Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=tubeleza.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://tubeleza.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: tubeleza.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Wed, 17 Sep 2014 10:26:31 GMT
Location: http://www.tvbucetas.com/
Server: nginx/1.6.2
Content-Length: 295
Content-Type: text/html; charset=iso-8859-1
...295 bytes of data.
GET / HTTP/1.1
Host: tubeleza.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Wed, 17 Sep 2014 10:26:31 GMT
Location: http://www.tvbucetas.com/
Server: nginx/1.6.2
Content-Length: 295
Content-Type: text/html; charset=iso-8859-1
...295 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: tubeleza.com
Referer: http://www.google.com/search?q=tubeleza.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: tubeleza.com
Referer: http://www.google.com/search?q=tubeleza.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://tubeleza.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 17 Sep 2014 10:26:31 GMT Location: http://www.tvbucetas.com/ Server: nginx/1.6.2 Content-Length: 295 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.tvbucetas.com/ | 200 OK Content-Length: 37586 Content-Type: text/html | clean |
http://www.tvbucetas.com//ajax.googleapis.com/ajax/libs/jquery/1.10.2/jquery.min.js/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Wed, 17 Sep 2014 10:26:33 GMT Pragma: no-cache Location: http://www.tvbucetas.com/ajax.googleapis.com/ajax/libs/jquery/1.10.2/jquery.min.js/ Server: cloudflare-nginx Vary: User-Agent,Accept-Encoding Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT CF-RAY: 16b49b2ad25e089f-FRA Set-Cookie: __cfduid=dd2deaa68cd519e309d7587aba02c5c0d1410949592772; expires=Mon, 23-Dec-2019 23:50:00 GMT; path=/; domain=.tvbucetas.com; HttpOnly X-Pingback: http://www.tvbucetas.com/xmlrpc.php X-Powered-By: W3 Total Cache/0.9.3 X-W3TC-Minify: On | clean |
http://www.tvbucetas.com/ajax.googleapis.com/ajax/libs/jquery/1.10.2/jquery.min.js/ | 404 Not Found Content-Length: 17185 Content-Type: text/html | clean |
http://www.tvbucetas.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/x-javascript | clean |
http://www.tvbucetas.com//ajax.googleapis.com/ajax/libs/jqueryui/1.10.3/jquery-ui.min.js/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Wed, 17 Sep 2014 10:26:35 GMT Pragma: no-cache Location: http://www.tvbucetas.com/ajax.googleapis.com/ajax/libs/jqueryui/1.10.3/jquery-ui.min.js/ Server: cloudflare-nginx Vary: User-Agent,Accept-Encoding Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT CF-RAY: 16b49b38fc5d0899-FRA Set-Cookie: __cfduid=d21f1fac8d80db0150b896045f5260b711410949595032; expires=Mon, 23-Dec-2019 23:50:00 GMT; path=/; domain=.tvbucetas.com; HttpOnly X-Pingback: http://www.tvbucetas.com/xmlrpc.php X-Powered-By: W3 Total Cache/0.9.3 X-W3TC-Minify: On | clean |
http://www.tvbucetas.com/ajax.googleapis.com/ajax/libs/jqueryui/1.10.3/jquery-ui.min.js/ | 404 Not Found Content-Length: 17190 Content-Type: text/html | clean |
http://www.tvbucetas.com/wp-content/themes/arras/js/superfish/hoverIntent.js | 200 OK Content-Length: 3174 Content-Type: application/x-javascript | clean |
http://www.tvbucetas.com/wp-content/themes/arras/js/superfish/superfish.js | 200 OK Content-Length: 3714 Content-Type: application/x-javascript | clean |
http://www.tvbucetas.com/wp-content/plugins/google-analyticator/external-tracking.min.js?ver=6.4.5 | 200 OK Content-Length: 816 Content-Type: application/x-javascript | clean |
https://ads.exoclick.com/ads.js | 200 OK Content-Length: 401 Content-Type: text/javascript | clean |
http://widgets.amung.us/small.js | 200 OK Content-Length: 4801 Content-Type: application/x-javascript | clean |
http://adspaces.ero-advertising.com/adspace/307550.js | 200 OK Content-Length: 4149 Content-Type: application/javascript | clean |
http://www.tvbucetas.com/entre-em-contato-preenchendo-o-formulario-abaixo/ | 200 OK Content-Length: 170887 Content-Type: text/html | clean |
http://www.tvbucetas.com/wp-includes/js/comment-reply.min.js?ver=3.6.1 | 200 OK Content-Length: 786 Content-Type: application/x-javascript | clean |
http://www.tvbucetas.com/wp-content/themes/arras/js/jquery.validate.min.js | 200 OK Content-Length: 24503 Content-Type: application/x-javascript | clean |
http://www.tvbucetas.com/wp-content/plugins/si-captcha-for-wordpress/captcha/si_captcha.js?ver=1.0 | 200 OK Content-Length: 685 Content-Type: application/x-javascript | clean |
http://www.tvbucetas.com/termos-de-responsabilidade/ | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |