw5aVJEaAvSmb8VdsV5qkaomKU2kvTdF40Rr3ic0JSnxAvDXKg02mkSGT_KZWlddVYJW_AEBV0lF5UrJ6/vGJ86AXct03Ocu16z2zRI8Swx6Jtk8_2xo8dwCFJf88aiNKPwiCQVAkvurBdEu4MbuQ--&dcb=nudechat.freelivecamgirls.com&view=register | 200 OK Content-Length: 61261 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=nudechat.freelivecamgirls.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://nudechat.freelivecamgirls.com/
Result: nudechat.freelivecamgirls.com is not infected or malware details are not published yet.
Result: nudechat.freelivecamgirls.com is not infected or malware details are not published yet.