Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://www.packales.com/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: www.packales.com Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Found Connection: close Date: Fri, 18 Dec 2015 21:23:36 GMT Location: http://track.trustmarketcom.com/c657271d-a672-4998-93a1-99372d4c8591?c=f_31012_2 Server: cloudflare-nginx Content-Type: text/html;charset=UTF-8 CF-RAY: 256dee08d1b82af1-WAW Set-Cookie: __cfduid=dbb289ee5df8c0eef1751e8ac0697d5441450473816; expires=Sat, 17-Dec-16 21:23:36 GMT; path=/; domain=.packales.com; HttpOnly | malicious |
URL: http://track.trustmarketcom.com/c657271d-a672-4998-93a1-99372d4c8591?c=f_31012_2 (imitation of visitor from search engine) GET /c657271d-a672-4998-93a1-99372d4c8591?c=f_31012_2 HTTP/1.1 Host: track.trustmarketcom.com Referer: http://www.google.com/search?q=redirect+check2 | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, pre-check=0, post-check=0 Connection: Close Date: Fri, 18 Dec 2015 21:23:36 GMT Pragma: no-cache Location: http://advidi.optimuum.com/f77d28ba2e956a1c/cd?aff_id=1727&s1=c657271d-a672-4998-93a1-99372d4c8591&s2=wT6S9MVBBI66TDBP0MQINDC1&s3=f_31012_2&s4= Server: Voluum-Traffic/1.0 Content-Length: 0 Expires: Thu, 01 Jan 1970 00:00:00 GMT Set-Cookie: c657271d-a672-4998-93a1-99372d4c8591-v4=c657271d-a672-4998-93a1-99372d4c8591; Domain=track.trustmarketcom.com; Path=/; HttpOnly Set-Cookie: voluum-cid-v4=%7B%0A%20%20%22cid%22%20%3A%20%22wT6S9MVBBI66TDBP0MQINDC1%22%2C%0A%20%20%22caid%22%20%3A%20%22c657271d-a672-4998-93a1-99372d4c8591%22%0A%7D; Domain=track.trustmarketcom.com; Expires=Sat, 17-Dec-2016 21:23:37 GMT; Path=/; HttpOnly X-Robots-Tag: noindex, nofollow | malicious |
URL: http://advidi.optimuum.com/f77d28ba2e956a1c/cd?aff_id=1727&s1=c657271d-a672-4998-93a1-99372d4c8591&s2=wT6S9MVBBI66TDBP0MQINDC1&s3=f_31012_2&s4= (imitation of visitor from search engine) GET /f77d28ba2e956a1c/cd?aff_id=1727&s1=c657271d-a672-4998-93a1-99372d4c8591&s2=wT6S9MVBBI66TDBP0MQINDC1&s3=f_31012_2&s4= HTTP/1.1 Host: advidi.optimuum.com Referer: http://www.google.com/search?q=redirect+check3 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Fri, 18 Dec 2015 21:23:37 GMT Location: http://stuntoffer.com/?limited_offer=R40Q12UaGnLc&exit_block_type=noescape5&video=3&url=%5Bhttp%3A%2F%2Fadvidi.optimuum.com%2Fcb%2Fcb68a32a61c1c4e3%2F22348952a35d95fcff2cd80ed807ec82%5D Server: nginx/1.0.15 Content-Length: 0 Content-Type: text/html;charset=utf-8 Set-Cookie: cb68a32a61c1c4e3=%5B%5B147%5D%2C%5B2570%5D%2C%5B20299%5D%5D; max-age=2592000 X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-Who: redirects-front-euw1b X-XSS-Protection: 1; mode=block | suspicious |
Scanned pages/files
Request | Server response | Status |
http://www.packales.com/ | 403 Forbidden Content-Length: 155 Content-Type: text/html | clean |
http://www.packales.com/test404page.js | 403 Forbidden Content-Length: 155 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=packales.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://packales.com/
Result: packales.com is not infected or malware details are not published yet.
Result: packales.com is not infected or malware details are not published yet.