Scanned pages/files
Request | Server response | Status |
http://twoomail.com/ | HTTP/1.1 301 Moved Permanently Cache-Control: max-age=2592000 Date: Mon, 02 Mar 2015 10:29:51 GMT Pragma: public Location: http://www.twoo.com/ Server: nginx Content-Type: text/html; charset=UTF-8 Expires: Wed, 01 Apr 2015 10:29:51 GMT Last-Modified: Sun, 01 Mar 2015 10:29:51 GMT X-Cnection: close | clean |
http://www.twoo.com/ | 200 OK Content-Length: 48093 Content-Type: text/html | suspicious |
Suspicious code found <div class="bgImage"> <img src="http://twoo-a.akamaihd.net/static/5197366995258789236541/images/hpv4/beach-at-dusk@2x_optimized.jpg" class="pano" /> </div> <div class="hpCounter"> <div class="counter medium clearfix" id="jsCounter"></div> <p class="text">vyrai ir moterys <span class="fcor">âTwooâ</span>!</p> </div> <div class="slogan left"> <span><strong class="fw500">Sveikinam <div class="hpLoading clearfix mh20" id="facebookLoading" style="display:none;"> <p class="fs16 fwb fcw"> Jungiamasi su âFacebookâ </p> <p class="fcw"> <img class="rad5" src="http://twoo-a.akamaihd.net/static/17460098992384237/images/loader-animated.gif" /><br /> </p> <p class="fcw"> PraÅ¡ome palaukti, kol kuriame tavo paskyrÄ . </p> </div> </div> | ||
http://twoo-a.akamaihd.net/static/946284976286101220435/jsc/g/webcore.js | 200 OK Content-Length: 159130 Content-Type: application/x-javascript | clean |
http://twoomail.com/id/ | HTTP/1.1 301 Moved Permanently Cache-Control: max-age=2592000 Date: Mon, 02 Mar 2015 10:29:52 GMT Pragma: public Location: http://www.twoo.com/id/ Server: nginx Content-Type: text/html; charset=UTF-8 Expires: Wed, 01 Apr 2015 10:29:52 GMT Last-Modified: Sun, 01 Mar 2015 10:29:52 GMT X-Cnection: close | clean |
http://www.twoo.com/id/ | 200 OK Content-Length: 48741 Content-Type: text/html | suspicious |
Suspicious code found <div class="bgImage"> <img src="http://twoo-a.akamaihd.net/static/5197366995258789236541/images/hpv4/beach-at-dusk@2x_optimized.jpg" class="pano" /> </div> <div class="hpCounter"> <div class="counter medium clearfix" id="jsCounter"></div> <p class="text">laki-laki dan wanita <span class="fcor">sekarang</span> aktif di Twoo!</p> </div> <div class="slogan left"> <span><strong class="fw5 <div class="hpLoading clearfix mh20" id="facebookLoading" style="display:none;"> <p class="fs16 fwb fcw"> Tersambung melalui Facebook </p> <p class="fcw"> <img class="rad5" src="http://twoo-a.akamaihd.net/static/17460098992384237/images/loader-animated.gif" /><br /> </p> <p class="fcw"> Tunggu sampai kami buat akunmu. </p> </div> </div> | ||
http://www.twoo.com/id/?lng=id | 200 OK Content-Length: 48015 Content-Type: text/html | suspicious |
Suspicious code found <div class="bgImage"> <img src="http://twoo-a.akamaihd.net/static/5197366995258789236541/images/hpv4/beach-at-dusk@2x_optimized.jpg" class="pano" /> </div> <div class="hpCounter"> <div class="counter medium clearfix" id="jsCounter"></div> <p class="text">laki-laki dan wanita <span class="fcor">sekarang</span> aktif di Twoo!</p> </div> <div class="slogan left"> <span><strong class="fw5 <div class="hpLoading clearfix mh20" id="facebookLoading" style="display:none;"> <p class="fs16 fwb fcw"> Tersambung melalui Facebook </p> <p class="fcw"> <img class="rad5" src="http://twoo-a.akamaihd.net/static/17460098992384237/images/loader-animated.gif" /><br /> </p> <p class="fcw"> Tunggu sampai kami buat akunmu. </p> </div> </div> | ||
http://www.twoo.com/ms/?lng=id | 200 OK Content-Length: 45669 Content-Type: text/html | suspicious |
