Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://tredeme.com/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: tredeme.com Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Found Date: Tue, 15 Apr 2014 03:39:38 GMT Location: http://www.searchremagnified.com/?dn=tredeme.com&pid=9PO28A2FW Server: Apache/2.2.3 (CentOS) Vary: Accept-Encoding,User-Agent Content-Length: 0 Content-Type: text/html; charset=UTF-8 Set-Cookie: gvc=913vr1450787785300763; expires=Sun, 14-Apr-2019 03:39:38 GMT; path=/; domain=tredeme.com; httponly X-Cnection: close X-Powered-By: PHP/5.3.21 | malicious |
URL: http://www.searchremagnified.com/?dn=tredeme.com&pid=9PO28A2FW (imitation of visitor from search engine) GET /?dn=tredeme.com&pid=9PO28A2FW HTTP/1.1 Host: www.searchremagnified.com Referer: http://www.google.com/search?q=redirect+check2 | HTTP/1.1 302 Found Date: Tue, 15 Apr 2014 03:39:38 GMT Location: http://freeresultsguide.com/?dn=tredeme.com&pid=9PO28A2FW Server: Apache/2.2.3 (Red Hat) Vary: Accept-Encoding Content-Length: 336 Content-Type: text/html; charset=iso-8859-1 X-Cnection: close | suspicious |
Scanned pages/files
Request | Server response | Status |
http://tredeme.com/content/ | HTTP/1.1 302 Found Date: Tue, 15 Apr 2014 03:39:38 GMT Location: http://www.searchremagnified.com/?dn=tredeme.com&pid=9PO28A2FW Server: Apache/2.2.3 (Red Hat) Vary: Accept-Encoding,User-Agent Content-Length: 0 Content-Type: text/html; charset=UTF-8 Set-Cookie: gvc=909vr1450787786713425; expires=Sun, 14-Apr-2019 03:39:38 GMT; path=/; domain=tredeme.com; httponly X-Cnection: close X-Powered-By: PHP/5.3.21 | clean |
http://www.searchremagnified.com/?dn=tredeme.com&pid=9po28a2fw | HTTP/1.1 302 Found Date: Tue, 15 Apr 2014 03:39:39 GMT Location: http://freeresultsguide.com/?dn=tredeme.com&pid=9po28a2fw Server: Apache/2.2.3 (Red Hat) Vary: Accept-Encoding Content-Length: 336 Content-Type: text/html; charset=iso-8859-1 X-Cnection: close | clean |
http://freeresultsguide.com/?dn=tredeme.com&pid=9po28a2fw | 200 OK Content-Length: 2423 Content-Type: text/html | clean |
http://freeresultsguide.com/?dn=tredeme.com&fp=IL7JBNQNUcwPasrvPTYUh56vE7kO%2Bdgh7NvBN04lkqNZN1C5Fj6Pqyl2JEQgrSIFHWrbn5Ew%2BYpK8qKFXk8aHg%3D%3D&prvtof=V6fB0BkfX247Plvt8OxMx3dwHURQKUk3k%2BljODoLxwM%3D&poru=SbVdzGMb3s3YfuJ8p0L2hql8DlYwKBjI24djzkNbS0YsPOsNbqZCheWYaENiNxq7f5RnB%2BJaBZw9NUUu72EEscvCSS37dfV%2FeQZydjZ9QGk%3D& | 200 OK Content-Length: 271 Content-Type: text/html | clean |
http://freeresultsguide.com/test404page.js | HTTP/1.1 302 Found Date: Tue, 15 Apr 2014 03:39:40 GMT Location: http://pagesinxt.com/?dn=freeresultsguide.com&flrdr=yes&nxte=js Server: Apache/2.2.3 (Red Hat) Vary: Accept-Encoding,User-Agent Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Cnection: close X-Powered-By: PHP/5.3.21 | clean |
http://pagesinxt.com/?dn=freeresultsguide.com&flrdr=yes&nxte=js | HTTP/1.1 302 Found Date: Tue, 15 Apr 2014 03:39:40 GMT Location: http://mypageresults.com/?dn=freeresultsguide.com&flrdr=yes&nxte=js Server: Apache/2.2.3 (Red Hat) Vary: Accept-Encoding Content-Length: 338 Content-Type: text/html; charset=iso-8859-1 X-Cnection: close | clean |
http://mypageresults.com/?dn=freeresultsguide.com&flrdr=yes&nxte=js | 200 OK Content-Length: 2519 Content-Type: text/html | clean |
http://mypageresults.com/?dn=freeresultsguide.com&fp=Crw7v0LBL%2FUgSQ02PsTw8hp6W3mcMrOOxRhpxlYxeQv1VypyHmRfoW1qwwiSvxM%2BbV2FyHZpodxjLpni53MrOg%3D%3D&prvtof=74KyoBou6kemIfxdh%2BpWPiti7qTksKhhVspnO2LUOk0%3D&poru=y40QXNFv6OqAlP3g5q6gTzY%2B2h0UY1qIXfX5KA6ioZxk7QeHEMPr4LbgnT0RRh8uJSoBVeaN859Vw8OIR9Fssjx5GvnJpsjhOdKK1cwCQuA%3D&flrdr=yes&nxte=js | 200 OK Content-Length: 272 Content-Type: text/html | clean |
http://mypageresults.com/test404page.js | HTTP/1.1 302 Found Date: Tue, 15 Apr 2014 03:39:41 GMT Location: http://pagesinxt.com/?dn=mypageresults.com&flrdr=yes&nxte=js Server: Apache/2.2.3 (Red Hat) Vary: Accept-Encoding,User-Agent Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Cnection: close X-Powered-By: PHP/5.3.21 | clean |
http://pagesinxt.com/?dn=mypageresults.com&flrdr=yes&nxte=js | HTTP/1.1 302 Found Date: Tue, 15 Apr 2014 03:39:42 GMT Location: http://mypageresults.com/?dn=mypageresults.com&flrdr=yes&nxte=js Server: Apache/2.2.3 (Red Hat) Vary: Accept-Encoding Content-Length: 335 Content-Type: text/html; charset=iso-8859-1 X-Cnection: close | clean |
http://mypageresults.com/?dn=mypageresults.com&flrdr=yes&nxte=js | 200 OK Content-Length: 2523 Content-Type: text/html | clean |
http://mypageresults.com/?dn=mypageresults.com&fp=PFgqazItsiRwLTVNC99z3EgT%2Ba1DjYYvonQdBSl%2FE%2F20N%2F%2FGlFjXAlvu5oGBgWMdDnRkGeKlOt1cYV4oyCg75Q%3D%3D&prvtof=BWPQXHLdokRAZU9rJcEjQLR88sfAWvWmcVOfzXDIT3c%3D&poru=gkXAR4Nimm%2FIN68rlmKvqD5TE%2BcFpxjuyGA4taMS78yRrPSezA0lvKpKyd%2FflPodbkGMzrAvUoCeSWuOoxJXVKBHqJ2HysrE6a3FH2dIMz0%3D&flrdr=yes&nxte=js | 200 OK Content-Length: 271 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=tredeme.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://tredeme.com/
Result: tredeme.com is not infected or malware details are not published yet.
Result: tredeme.com is not infected or malware details are not published yet.