Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://teamhigh.com/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: teamhigh.com Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Found Connection: close Date: Sun, 25 May 2014 17:35:09 GMT Location: http://medicsph.ru/ Server: Apache Content-Length: 265 Content-Type: text/html; charset=iso-8859-1 | malicious |
Scanned pages/files
Request | Server response | Status |
http://teamhigh.com/ | 200 OK Content-Length: 25827 Content-Type: text/html | clean |
http://teamhigh.com/about/ | HTTP/1.1 302 Found Connection: close Date: Sun, 25 May 2014 17:35:12 GMT Location: http://medicsph.ru/ Server: Apache Content-Length: 265 Content-Type: text/html; charset=iso-8859-1 | clean |
http://medicsph.ru/ | HTTP/1.1 200 OK Date: Sun, 25 May 2014 17:35:11 GMT Accept-Ranges: bytes ETag: "0eaed11cc1ecf1:0" Server: Microsoft-IIS/7.5 Content-Length: 1062 Content-Type: text/html Last-Modified: Fri, 31 Jan 2014 21:33:24 GMT | clean |
http://medicsph.ru/?framerequest=1 | HTTP/1.1 200 OK Date: Sun, 25 May 2014 17:35:14 GMT Server: Microsoft-IIS/7.5 Content-Length: 17870 Content-Type: text/html; charset=utf-8 | clean |
http://dp.g.doubleclick.net/apps/domainpark/domainpark.cgi?client=ca-dp-bodis27_3ph_js&ref=&output=html&s=medicsph.ru&drid=as-drid-2281613037483178 | 200 OK Content-Length: 22353 Content-Type: text/html | clean |
http://dp.g.doubleclick.net/apps/domainpark/results.cgi?client=ca-dp-bodis27_3ph_js&url=http://medicsph.ru/&output=html&hl=ru&drid=as-drid-2281613037483178&ac=r&q=Sph&afdt=CkgKEwiz1_OUzse-AhUm4HIKHYdZAF0YASAAcfMPTPEHfa2MggETCKOV9ZTOx74CFREjcgodPDcAyo0BzlILH5EBAuC3NQjjL7QSGQCchQJKPsG5AwWg8xEkzUfwjpvHnNi6yRE | 200 OK Content-Length: 21945 Content-Type: text/html | clean |
http://dp.g.doubleclick.net/apps/domainpark/results.cgi?client=ca-dp-bodis27_3ph_js&url=http://medicsph.ru/&output=html&hl=ru&drid=as-drid-2281613037483178&ac=r&q=Sph&afdt=CkoKEwi8r4KVzse-AhXm3XIKHR42AFsQAhgBIABx8w9M8Qd9rYyCARMIn92Clc7HvgIVKzhyCh2eMADRjQHOUgsfkQEC4Lc1COMvtBIZAJyFAkoDyLKuSb5uPpMHw83ImKdOFG_-ew | 200 OK Content-Length: 21975 Content-Type: text/html | clean |
http://dp.g.doubleclick.net/apps/domainpark/results.cgi?client=ca-dp-bodis27_3ph_js&url=http://medicsph.ru/&output=html&hl=ru&drid=as-drid-2281613037483178&ac=r&q=Sph&afdt=CkoKEwiw546Vzse-AhU0H3IKHQMOAFwQAxgBIABx8w9M8Qd9rYyCARMIyYiPlc7HvgIVUh9yCh04egDwjQHOUgsfkQEC4Lc1COMvtBIZAJyFAkrZtcvXmE0emFsSqizPPsD1hTkNig | 200 OK Content-Length: 21975 Content-Type: text/html | clean |
http://dp.g.doubleclick.net/apps/domainpark/results.cgi?client=ca-dp-bodis27_3ph_js&url=http://medicsph.ru/&output=html&hl=ru&drid=as-drid-2281613037483178&ac=r&q=Sph&afdt=CkoKEwiIlZeVzse-AhUUIXIKHYFXAF4QBBgBIABx8w9M8Qd9rYyCARMIjL2Xlc7HvgIVBiByCh1CAgDGjQHOUgsfkQEC4Lc1COMvtBIZAJyFAkoKz5ZXReqn5kqGXU4jdv_CB-A2iQ | 200 OK Content-Length: 21975 Content-Type: text/html | clean |
http://dp.g.doubleclick.net/apps/domainpark/results.cgi?client=ca-dp-bodis27_3ph_js&url=http://medicsph.ru/&output=html&hl=ru&drid=as-drid-2281613037483178&ac=r&q=Sph&afdt=CkoKEwi30qCVzse-AhUC33IKHcQ1AFYQBRgBIABx8w9M8Qd9rYyCARMIvfOglc7HvgIVCDdyCh1bJwDFjQHOUgsfkQEC4Lc1COMvtBIZAJyFAkoZ5i36WQe3PocTOgwe6vmX0l9CwQ | 200 OK Content-Length: 21975 Content-Type: text/html | clean |
