Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=teensfuck.xxx
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://teensfuck.xxx/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: teensfuck.xxx
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 21 Sep 2014 06:12:31 GMT
Server: nginx/1.6.0
Vary: Accept-Encoding
Content-Type: text/html
Set-Cookie: from=noref; expires=Mon, 22-Sep-2014 06:12:31 GMT; path=/
Set-Cookie: lfrom=noref; expires=Sun, 28-Sep-2014 06:12:31 GMT; path=/
Set-Cookie: idcheck=1411279951; expires=Mon, 22-Sep-2014 06:12:31 GMT; path=/
Set-Cookie: vs=noref%7C; expires=Mon, 22-Sep-2014 06:12:31 GMT; path=/
Set-Cookie: index_page=1; expires=Mon, 22-Sep-2014 06:12:31 GMT; path=/
X-Powered-By: PHP/5.3.18
GET / HTTP/1.1
Host: teensfuck.xxx
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 21 Sep 2014 06:12:31 GMT
Server: nginx/1.6.0
Vary: Accept-Encoding
Content-Type: text/html
Set-Cookie: from=noref; expires=Mon, 22-Sep-2014 06:12:31 GMT; path=/
Set-Cookie: lfrom=noref; expires=Sun, 28-Sep-2014 06:12:31 GMT; path=/
Set-Cookie: idcheck=1411279951; expires=Mon, 22-Sep-2014 06:12:31 GMT; path=/
Set-Cookie: vs=noref%7C; expires=Mon, 22-Sep-2014 06:12:31 GMT; path=/
Set-Cookie: index_page=1; expires=Mon, 22-Sep-2014 06:12:31 GMT; path=/
X-Powered-By: PHP/5.3.18
Second query (visit from search engine):
GET / HTTP/1.1
Host: teensfuck.xxx
Referer: http://www.google.com/search?q=teensfuck.xxx
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: teensfuck.xxx
Referer: http://www.google.com/search?q=teensfuck.xxx
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://teensfuck.xxx/ | 200 OK Content-Length: 96428 Content-Type: text/html | clean |
http://syndication.exoclick.com/splash.php?cat=139&idsite=212381&idzone=762651&login=rikiten&type=3 | 200 OK Content-Length: 5828 Content-Type: application/x-javascript | clean |
http://teensfuck.xxx/dmca | 200 OK Content-Length: 12056 Content-Type: text/html | clean |
http://teensfuck.xxx//s7.addthis.com/js/300/addthis_widget.js/ | 404 Not Found Content-Length: 238 Content-Type: text/html | clean |
http://teensfuck.xxx/test404page.js | 404 Not Found Content-Length: 212 Content-Type: text/html | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.7.1/jquery.min.js?ver=3.0.4 | 200 OK Content-Length: 93868 Content-Type: text/javascript | clean |
http://teensfuck.xxx/js/script.js | 200 OK Content-Length: 5674 Content-Type: application/javascript | clean |
http://teensfuck.xxx/2257 | 200 OK Content-Length: 11783 Content-Type: text/html | clean |
http://teensfuck.xxx/rss | 200 OK Content-Length: 100154 Content-Type: text/html | clean |
http://teensfuck.xxx/visit/mobile-porn | 200 OK Content-Length: 400 Content-Type: text/html | clean |
http://teensfuck.xxx/visit/dating | 200 OK Content-Length: 498 Content-Type: text/html | clean |
http://teensfuck.xxx/type/10-inch | 200 OK Content-Length: 44808 Content-Type: text/html | clean |
http://teensfuck.xxx/sitemap | 200 OK Content-Length: 300924 Content-Type: application/xml | clean |
http://teensfuck.xxx/type/ | 200 OK Content-Length: 96018 Content-Type: text/html | clean |
http://teensfuck.xxx/type/18-19-teens | 200 OK Content-Length: 96415 Content-Type: text/html | clean |