Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://www.sytcsy.com/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: www.sytcsy.com Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Found Connection: close Date: Mon, 22 Sep 2014 11:55:27 GMT Location: http://bit.ly/18FvHFN Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.3.3 | malicious |
URL: http://bit.ly/18FvHFN (imitation of visitor from search engine) GET /18FvHFN HTTP/1.1 Host: bit.ly Referer: http://www.google.com/search?q=redirect+check2 | HTTP/1.1 301 Moved Permanently Cache-Control: private; max-age=90 Connection: close Date: Mon, 22 Sep 2014 11:55:27 GMT Location: http://kenty.biz/kg0461 Server: nginx Content-Length: 115 Content-Type: text/html; charset=utf-8 Mime-Version: 1.0 Set-Cookie: _bit=54200e2f-00286-02b0f-3b1cf10a;domain=.bit.ly;expires=Sat Mar 21 11:55:27 2015;path=/; HttpOnly | suspicious |
URL: http://kenty.biz/?pr=kg0461 (imitation of visitor from search engine) GET /?pr=kg0461 HTTP/1.1 Host: kenty.biz Referer: http://www.google.com/search?q=redirect+check3 | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Mon, 22 Sep 2014 11:55:29 GMT Pragma: no-cache Location: http://t-spi.com/index.php?pr=kg0461&ac=1 Server: Apache Content-Type: text/html; charset=Shift_JIS Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: cbrd_sessid=68016c287cd4aadb0df45a5b9de52394; expires=Tue, 23-Sep-2014 11:55:29 GMT; path=/ Set-Cookie: cbrd_sessid=68016c287cd4aadb0df45a5b9de52394 X-Powered-By: PHP/5.2.17 | suspicious |
Scanned pages/files
Request | Server response | Status |
http://www.sytcsy.com/ | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://www.sytcsy.com/test404page.js | 404 Not Found Content-Length: 212 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=sytcsy.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://sytcsy.com/
Result: sytcsy.com is not infected or malware details are not published yet.
Result: sytcsy.com is not infected or malware details are not published yet.