http://dp.g.doubleclick.net/apps/domainpark/results.cgi?client=ca-dp-bodis27_3ph_js&url=http://medicsph.ru/&output=html&hl=ru&drid=as-drid-2281613037483178&ac=r&q=Sph&afdt=CkoKEwibtamVzse-AhU0H3IKHQMOAFwQBhgBIABx8w9M8Qd9rYyCARMI6NKplc7HvgIVEh9yCh0JEwDzjQHOUgsfkQEC4Lc1COMvtBIZAJyFAkrFvihLzZ3RGoDzPiL-74njB2xTVQ | 200 OK Content-Length: 21975 Content-Type: text/html | clean |
http://dp.g.doubleclick.net/apps/domainpark/results.cgi?client=ca-dp-bodis27_3ph_js&url=http://medicsph.ru/&output=html&hl=ru&drid=as-drid-2281613037483178&ac=r&q=Sph&afdt=CkoKEwjX4bGVzse-AhVE03IKHaYiAFcQBxgBIABx8w9M8Qd9rYyCARMIkI2ylc7HvgIVbCByCh14LQD8jQHOUgsfkQEC4Lc1COMvtBIZAJyFAkr3gGYf64K4h-4l1j9Ze-cqtTi5WA | 200 OK Content-Length: 21915 Content-Type: text/html | clean |
http://dp.g.doubleclick.net/apps/domainpark/results.cgi?client=ca-dp-bodis27_3ph_js&url=http://medicsph.ru/&output=html&hl=ru&drid=as-drid-2281613037483178&ac=r&q=Sph&afdt=CkoKEwjnibuVzse-AhVhxHIKHQ11AFgQCBgBIABx8w9M8Qd9rYyCARMIy5q8lc7HvgIVwR9yCh0PKQADjQHOUgsfkQEC4Lc1COMvtBIZAJyFAkpiC5ci8bddBdDBqjgQjyDY65_YRQ | 200 OK Content-Length: 21975 Content-Type: text/html | clean |
http://dp.g.doubleclick.net/apps/domainpark/results.cgi?client=ca-dp-bodis27_3ph_js&url=http://medicsph.ru/&output=html&hl=ru&drid=as-drid-2281613037483178&ac=r&q=Sph&afdt=CkoKEwjQm8SVzse-AhVIHnIKHbZpAF4QCRgBIABx8w9M8Qd9rYyCARMI1brFlc7HvgIVpdxyCh3gEwDCjQHOUgsfkQEC4Lc1COMvtBIZAJyFAkoxxvB4oFkeqsh6k9kOiTBuKAKJGg | 200 OK Content-Length: 21975 Content-Type: text/html | clean |
http://dp.g.doubleclick.net/apps/domainpark/results.cgi?client=ca-dp-bodis27_3ph_js&url=http://medicsph.ru/&output=html&hl=ru&drid=as-drid-2281613037483178&ac=r&q=Sph&afdt=CkoKEwi3wc2Vzse-AhVIHnIKHbZpAF4QChgBIABx8w9M8Qd9rYyCARMI0ufNlc7HvgIVkDdyCh0nIADhjQHOUgsfkQEC4Lc1COMvtBIZAJyFAkrp98DeODPV0_ZCL4qzPi6oPI4qbw | 200 OK Content-Length: 21975 Content-Type: text/html | clean |
http://dp.g.doubleclick.net/apps/domainpark/results.cgi?client=ca-dp-bodis27_3ph_js&url=http://medicsph.ru/&output=html&hl=ru&drid=as-drid-2281613037483178&ac=r&q=Sph&afdt=CkoKEwjw2daVzse-AhWyH3IKHT1FAFQQCxgBIABx8w9M8Qd9rYyCARMI7P7Wlc7HvgIVRFpyCh0IOgAJjQHOUgsfkQEC4Lc1COMvtBIZAJyFAkpqwGoSaliDqhmVBxZADq5JVolqQg | 200 OK Content-Length: 21975 Content-Type: text/html | clean |
http://dp.g.doubleclick.net/apps/domainpark/results.cgi?client=ca-dp-bodis27_3ph_js&url=http://medicsph.ru/&output=html&hl=ru&drid=as-drid-2281613037483178&ac=r&q=Sph&afdt=CkoKEwiEzN-Vzse-AhWOHnIKHaMtAFgQDBgBIABx8w9M8Qd9rYyCARMIsvLflc7HvgIVJSByCh2dWQDGjQHOUgsfkQEC4Lc1COMvtBIZAJyFAko0kvp1rxH7slcAle5cXyT7g7g8xQ | 200 OK Content-Length: 21975 Content-Type: text/html | clean |
http://dp.g.doubleclick.net/apps/domainpark/results.cgi?client=ca-dp-bodis27_3ph_js&url=http://medicsph.ru/&output=html&hl=ru&drid=as-drid-2281613037483178&ac=r&q=Sph&afdt=CkoKEwiYn-iVzse-AhWOHnIKHaMtAFgQDRgBIABx8w9M8Qd9rYyCARMI9cLolc7HvgIVgx5yCh2SYADqjQHOUgsfkQEC4Lc1COMvtBIZAJyFAkqwmZKsAwK01G0kNCoiPwdQNTrVnA | 200 OK Content-Length: 21945 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=teamhigh.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://teamhigh.com/
Result: teamhigh.com is not infected or malware details are not published yet.
Result: teamhigh.com is not infected or malware details are not published yet.