Scanned pages/files
Request | Server response | Status |
http://sexuo.com/ | 200 OK Content-Length: 11141 Content-Type: text/html | suspicious |
Suspicious code found <div class="menu"> <script type="text/javascript" src="//yastatic.net/share/share.js" charset="utf-8"></script> <div class="yashare-auto-init" data-yashareL10n="ru" data-yashareQuickServices="vkontakte,facebook,twitter,odnoklassniki,moimir" data-yashareTheme="counter"> </div> </div> | ||
http://sexuo.com/search.html | 200 OK Content-Length: 4653 Content-Type: text/html | suspicious |
Suspicious code found <div class="ad"> <script type="text/javascript"> teasernet_blockid = 565355; teasernet_padid = 250942; </script> <script type="text/javascript" src="http://manfys.com/d3/8398f/9aa/0f1c3a.js"></script> <script src="http://v.limon.biz/v/140257" type="text/javascript"></script> <script type="text/javascript"> _bcads.showAd(); </script> <noscript><a href="http://click.buzzcity.net/click.php?partnerid=124768&label=ns&bn=1"> <img src="http://show.buzzcity.net/show.php?label=ns&partnerid=124768&get=image&bn=1" alt=""></a></noscript> </div> | ||
http://sexuo.com/info.html | 200 OK Content-Length: 8249 Content-Type: text/html | suspicious |
Suspicious code found <div class="ad"> <script type="text/javascript"> teasernet_blockid = 565355; teasernet_padid = 250942; </script> <script type="text/javascript" src="http://manfys.com/d3/8398f/9aa/0f1c3a.js"></script> <script src="http://v.limon.biz/v/140257" type="text/javascript"></script> <script type="text/javascript"> _bcads.showAd(); </script> <noscript><a href="http://click.buzzcity.net/click.php?partnerid=124768&label=ns&bn=1"> <img src="http://show.buzzcity.net/show.php?label=ns&partnerid=124768&get=image&bn=1" alt=""></a></noscript> </div> | ||
http://sexuo.com/test404page.js | HTTP/1.1 302 Found Connection: close Date: Wed, 28 Jan 2015 03:49:40 GMT Location: http://sexuo.com Server: nginx/1.0.15 Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.4.36 | clean |
http://sexuo.com/porno_video/ | 200 OK Content-Length: 8649 Content-Type: text/html | suspicious |
Suspicious code found <div class="ad"> <script type="text/javascript"> teasernet_blockid = 565355; teasernet_padid = 250942; </script> <script type="text/javascript" src="http://manfys.com/d3/8398f/9aa/0f1c3a.js"></script> <script type="text/javascript"> var bcads_vars = { partnerid : 124768, get : 'rich' }; </script><script type="text/javascript" src="http://js.buzzcity.net/bcads.js"></script><noscript><a href="http://click.buzzcity.net/click.php?partnerid=124768&label=ns"><img src="http://show.buzzcity.net/show.php?label=ns&partnerid=124768&get=image" alt=""></a></noscript> </div> | ||
http://sexuo.com/porno_video/analnoe_porno/ | 200 OK Content-Length: 8120 Content-Type: text/html | suspicious |
Suspicious code found <div class="ad"> <div id="visitweb_container_131954"></div> <script src="http://v.gfhdkse.com/v/131954" charset="utf-8" type="text/javascript"></script> <script type="text/javascript"> var bcads_vars = { partnerid : 124768, get : 'rich' }; </script><script type="text/javascript" src="http://js.buzzcity.net/bcads.js"></script><noscript><a href="http://click.buzzcity.net/click.php?partnerid=124768&label=ns"><img src="http://show.buzzcity.net/show.php?label=ns&partnerid=124768&get=image" alt=""></a></noscript> </div> | ||
http://sexuo.com/porno_video/analnoe_porno/na_kushetke_stroynoy_svyazannoy_devochke_perts_porval_popku/ | 200 OK Content-Length: 8498 Content-Type: text/html | suspicious |
Suspicious code found <div class="menu"> <script type="text/javascript" src="//yastatic.net/share/share.js" charset="utf-8"></script> <div class="yashare-auto-init" data-yashareL10n="ru" data-yashareQuickServices="vkontakte,facebook,twitter,odnoklassniki,moimir" data-yashareTheme="counter"> </div> </div> | ||
http://sexuo.com/porno_video/analnoe_porno/na_kushetke_stroynoy_svyazannoy_devochke_perts_porval_popku/screens/ | 200 OK Content-Length: 8773 Content-Type: text/html | suspicious |
Suspicious code found <div class="ad"> <script type="text/javascript"> teasernet_blockid = 565355; teasernet_padid = 250942; </script> <script type="text/javascript" src="http://manfys.com/d3/8398f/9aa/0f1c3a.js"></script> <script type="text/javascript"> var bcads_vars = { partnerid : 124768, get : 'rich' }; </script><script type="text/javascript" src="http://js.buzzcity.net/bcads.js"></script><noscript><a href="http://click.buzzcity.net/click.php?partnerid=124768&label=ns"><img src="http://show.buzzcity.net/show.php?label=ns&partnerid=124768&get=image" alt=""></a></noscript> </div> | ||
http://sexuo.com/porno_video/screen/MTIzMl8xLnBuZy8yMDAv/img.png | 200 OK Content-Length: 37917 Content-Type: image/png | clean |
http://sexuo.com/porno_video/screen/MTIzMl8xMC5wbmcvMjAwLw==/img.png | 200 OK Content-Length: 1540 Content-Type: image/png | clean |
http://sexuo.com/porno_video/screen/MTIzMl8yLnBuZy8yMDAv/img.png | 200 OK Content-Length: 25931 Content-Type: image/png | clean |
http://sexuo.com/porno_video/screen/MTIzMl8zLnBuZy8yMDAv/img.png | 200 OK Content-Length: 31348 Content-Type: image/png | clean |
http://sexuo.com/porno_video/screen/MTIzMl80LnBuZy8yMDAv/img.png | 200 OK Content-Length: 30497 Content-Type: image/png | clean |
http://sexuo.com/porno_video/screen/MTIzMl81LnBuZy8yMDAv/img.png | 200 OK Content-Length: 30903 Content-Type: image/png | clean |
http://sexuo.com/porno_video/screen/MTIzMl82LnBuZy8yMDAv/img.png | 200 OK Content-Length: 36040 Content-Type: image/png | clean |
http://sexuo.com/porno_video/screen/MTIzMl83LnBuZy8yMDAv/img.png | 200 OK Content-Length: 33794 Content-Type: image/png | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: sexuo.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 28 Jan 2015 03:49:39 GMT
Server: nginx/1.0.15
Content-Type: text/html; charset=UTF-8
X-Powered-By: PHP/5.4.36
GET / HTTP/1.1
Host: sexuo.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 28 Jan 2015 03:49:39 GMT
Server: nginx/1.0.15
Content-Type: text/html; charset=UTF-8
X-Powered-By: PHP/5.4.36
Second query (visit from search engine):
GET / HTTP/1.1
Host: sexuo.com
Referer: http://www.google.com/search?q=sexuo.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: sexuo.com
Referer: http://www.google.com/search?q=sexuo.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=sexuo.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://sexuo.com/
Result: sexuo.com is not infected or malware details are not published yet.
Result: sexuo.com is not infected or malware details are not published yet.