Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=refensdosexo.org
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://refensdosexo.org/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: refensdosexo.org
Result:
HTTP/1.1 302 Moved Temporarily
Connection: close
Date: Wed, 17 Sep 2014 19:26:25 GMT
Location: /tube
Server: Apache
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Rating: RTA-5042-1996-1400-1577-RTA
Set-Cookie: proton=MXwwfDE0MTA5ODE5ODV8MTQxMDk4MTk4NXwwO25vcmVmX2lu; expires=Thu, 18-Sep-2014 19:26:25 GMT; path=/
Set-Cookie: fav=1410981985; expires=Thu, 17-Sep-2015 19:26:25 GMT; path=/
...0 bytes of data.
GET / HTTP/1.1
Host: refensdosexo.org
Result:
HTTP/1.1 302 Moved Temporarily
Connection: close
Date: Wed, 17 Sep 2014 19:26:25 GMT
Location: /tube
Server: Apache
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Rating: RTA-5042-1996-1400-1577-RTA
Set-Cookie: proton=MXwwfDE0MTA5ODE5ODV8MTQxMDk4MTk4NXwwO25vcmVmX2lu; expires=Thu, 18-Sep-2014 19:26:25 GMT; path=/
Set-Cookie: fav=1410981985; expires=Thu, 17-Sep-2015 19:26:25 GMT; path=/
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: refensdosexo.org
Referer: http://www.google.com/search?q=refensdosexo.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: refensdosexo.org
Referer: http://www.google.com/search?q=refensdosexo.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://refensdosexo.org/ | HTTP/1.1 302 Moved Temporarily Connection: close Date: Wed, 17 Sep 2014 19:26:25 GMT Location: /tube Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Rating: RTA-5042-1996-1400-1577-RTA Set-Cookie: proton=MXwwfDE0MTA5ODE5ODV8MTQxMDk4MTk4NXwwO25vcmVmX2lu; expires=Thu, 18-Sep-2014 19:26:25 GMT; path=/ Set-Cookie: fav=1410981985; expires=Thu, 17-Sep-2015 19:26:25 GMT; path=/ | clean |
http://refensdosexo.org/tube | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 17 Sep 2014 19:26:25 GMT Location: http://refensdosexo.org/tube/ Server: Apache Content-Length: 237 Content-Type: text/html; charset=iso-8859-1 | clean |
http://refensdosexo.org/tube/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 17 Sep 2014 19:26:26 GMT Location: http://www.refensdosexo.org/tube/ Server: Apache Vary: Cookie Content-Length: 0 Content-Type: text/html; charset=UTF-8 Rating: RTA-5042-1996-1400-1577-RTA X-Pingback: http://www.refensdosexo.org/tube/xmlrpc.php | clean |
http://www.refensdosexo.org/tube/ | 200 OK Content-Length: 196938 Content-Type: text/html | clean |
http://www.refensdosexo.org/tube/wp-content/uploads/jw-player-plugin-for-wordpress/player/jwplayer.js?ver=4.0 | 200 Not Modified Content-Length: 95576 Content-Type: application/x-javascript | clean |
http://www.refensdosexo.org/tube/wp-includes/js/jquery/jquery.js?ver=1.11.1 | 200 Not Modified Content-Length: 95807 Content-Type: application/x-javascript | clean |
http://www.refensdosexo.org/tube/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 Not Modified Content-Length: 7200 Content-Type: application/x-javascript | clean |
http://www.refensdosexo.org/tube/wp-content/plugins/wp-postratings/postratings-js.js?ver=1.63 | 200 Not Modified Content-Length: 3263 Content-Type: application/x-javascript | clean |
http://www.refensdosexo.org/js/pop.js | 200 Not Modified Content-Length: 1828 Content-Type: application/x-javascript | clean |
http://www.refensdosexo.org/js/portalpop.js | 200 Not Modified Content-Length: 2053 Content-Type: application/x-javascript | clean |
http://refensdosexo.org/out.php?t=101.0.0.2688&url=http://gals.sextronix.com/youngblackgfs/pic/danielle_luv/02/?t=109995,41,173,0&link=CentralTube | HTTP/1.1 302 Moved Temporarily Connection: close Date: Wed, 17 Sep 2014 19:26:39 GMT Via: 1.1 varnish (v4) Age: 0 Location: http://gals.sextronix.com/youngblackgfs/pic/danielle_luv/02/?t=109995,41,173,0 Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Rating: RTA-5042-1996-1400-1577-RTA Set-Cookie: proton=MXwxfDE0MTA5ODE5OTl8MTQxMDk4MTk5OXwxOw%3D%3D; expires=Thu, 18-Sep-2014 19:26:39 GMT; path=/ Set-Cookie: ca=gallery X-Varnish: 153656767 | clean |
http://gals.sextronix.com/youngblackgfs/pic/danielle_luv/02/?t=109995,41,173,0 | 200 OK Content-Length: 7388 Content-Type: text/html | clean |
http://gals.sextronix.com/ui/js/jquery.min.js | 200 OK Content-Length: 57254 Content-Type: text/javascript | clean |
http://refensdosexo.org/ui/js/util.js | 404 Not Found Content-Length: 39 Content-Type: text/html | clean |
http://refensdosexo.org/test404page.js | 404 Not Found Content-Length: 39 Content-Type: text/html | clean |
http://www.sextronix.com/forms/remotesignup.php?site=173&t=109995,41,173,0 | 200 OK Content-Length: 4829 Content-Type: text/html | clean |
http://www.sextronix.com/forms/ | 404 Not Found Content-Length: 345 Content-Type: text/html | clean |
http://refensdosexo.org/out.php?t=101.0.1.7597&url=http://galleries.phatsexyass.com/photos/171/?t1/revscf=extracaseiras&link=CentralTube | HTTP/1.1 302 Moved Temporarily Connection: close Date: Wed, 17 Sep 2014 19:26:44 GMT Via: 1.1 varnish (v4) Age: 0 Location: http://galleries.phatsexyass.com/photos/171/?t1/revscf=extracaseiras Server: Apache Content-Type: text/html; charset=UTF-8 Rating: RTA-5042-1996-1400-1577-RTA Set-Cookie: proton=MXwxfDE0MTA5ODIwMDR8MTQxMDk4MjAwNHwxOw%3D%3D; expires=Thu, 18-Sep-2014 19:26:44 GMT; path=/ Set-Cookie: ca=gallery X-Varnish: 154111812 | clean |
http://galleries.phatsexyass.com/photos/171/?t1/revscf=extracaseiras | 200 OK Content-Length: 13434 Content-Type: text/html | clean |
http://galleries.phatsexyass.com/photos/171/p01.jpg | 200 OK Content-Length: 65336 Content-Type: image/jpeg | clean |