Suspicious code found <div class="bgImage"> <img src="http://twoo-a.akamaihd.net/static/5197366995258789236541/images/hpv4/beach-at-dusk@2x_optimized.jpg" class="pano" /> </div> <div class="hpCounter"> <div class="counter medium clearfix" id="jsCounter"></div> <p class="text">lelaki dan wanita <span class="fcor">kini</span> di Twoo!</p> </div> <div class="slogan left"> <span><strong class="fw500">Selama <div class="hpLoading clearfix mh20" id="facebookLoading" style="display:none;"> <p class="fs16 fwb fcw"> Disambungkan dengan Facebook </p> <p class="fcw"> <img class="rad5" src="http://twoo-a.akamaihd.net/static/17460098992384237/images/loader-animated.gif" /><br /> </p> <p class="fcw"> Sila tunggu sementara kami mecipta akaun anda. </p> </div> </div> | ||
http://www.twoo.com/id/?lng=ms | 200 OK Content-Length: 47635 Content-Type: text/html | suspicious |
Suspicious code found <div class="bgImage"> <img src="http://twoo-a.akamaihd.net/static/5197366995258789236541/images/hpv4/beach-at-dusk@2x_optimized.jpg" class="pano" /> </div> <div class="hpCounter"> <div class="counter medium clearfix" id="jsCounter"></div> <p class="text">laki-laki dan wanita <span class="fcor">sekarang</span> aktif di Twoo!</p> </div> <div class="slogan left"> <span><strong class="fw5 <div class="hpLoading clearfix mh20" id="facebookLoading" style="display:none;"> <p class="fs16 fwb fcw"> Tersambung melalui Facebook </p> <p class="fcw"> <img class="rad5" src="http://twoo-a.akamaihd.net/static/17460098992384237/images/loader-animated.gif" /><br /> </p> <p class="fcw"> Tunggu sampai kami buat akunmu. </p> </div> </div> | ||
http://www.twoo.com/cs/?lng=id | 200 OK Content-Length: 35124 Content-Type: text/html | suspicious |
Suspicious code found <div class="bgImage"> <img src="http://twoo-a.akamaihd.net/static/5197366995258789236541/images/hpv4/beach-at-dusk@2x_optimized.jpg" class="pano" /> </div> <div class="hpCounter"> <div class="counter medium clearfix" id="jsCounter"></div> <p class="text">mužů a žen je <span class="fcor">v tuto chvÃli</span> aktivnÃch na Twoo!</p> </div> <div class="slogan left"> <span><strong cla <div class="hpLoading clearfix mh20" id="facebookLoading" style="display:none;"> <p class="fs16 fwb fcw"> Navazovánà spojenà s Facebookem </p> <p class="fcw"> <img class="rad5" src="http://twoo-a.akamaihd.net/static/17460098992384237/images/loader-animated.gif" /><br /> </p> <p class="fcw"> PoÄkej prosÃm, dokud ti nevytvoÅÃme úÄet. </p> </div> </div> | ||
http://www.twoo.com/id/?lng=cs | 200 OK Content-Length: 45935 Content-Type: text/html | suspicious |
Suspicious code found <div class="bgImage"> <img src="http://twoo-a.akamaihd.net/static/5197366995258789236541/images/hpv4/beach-at-dusk@2x_optimized.jpg" class="pano" /> </div> <div class="hpCounter"> <div class="counter medium clearfix" id="jsCounter"></div> <p class="text">laki-laki dan wanita <span class="fcor">sekarang</span> aktif di Twoo!</p> </div> <div class="slogan left"> <span><strong class="fw5 <div class="hpLoading clearfix mh20" id="facebookLoading" style="display:none;"> <p class="fs16 fwb fcw"> Tersambung melalui Facebook </p> <p class="fcw"> <img class="rad5" src="http://twoo-a.akamaihd.net/static/17460098992384237/images/loader-animated.gif" /><br /> </p> <p class="fcw"> Tunggu sampai kami buat akunmu. </p> </div> </div> | ||
http://www.twoo.com/da/?lng=id | 200 OK Content-Length: 45975 Content-Type: text/html | suspicious |
