Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://trans-hebrew.com/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: trans-hebrew.com Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Found Connection: close Date: Sun, 23 Aug 2015 18:14:19 GMT Location: http://clcktrck.net/path/lp.php?trvid=10006&trvx=ce6c859c&search=trans-hebrew.com&smid=9MCjPiVGnBy&dom=trans-hebrew.com Server: cloudflare-nginx Content-Type: text/html;charset=UTF-8 CF-RAY: 21a8cbe2f99905c3-WAW Set-Cookie: __cfduid=dbc9b37ecdba584cb91ff74cd3150793d1440353659; expires=Mon, 22-Aug-16 18:14:19 GMT; path=/; domain=.trans-hebrew.com; HttpOnly | malicious |
URL: http://clcktrck.net/path/302.php?d=aHR0cDovL2FkdmlkaS5vcHRpbXV1bS5jb20vZjc3ZDI4YmEyZTk1NmExYy9jZD9hZmZfaWQ9MjA5NCZzeGlkPTBiaDM2NTI2MzNxYw_2 (imitation of visitor from search engine) GET /path/302.php?d=aHR0cDovL2FkdmlkaS5vcHRpbXV1bS5jb20vZjc3ZDI4YmEyZTk1NmExYy9jZD9hZmZfaWQ9MjA5NCZzeGlkPTBiaDM2NTI2MzNxYw_2 HTTP/1.1 Host: clcktrck.net Referer: http://www.google.com/search?q=redirect+check2 | HTTP/1.1 302 Found Cache-Control: max-age=0 Connection: close Date: Sun, 23 Aug 2015 18:14:20 GMT Location: http://advidi.optimuum.com/f77d28ba2e956a1c/cd?aff_id=2094&sxid=0bh3652633qc Server: Apache Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Sun, 23 Aug 2015 18:14:20 GMT X-Powered-By: PHP/5.4.16 X-UA-Compatible: IE=Edge,chrome=1 | malicious |
URL: http://advidi.optimuum.com/f77d28ba2e956a1c/cd?aff_id=2094&sxid=0bh3652633qc (imitation of visitor from search engine) GET /f77d28ba2e956a1c/cd?aff_id=2094&sxid=0bh3652633qc HTTP/1.1 Host: advidi.optimuum.com Referer: http://www.google.com/search?q=redirect+check3 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sun, 23 Aug 2015 18:14:20 GMT Location: http://stuntoffer.com/?limited_offer=R40Q12UaGnLc&exit_block_type=noescape5&video=3&url=%5Bhttp%3A%2F%2Fadvidi.optimuum.com%2Fcb%2Fcb68a32a61c1c4e3%2Ff85bef929c3ce2f4f5f0d5ccc68086e1%5D Server: nginx/1.0.15 Content-Length: 0 Content-Type: text/html;charset=utf-8 Set-Cookie: cb68a32a61c1c4e3=%5B%5B147%5D%2C%5B2570%5D%2C%5B20299%5D%5D; max-age=2592000 X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-Who: redirects-front-euw1b X-XSS-Protection: 1; mode=block | suspicious |
Scanned pages/files
Request | Server response | Status |
http://trans-hebrew.com/ | 200 OK Content-Length: 155 Content-Type: text/html | clean |
http://trans-hebrew.com/test404page.js | 200 OK Content-Length: 155 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=trans-hebrew.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://trans-hebrew.com/
Result: trans-hebrew.com is not infected or malware details are not published yet.
Result: trans-hebrew.com is not infected or malware details are not published yet.