Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://www.teen-sex-erotik.com/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: www.teen-sex-erotik.com Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Found Cache-Control: private Connection: close Date: Thu, 01 Jan 2015 17:35:45 GMT Location: http://bttrack.com/direct?url=http%3A%2F%2Fbtdnav.com%2Fclick%3Fdata%3DSXRoaU1Pd0J4TmZuVkhFb0s4bTFTU0p6ZGhZVTFSRkUzczBRNmlyNFNPRkducDdxbjlMcXlQa0xSZ0pha0VDOU5CYm5JOUR4YkJmLXNZMnZnam0wV1BZaF9UVmJxNmpFSTFhVnNMRUVZMnpPaER6cE5pVDRvLXZONVMtQXFET3hfOXp4cDkzdGdrU00yeVNiR2o4TnJuVWlONlJlaDB6aWwxQmtialN2WFY4MQ2%26id%3D876837d3-bb18-46ad-8a9f-a187e743f31a Server: Microsoft-IIS/7.5 Content-Length: 463 Content-Type: text/html; charset=utf-8 P3P: policyref="http://www.bidtellect.com/w3c/p3p.xml", CP="CAO DSP COR ADMo DEVo PSAo PSDo HISo IVAo IVDo OUR IND OTC" X-AspNet-Version: 4.0.30319 X-AspNetMvc-Version: 5.2 X-Powered-By: ASP.NET X-ServerName: NLB5 | suspicious |
URL: http://bttrack.com/direct?url=http%3A%2F%2Fbtdnav.com%2Fclick%3Fdata%3DSXRoaU1Pd0J4TmZuVkhFb0s4bTFTU0p6ZGhZVTFSRkUzczBRNmlyNFNPRkducDdxbjlMcXlQa0xSZ0pha0VDOU5CYm5JOUR4YkJmLXNZMnZnam0wV1BZaF9UVmJxNmpFSTFhVnNMRUVZMnpPaER6cE5pVDRvLXZONVMtQXFET3hfOXp4cDkzdGdrU00yeVNiR2o4TnJuVWlONlJlaDB6aWwxQmtialN2WFY4MQ2%26id%3D876837d3-bb18-46ad-8a9f-a187e743f31a (imitation of visitor from search engine) GET /direct?url=http%3A%2F%2Fbtdnav.com%2Fclick%3Fdata%3DSXRoaU1Pd0J4TmZuVkhFb0s4bTFTU0p6ZGhZVTFSRkUzczBRNmlyNFNPRkducDdxbjlMcXlQa0xSZ0pha0VDOU5CYm5JOUR4YkJmLXNZMnZnam0wV1BZaF9UVmJxNmpFSTFhVnNMRUVZMnpPaER6cE5pVDRvLXZONVMtQXFET3hfOXp4cDkzdGdrU00yeVNiR2o4TnJuVWlONlJlaDB6aWwxQmtialN2WFY4MQ2%26id%3D876837d3-bb18-46ad-8a9f-a187e743f31a HTTP/1.1 Host: bttrack.com Referer: http://www.google.com/search?q=redirect+check2 | HTTP/1.1 302 Found Cache-Control: private,no-cache Date: Thu, 01 Jan 2015 17:35:46 GMT Pragma: no-cache Location: http://btdnav.com/click?data=SXRoaU1Pd0J4TmZuVkhFb0s4bTFTU0p6ZGhZVTFSRkUzczBRNmlyNFNPRkducDdxbjlMcXlQa0xSZ0pha0VDOU5CYm5JOUR4YkJmLXNZMnZnam0wV1BZaF9UVmJxNmpFSTFhVnNMRUVZMnpPaER6cE5pVDRvLXZONVMtQXFET3hfOXp4cDkzdGdrU00yeVNiR2o4TnJuVWlONlJlaDB6aWwxQmtialN2WFY4MQ2&id=876837d3-bb18-46ad-8a9f-a187e743f31a Server: Microsoft-IIS/7.5 Content-Length: 421 Content-Type: text/html; charset=utf-8 Expires: -1 P3P: policyref="http://www.bidtellect.com/w3c/p3p.xml", CP="CAO DSP COR ADMo DEVo PSAo PSDo HISo IVAo IVDo OUR IND OTC" Set-Cookie: GLOBALID=2uKlc8-sIBd987HhpwPHGWf64wueoVYedRE9mOozwEdx37r0CYrCr3zNmBxXYMYaIEvUzSHTlbM1; domain=.bttrack.com; expires=Sun, 01-Jan-2017 17:35:47 GMT; path=/ X-AspNet-Version: 4.0.30319 X-AspNetMvc-Version: 5.2 X-Powered-By: ASP.NET X-ServerName: NLB9 | suspicious |
Scanned pages/files
Request | Server response | Status |
http://www.teen-sex-erotik.com/ | 200 OK Content-Length: 3814 Content-Type: text/html | clean |
http://www.teen-sex-erotik.com/Scripts/Bundle?v=G8aXx_qVKy_Uk5yfNkCRo9j9VJ0IOyaWQqKWz72ck1A1 | 200 OK Content-Length: 658 Content-Type: text/javascript | clean |
http://www.teen-sex-erotik.com/b-a-n-n-e-r-1?domainid=764067 | 200 OK Content-Length: 95 Content-Type: text/javascript | clean |
http://www.teen-sex-erotik.com/test404page.js | 404 Not Found Content-Length: 1245 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=teen-sex-erotik.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://teen-sex-erotik.com/
Result: teen-sex-erotik.com is not infected or malware details are not published yet.
Result: teen-sex-erotik.com is not infected or malware details are not published yet.