Scanned pages/files
Request | Server response | Status |
http://pecamos.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Tue, 16 Sep 2014 05:45:35 GMT Location: http://www.pecamos.com/ Server: Apache/2.2.16 (Debian) Vary: Accept-Encoding Content-Length: 308 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.pecamos.com/ | 200 OK Content-Length: 21949 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.xvideosmaduras.com <html> <head> <script src="http://www.sexo-premium.com/Scripts/mobile.php?alias=eval&p=sexopremium" type="text/javascript"></script> <title>Clasificados eroticos clasificados - pecamos.com</title> <META content="clasificados eroticos clasificados, Escorts, acompanantes, acompañantes, prostitutas, putas, Acompañantes, Masajistas, traviesas, Acompañantes, Escorts, Masajes, Travestis, travas, gays, ta ...[4604 bytes skipped]... | ||
http://www.sexo-premium.com/Scripts/mobile.php?alias=eval&p=sexopremium | 200 OK Content-Length: 0 Content-Type: text/html | clean |
http://www.sexo-premium.com/test404page.js | 404 Not Found Content-Length: 564 Content-Type: text/html | clean |
http://www.cochinaditas.com/js/pop.js | 200 OK Content-Length: 1194 Content-Type: application/javascript | clean |
http://www.pecamos.com/js/header.js | 200 OK Content-Length: 5597 Content-Type: application/javascript | malicious |
Malicious code found. Script contains blacklisted domain: www.relatamos.com ...[3027 bytes skipped]... rc="http://www.paramelo.com/header-videos.html" width="997" height="100" scrolling="no" frameborder="0" marginheight="0" marginwidth="0"></iframe></div>'); document.write('<div align="center"><table border="0" width="100%" cellspacing="0" cellpadding="5" background="http://www.tentalis.com/imagenes/degradado.jpg"><tr><td><p align="center"><font face="Trebuchet MS"><a href="http://www.relatamos.com/"><font color="#FF0000">RelatosX</font></a> | <a href="http://www.paramelo.com/"><font color="#FF0000">VideosX</font></a> | <a href="http://www.pecamos.com/"><font color="#FF0000">ContactosX</font></a> | <a href="http://www.excitamos.com"><font color="#FF0000">EscortsX</font></a> | <a href="http://www.calen ...[1029 bytes skipped]... Decoded script: ...[4750 bytes skipped]... "center"><iframe src="http://www.paramelo.com/header-videos.html" width="997" height="100" scrolling="no" frameborder="0" marginheight="0" marginwidth="0"></iframe></div><div align="center"><table border="0" width="100%" cellspacing="0" cellpadding="5" background="http://www.tentalis.com/imagenes/degradado.jpg"><tr><td><p align="center"><font face="Trebuchet MS"><a href="http://www.relatamos.com/"><font color="#FF0000">RelatosX</font></a> | <a href="http://www.paramelo.com/"><font color="#FF0000">VideosX</font></a> | <a href="http://www.pecamos.com/"><font color="#FF0000">ContactosX</font></a> | <a href="http://www.excitamos.com"><font color="#FF0000">EscortsX</font></a> | <a href="http://www.calen ...[902 bytes skipped]... | ||
http://www.cochinaditas.com/js/lateral-001.js | 200 OK Content-Length: 4036 Content-Type: application/javascript | clean |
http://pecamos.com/js/footer.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Tue, 16 Sep 2014 05:45:39 GMT Location: http://www.pecamos.com/js/footer.js Server: Apache/2.2.16 (Debian) Vary: Accept-Encoding Content-Length: 320 Content-Type: text/html; charset=iso-8859-1 X-Pad: avoid browser bug | clean |
http://www.pecamos.com/js/footer.js | 200 OK Content-Length: 107 Content-Type: application/javascript | clean |
http://www.efiro.com/lux/barra-inferior.js | 200 OK Content-Length: 1282 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: pecamos.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 16 Sep 2014 05:45:35 GMT
Location: http://www.pecamos.com/
Server: Apache/2.2.16 (Debian)
Vary: Accept-Encoding
Content-Length: 308
Content-Type: text/html; charset=iso-8859-1
...308 bytes of data.
GET / HTTP/1.1
Host: pecamos.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 16 Sep 2014 05:45:35 GMT
Location: http://www.pecamos.com/
Server: Apache/2.2.16 (Debian)
Vary: Accept-Encoding
Content-Length: 308
Content-Type: text/html; charset=iso-8859-1
...308 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: pecamos.com
Referer: http://www.google.com/search?q=pecamos.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: pecamos.com
Referer: http://www.google.com/search?q=pecamos.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=pecamos.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://pecamos.com/
Result: pecamos.com is not infected or malware details are not published yet.
Result: pecamos.com is not infected or malware details are not published yet.