Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: sexy-boobs.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 23 Aug 2014 09:10:22 GMT
Server: Apache/2.2.15 (CentOS)
Content-Type: text/html; charset=UTF-8
Set-Cookie: from=noref; expires=Sun, 24-Aug-2014 09:10:22 GMT; path=/
Set-Cookie: lfrom=noref; expires=Sun, 24-Aug-2014 09:10:22 GMT; path=/
Set-Cookie: idcheck=1408785022; expires=Sun, 24-Aug-2014 09:10:22 GMT; path=/
Set-Cookie: vs=noref%7C; expires=Sun, 24-Aug-2014 09:10:22 GMT; path=/
Set-Cookie: index_page=1; expires=Sun, 24-Aug-2014 09:10:22 GMT; path=/
X-Powered-By: PHP/5.3.3
GET / HTTP/1.1
Host: sexy-boobs.ru
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 23 Aug 2014 09:10:22 GMT
Server: Apache/2.2.15 (CentOS)
Content-Type: text/html; charset=UTF-8
Set-Cookie: from=noref; expires=Sun, 24-Aug-2014 09:10:22 GMT; path=/
Set-Cookie: lfrom=noref; expires=Sun, 24-Aug-2014 09:10:22 GMT; path=/
Set-Cookie: idcheck=1408785022; expires=Sun, 24-Aug-2014 09:10:22 GMT; path=/
Set-Cookie: vs=noref%7C; expires=Sun, 24-Aug-2014 09:10:22 GMT; path=/
Set-Cookie: index_page=1; expires=Sun, 24-Aug-2014 09:10:22 GMT; path=/
X-Powered-By: PHP/5.3.3
Second query (visit from search engine):
GET / HTTP/1.1
Host: sexy-boobs.ru
Referer: http://www.google.com/search?q=sexy-boobs.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: sexy-boobs.ru
Referer: http://www.google.com/search?q=sexy-boobs.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://sexy-boobs.ru/ | 200 OK Content-Length: 41319 Content-Type: text/html | clean |
http://manfys.com/f3cf1/27050f03e.js | 200 OK Content-Length: 8226 Content-Type: application/javascript | clean |
http://advertom.com/80re5131c9e/ee8.js | 200 OK Content-Length: 8226 Content-Type: application/javascript | clean |
http://targetan.com/static/bc.js?p=252306&b=572018 | 200 OK Content-Length: 24667 Content-Type: application/javascript | clean |
http://sexy-boobs.ru/category/29/ÐамаÑи/ctr/1/?4x1x3745 | 200 OK Content-Length: 43925 Content-Type: text/html | clean |
http://sexy-boobs.ru/scj/includes/js/jquery.js | 200 OK Content-Length: 70843 Content-Type: text/javascript | clean |
http://manfys.com/d0ed1/71/0550/80.js | 200 OK Content-Length: 8226 Content-Type: application/javascript | clean |
http://njmaq.com/static/cu.js?p=252306&b=572360 | 200 OK Content-Length: 24787 Content-Type: application/javascript | clean |
http://sexy-boobs.ru/video-rolik/syn-pyalit-nenasytnuyu-mamashku/893de193e97af5665f2b2aaa5a817819/index.html | 200 OK Content-Length: 24745 Content-Type: text/html | clean |
http://sexy-boobs.ru/category/52/ÐолодÑе подÑоÑÑки ÑÑаÑ
аÑÑÑÑ, ÑоÑÑÑ ÑленÑ, лижÑÑ Ð¿ÐµÐ·Ð´Ñ, даÑÑ Ð² анал/ctr/1/ | 200 OK Content-Length: 46380 Content-Type: text/html | clean |
http://sexy-boobs.ru/video-rolik/papanka-imeet-svoyu-neposlushnuyu-doch/d940014c32497f3ef2e24a2b76f95146/index.html | 200 OK Content-Length: 24786 Content-Type: text/html | clean |
http://sexy-boobs.ru/category/48/ÐоÑно ÑилÑÐ¼Ñ 3D/ctr/1/ | 200 OK Content-Length: 45065 Content-Type: text/html | clean |
http://sexy-boobs.ru/video-rolik/hard-fucked-girlie/e6cd052539b92738d9bb435452739fa3/index.html | 200 OK Content-Length: 25206 Content-Type: text/html | clean |
http://sexy-boobs.ru/category/8/СекÑÑалÑнÑе кÑаÑоÑки ÑÑаÑ
аÑÑÑÑ Ð² попÑ, занимаÑÑÑÑ Ð°Ð½Ð°Ð»ÑнÑм ÑекÑом/ctr/1/ | 200 OK Content-Length: 44924 Content-Type: text/html | clean |
http://sexy-boobs.ru/video-rolik/zasunul-ey-po-glubzhe/92d6d90872dffbfdd3482bce3f524722/index.html | 200 OK Content-Length: 25331 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=sexy-boobs.ru
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://sexy-boobs.ru/
Result: sexy-boobs.ru is not infected or malware details are not published yet.
Result: sexy-boobs.ru is not infected or malware details are not published yet.