Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=ragazze-live.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://ragazze-live.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://ragazze-live.com/ | 200 OK Content-Length: 59731 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var puShown = false; function doOpen(url) { if ( puShown == true ) { return true; } var wFeatures = "toolbar=0,statusbar=1,resizable=1,scrollbars=0,menubar=0,location=1,directories=0"; if(navigator.userAgent.indexOf('Chrome') != -1){ wFeatures = "scrollbar=yes"; } pu_window= window.open('about:blank','wmPu',wFeatures + ',height=680,width=790'); } } function checkTarget(e) { if (!getCookie('popundr')) { var e = e || window.event; var win = doOpen('http://jasmin.com/chat/random-girls-girl-18-22?ccs&pstool=160_26&psprogram=REVS&pstour=t1&psid=dyzzithe1&category=girls'); setCookie('popundr', 1, 24*60*60*1000); } } initPu(); Antivirus reports:
| ||
https://ajax.googleapis.com/ajax/libs/jquery/1.8/jquery.min.js | 200 OK Content-Length: 93637 Content-Type: text/javascript | clean |
http://ragazze-live.com/plugins/system/jqueryeasy/jquerynoconflict.js | 200 OK Content-Length: 20 Content-Type: application/javascript | clean |
http://ragazze-live.com/index.php?jat3action=gzip&jat3type=js&jat3file=t3-assets%2Fjs_4dec5.js | 200 OK Content-Length: 300787 Content-Type: text/javascript | clean |
http://www.google.com/jsapi | 200 OK Content-Length: 24552 Content-Type: text/javascript | clean |
http://ragazze-live.com/index.php?jat3action=gzip&jat3type=js&jat3file=t3-assets%2Fjs_d9752.js | 200 OK Content-Length: 260479 Content-Type: text/javascript | clean |
http://adspaces.ero-advertising.com/adspace/142629.js | 200 OK Content-Length: 1459 Content-Type: application/javascript | clean |
http://adspaces.ero-advertising.com/adspace/138107.js | 200 OK Content-Length: 1810 Content-Type: application/javascript | clean |
http://adspaces.ero-advertising.com/adspace/138554.js | 200 OK Content-Length: 1472 Content-Type: application/javascript | clean |
http://www.statcounter.com/counter/counter.js | 200 OK Content-Length: 15530 Content-Type: application/x-javascript | clean |
http://ragazze-live.com/index.php | 200 OK Content-Length: 59719 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var puShown = false; function doOpen(url) { if ( puShown == true ) { return true; } var wFeatures = "toolbar=0,statusbar=1,resizable=1,scrollbars=0,menubar=0,location=1,directories=0"; if(navigator.userAgent.indexOf('Chrome') != -1){ wFeatures = "scrollbar=yes"; } pu_window= window.open('about:blank','wmPu',wFeatures + ',height=680,width=790'); } } function checkTarget(e) { if (!getCookie('popundr')) { var e = e || window.event; var win = doOpen('http://jasmin.com/chat/random-girls-girl-18-22?ccs&pstool=160_26&psprogram=REVS&pstour=t1&psid=dyzzithe1&category=girls'); setCookie('popundr', 1, 24*60*60*1000); } } initPu(); Antivirus reports:
| ||
http://ragazze-live.com/donne-mature | 200 OK Content-Length: 47563 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var puShown = false; function doOpen(url) { if ( puShown == true ) { return true; } var wFeatures = "toolbar=0,statusbar=1,resizable=1,scrollbars=0,menubar=0,location=1,directories=0"; if(navigator.userAgent.indexOf('Chrome') != -1){ wFeatures = "scrollbar=yes"; } pu_window= window.open('about:blank','wmPu',wFeatures + ',height=680,width=790'); } } function checkTarget(e) { if (!getCookie('popundr')) { var e = e || window.event; var win = doOpen('http://jasmin.com/chat/random-girls-girl-18-22?ccs&pstool=160_26&psprogram=REVS&pstour=t1&psid=dyzzithe1&category=girls'); setCookie('popundr', 1, 24*60*60*1000); } } initPu(); Antivirus reports:
| ||
http://ragazze-live.com/ragazze-lesbiche | 200 OK Content-Length: 60273 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var puShown = false; function doOpen(url) { if ( puShown == true ) { return true; } var wFeatures = "toolbar=0,statusbar=1,resizable=1,scrollbars=0,menubar=0,location=1,directories=0"; if(navigator.userAgent.indexOf('Chrome') != -1){ wFeatures = "scrollbar=yes"; } pu_window= window.open('about:blank','wmPu',wFeatures + ',height=680,width=790'); } } function checkTarget(e) { if (!getCookie('popundr')) { var e = e || window.event; var win = doOpen('http://jasmin.com/chat/random-girls-girl-18-22?ccs&pstool=160_26&psprogram=REVS&pstour=t1&psid=dyzzithe1&category=girls'); setCookie('popundr', 1, 24*60*60*1000); } } initPu(); Antivirus reports:
| ||
http://ragazze-live.com/fetish | 200 OK Content-Length: 81270 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var puShown = false; function doOpen(url) { if ( puShown == true ) { return true; } var wFeatures = "toolbar=0,statusbar=1,resizable=1,scrollbars=0,menubar=0,location=1,directories=0"; if(navigator.userAgent.indexOf('Chrome') != -1){ wFeatures = "scrollbar=yes"; } pu_window= window.open('about:blank','wmPu',wFeatures + ',height=680,width=790'); } } function checkTarget(e) { if (!getCookie('popundr')) { var e = e || window.event; var win = doOpen('http://jasmin.com/chat/random-girls-girl-18-22?ccs&pstool=160_26&psprogram=REVS&pstour=t1&psid=dyzzithe1&category=girls'); setCookie('popundr', 1, 24*60*60*1000); } } initPu(); Antivirus reports:
| ||
http://ragazze-live.com/ragazze-pornostar | 200 OK Content-Length: 80282 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) var puShown = false; function doOpen(url) { if ( puShown == true ) { return true; } var wFeatures = "toolbar=0,statusbar=1,resizable=1,scrollbars=0,menubar=0,location=1,directories=0"; if(navigator.userAgent.indexOf('Chrome') != -1){ wFeatures = "scrollbar=yes"; } pu_window= window.open('about:blank','wmPu',wFeatures + ',height=680,width=790'); } } function checkTarget(e) { if (!getCookie('popundr')) { var e = e || window.event; var win = doOpen('http://jasmin.com/chat/random-girls-girl-18-22?ccs&pstool=160_26&psprogram=REVS&pstour=t1&psid=dyzzithe1&category=girls'); setCookie('popundr', 1, 24*60*60*1000); } } initPu(); Antivirus reports:
|
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: ragazze-live.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 14 Sep 2014 08:54:31 GMT
ETag: 96d6d64c2c2715b05c02716cfe7c64d3
Server: nginx/1.6.1
Content-Type: text/html
Last-Modified: Sun, 14 Sep 2014 06:40:32 GMT
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: 8c50ae592a3b16fefcb48f42efb94b3f=cec5e32c39e4429b60d185dd24b37b75; path=/
Set-Cookie: ja_community_plus_tpl=ja_community_plus; expires=Fri, 04-Sep-2015 08:54:31 GMT; path=/
GET / HTTP/1.1
Host: ragazze-live.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 14 Sep 2014 08:54:31 GMT
ETag: 96d6d64c2c2715b05c02716cfe7c64d3
Server: nginx/1.6.1
Content-Type: text/html
Last-Modified: Sun, 14 Sep 2014 06:40:32 GMT
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: 8c50ae592a3b16fefcb48f42efb94b3f=cec5e32c39e4429b60d185dd24b37b75; path=/
Set-Cookie: ja_community_plus_tpl=ja_community_plus; expires=Fri, 04-Sep-2015 08:54:31 GMT; path=/
Second query (visit from search engine):
GET / HTTP/1.1
Host: ragazze-live.com
Referer: http://www.google.com/search?q=ragazze-live.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: ragazze-live.com
Referer: http://www.google.com/search?q=ragazze-live.com
Result:
The result is similar to the first query. There are no suspicious redirects found.