Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: pattayaprostatemassage.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 07 Mar 2015 18:31:52 GMT
Accept-Ranges: bytes
ETag: "2f18-50fe956d2b780"
Server: nginx/1.6.2
Vary: Accept-Encoding,User-Agent
Content-Length: 12056
Content-Type: text/html
Last-Modified: Wed, 25 Feb 2015 13:09:02 GMT
...12056 bytes of data.
GET / HTTP/1.1
Host: pattayaprostatemassage.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 07 Mar 2015 18:31:52 GMT
Accept-Ranges: bytes
ETag: "2f18-50fe956d2b780"
Server: nginx/1.6.2
Vary: Accept-Encoding,User-Agent
Content-Length: 12056
Content-Type: text/html
Last-Modified: Wed, 25 Feb 2015 13:09:02 GMT
...12056 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: pattayaprostatemassage.com
Referer: http://www.google.com/search?q=pattayaprostatemassage.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: pattayaprostatemassage.com
Referer: http://www.google.com/search?q=pattayaprostatemassage.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://pattayaprostatemassage.com/ | 200 OK Content-Length: 12056 Content-Type: text/html | clean |
http://cdn1.editmysite.com/libraries/prototype/1.7-custom/prototype.min.js | 200 OK Content-Length: 88200 Content-Type: application/x-javascript | clean |
http://cdn1.editmysite.com/libraries/scriptaculous/1.9.0-custom/effects.min.js | 200 OK Content-Length: 23922 Content-Type: application/x-javascript | clean |
http://cdn1.editmysite.com/editor/images/common/utilities.js?1344722491 | 200 OK Content-Length: 21101 Content-Type: application/x-javascript | clean |
http://cdn1.editmysite.com/editor/images/common/lightbox202.js?1344722491 | 200 OK Content-Length: 24684 Content-Type: application/x-javascript | clean |
http://cdn1.editmysite.com/editor/libraries/flyout_menus.js?1344722491 | 200 OK Content-Length: 26205 Content-Type: application/x-javascript | clean |
http://pattayaprostatemassage.com/index.html | 200 OK Content-Length: 12056 Content-Type: text/html | clean |
http://pattayaprostatemassage.com/index-ru.html | 200 OK Content-Length: 11171 Content-Type: text/html | clean |
http://pattayaprostatemassage.com/about-us-ru.html | 200 OK Content-Length: 9577 Content-Type: text/html | clean |
http://pattayaprostatemassage.com/about-us.html | 200 OK Content-Length: 16741 Content-Type: text/html | clean |
http://pattayaprostatemassage.com/new-product.html | 200 OK Content-Length: 7929 Content-Type: text/html | clean |
http://pattayaprostatemassage.com/customer-feedback.html | 200 OK Content-Length: 36570 Content-Type: text/html | clean |
http://pattayaprostatemassage.com/faq.html | 200 OK Content-Length: 6998 Content-Type: text/html | clean |
http://pattayaprostatemassage.com/latest-news-and-updates.html | 200 OK Content-Length: 40453 Content-Type: text/html | clean |
http://pattayaprostatemassage.com/direction-from-mam.html | 200 OK Content-Length: 12256 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=pattayaprostatemassage.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://pattayaprostatemassage.com/
Result: pattayaprostatemassage.com is not infected or malware details are not published yet.
Result: pattayaprostatemassage.com is not infected or malware details are not published yet.