Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=theofci.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: theofci.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache
Date: Thu, 26 Feb 2015 23:45:18 GMT
Pragma: no-cache
Server: Microsoft-IIS/7.5
Content-Length: 5379
Content-Type: text/html; charset=utf-8
Expires: -1
P3p: CP="CAO PSA OUR"
Set-Cookie: SessionID=17dc6d11-6457-4dd6-8f47-581a01e297da; path=/
Set-Cookie: VisitorID=a1c9ff97-900f-447e-a04c-268e14a05972&Exp=2/26/2018 3:45:19 PM; expires=Mon, 26-Feb-2018 23:45:19 GMT; path=/
X-AspNet-Version: 4.0.30319
X-Powered-By: ASP.NET
...5379 bytes of data.
GET / HTTP/1.1
Host: theofci.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache
Date: Thu, 26 Feb 2015 23:45:18 GMT
Pragma: no-cache
Server: Microsoft-IIS/7.5
Content-Length: 5379
Content-Type: text/html; charset=utf-8
Expires: -1
P3p: CP="CAO PSA OUR"
Set-Cookie: SessionID=17dc6d11-6457-4dd6-8f47-581a01e297da; path=/
Set-Cookie: VisitorID=a1c9ff97-900f-447e-a04c-268e14a05972&Exp=2/26/2018 3:45:19 PM; expires=Mon, 26-Feb-2018 23:45:19 GMT; path=/
X-AspNet-Version: 4.0.30319
X-Powered-By: ASP.NET
...5379 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: theofci.com
Referer: http://www.google.com/search?q=theofci.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: theofci.com
Referer: http://www.google.com/search?q=theofci.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://theofci.com/ | 200 OK Content-Length: 5379 Content-Type: text/html | clean |
http://code.jquery.com/jquery-latest.min.js | 200 OK Content-Length: 95786 Content-Type: application/x-javascript | clean |
http://theofci.com/js/standard.js?rte=1&tm=2&dn=theofci.com&tid=1020 | 200 OK Content-Length: 1297 Content-Type: text/javascript | clean |
http://theofci.com/static/cash-advance?slt=21&slr=1&lpt=0&yt= | HTTP/1.1 302 Found Cache-Control: private Date: Thu, 26 Feb 2015 23:45:20 GMT Location: /click Server: Microsoft-IIS/7.5 Content-Length: 123 Content-Type: text/html; charset=utf-8 P3p: CP="CAO PSA OUR" Set-Cookie: SessionID=8b38ab1e-8dc0-40a3-838b-51b97f85fb72; path=/ Set-Cookie: VisitorID=3010c852-7c0e-45f5-b532-d9710c8e7d67&Exp=2/26/2018 3:45:20 PM; expires=Mon, 26-Feb-2018 23:45:20 GMT; path=/ X-AspNet-Version: 4.0.30319 X-Powered-By: ASP.NET | clean |
http://theofci.com/click | 200 OK Content-Length: 5378 Content-Type: text/html | clean |
http://theofci.com/static/debt-consolidation?slt=21&slr=2&lpt=0&yt= | HTTP/1.1 302 Found Cache-Control: private Date: Thu, 26 Feb 2015 23:45:22 GMT Location: /click Server: Microsoft-IIS/7.5 Content-Length: 123 Content-Type: text/html; charset=utf-8 P3p: CP="CAO PSA OUR" Set-Cookie: SessionID=54efc0e0-0e6d-440f-85c7-7138fadbf5cc; path=/ Set-Cookie: VisitorID=e54a961a-10bc-4ec8-9556-4b344cc149e2&Exp=2/26/2018 3:45:22 PM; expires=Mon, 26-Feb-2018 23:45:22 GMT; path=/ X-AspNet-Version: 4.0.30319 X-Powered-By: ASP.NET | clean |
http://theofci.com/test404page.js | 200 OK Content-Length: 5380 Content-Type: text/html | clean |
http://theofci.com/static/insurance?slt=21&slr=3&lpt=0&yt= | HTTP/1.1 302 Found Cache-Control: private Date: Thu, 26 Feb 2015 23:45:23 GMT Location: /click Server: Microsoft-IIS/7.5 Content-Length: 123 Content-Type: text/html; charset=utf-8 P3p: CP="CAO PSA OUR" Set-Cookie: SessionID=75bed331-9686-4532-a501-bfb200f288a4; path=/ Set-Cookie: VisitorID=7108f403-8ca8-45d9-9f65-0073cf0190f4&Exp=2/26/2018 3:45:24 PM; expires=Mon, 26-Feb-2018 23:45:24 GMT; path=/ X-AspNet-Version: 4.0.30319 X-Powered-By: ASP.NET | clean |
http://theofci.com/static/free-credit-report?slt=21&slr=4&lpt=0&yt= | HTTP/1.1 302 Found Cache-Control: private Date: Thu, 26 Feb 2015 23:45:24 GMT Location: /click Server: Microsoft-IIS/7.5 Content-Length: 123 Content-Type: text/html; charset=utf-8 P3p: CP="CAO PSA OUR" Set-Cookie: SessionID=43f346ed-bb37-4307-987d-fc28f5244650; path=/ Set-Cookie: VisitorID=b95a00ff-5a48-48ef-9843-077082539882&Exp=2/26/2018 3:45:24 PM; expires=Mon, 26-Feb-2018 23:45:24 GMT; path=/ X-AspNet-Version: 4.0.30319 X-Powered-By: ASP.NET | clean |
http://theofci.com/static/cell-phones?slt=21&slr=5&lpt=0&yt= | HTTP/1.1 302 Found Cache-Control: private Date: Thu, 26 Feb 2015 23:45:25 GMT Location: /click Server: Microsoft-IIS/7.5 Content-Length: 123 Content-Type: text/html; charset=utf-8 P3p: CP="CAO PSA OUR" Set-Cookie: SessionID=7c710075-8aa4-4116-b676-ed12a7eb9dbb; path=/ Set-Cookie: VisitorID=627c6390-b0db-4b50-90ac-ac8b920ccc12&Exp=2/26/2018 3:45:25 PM; expires=Mon, 26-Feb-2018 23:45:25 GMT; path=/ X-AspNet-Version: 4.0.30319 X-Powered-By: ASP.NET | clean |
http://theofci.com/static/life-insurance?slt=21&slr=6&lpt=0&yt= | 500 Status read failed: Соединение ÑазоÑвано дÑÑгой ÑÑоÑоной Content-Length: 152 Content-Type: text/plain | clean |
http://theofci.com/static/credit-card-application?slt=21&slr=7&lpt=0&yt= | 500 Status read failed: Соединение ÑазоÑвано дÑÑгой ÑÑоÑоной Content-Length: 152 Content-Type: text/plain | clean |
http://theofci.com/static/real-estate?slt=21&slr=8&lpt=0&yt= | 500 Status read failed: Соединение ÑазоÑвано дÑÑгой ÑÑоÑоной Content-Length: 152 Content-Type: text/plain | clean |
http://theofci.com/static/cheap-airfare?slt=21&slr=9&lpt=0&yt= | 500 Status read failed: Соединение ÑазоÑвано дÑÑгой ÑÑоÑоной Content-Length: 152 Content-Type: text/plain | clean |
http://theofci.com/static/finance?slt=21&slr=10&lpt=0&yt= | 500 Status read failed: Соединение ÑазоÑвано дÑÑгой ÑÑоÑоной Content-Length: 152 Content-Type: text/plain | clean |