Suspicious code found <div class="bgImage"> <img src="http://twoo-a.akamaihd.net/static/5197366995258789236541/images/hpv4/beach-at-dusk@2x_optimized.jpg" class="pano" /> </div> <div class="hpCounter"> <div class="counter medium clearfix" id="jsCounter"></div> <p class="text">mænd og kvinder <span class="fcor">nu</span> aktive på Twoo!</p> </div> <div class="slogan left"> <span><strong class="fw500">V <div class="hpLoading clearfix mh20" id="facebookLoading" style="display:none;"> <p class="fs16 fwb fcw"> Forbinder med Facebook </p> <p class="fcw"> <img class="rad5" src="http://twoo-a.akamaihd.net/static/17460098992384237/images/loader-animated.gif" /><br /> </p> <p class="fcw"> Vent venligst, mens vi opretter din konto. </p> </div> </div> | ||
http://www.twoo.com/id/?lng=da | 200 OK Content-Length: 47635 Content-Type: text/html | suspicious |
Suspicious code found <div class="bgImage"> <img src="http://twoo-a.akamaihd.net/static/5197366995258789236541/images/hpv4/beach-at-dusk@2x_optimized.jpg" class="pano" /> </div> <div class="hpCounter"> <div class="counter medium clearfix" id="jsCounter"></div> <p class="text">laki-laki dan wanita <span class="fcor">sekarang</span> aktif di Twoo!</p> </div> <div class="slogan left"> <span><strong class="fw5 <div class="hpLoading clearfix mh20" id="facebookLoading" style="display:none;"> <p class="fs16 fwb fcw"> Tersambung melalui Facebook </p> <p class="fcw"> <img class="rad5" src="http://twoo-a.akamaihd.net/static/17460098992384237/images/loader-animated.gif" /><br /> </p> <p class="fcw"> Tunggu sampai kami buat akunmu. </p> </div> </div> | ||
http://www.twoo.com/de/?lng=id | 200 OK Content-Length: 45807 Content-Type: text/html | suspicious |
Suspicious code found <div class="bgImage"> <img src="http://twoo-a.akamaihd.net/static/5197366995258789236541/images/hpv4/beach-at-dusk@2x_optimized.jpg" class="pano" /> </div> <div class="hpCounter"> <div class="counter medium clearfix" id="jsCounter"></div> <p class="text">Männer und Frauen <span class="fcor">die jetzt</span> auf Twoo aktiv sind!</p> </div> <div class="slogan left"> <span><strong class <div class="hpLoading clearfix mh20" id="facebookLoading" style="display:none;"> <p class="fs16 fwb fcw"> Mit Facebook verbinden </p> <p class="fcw"> <img class="rad5" src="http://twoo-a.akamaihd.net/static/17460098992384237/images/loader-animated.gif" /><br /> </p> <p class="fcw"> Bitte warte, bis wir deinen Account erstellt haben. </p> </div> </div> | ||
http://www.twoo.com/id/?lng=de | 200 OK Content-Length: 45557 Content-Type: text/html | suspicious |
Suspicious code found <div class="bgImage"> <img src="http://twoo-a.akamaihd.net/static/5197366995258789236541/images/hpv4/beach-at-dusk@2x_optimized.jpg" class="pano" /> </div> <div class="hpCounter"> <div class="counter medium clearfix" id="jsCounter"></div> <p class="text">laki-laki dan wanita <span class="fcor">sekarang</span> aktif di Twoo!</p> </div> <div class="slogan left"> <span><strong class="fw5 <div class="hpLoading clearfix mh20" id="facebookLoading" style="display:none;"> <p class="fs16 fwb fcw"> Tersambung melalui Facebook </p> <p class="fcw"> <img class="rad5" src="http://twoo-a.akamaihd.net/static/17460098992384237/images/loader-animated.gif" /><br /> </p> <p class="fcw"> Tunggu sampai kami buat akunmu. </p> </div> </div> | ||
http://www.twoo.com/et/?lng=id | 200 OK Content-Length: 45634 Content-Type: text/html | suspicious |
Suspicious code found <div class="bgImage"> <img src="http://twoo-a.akamaihd.net/static/5197366995258789236541/images/hpv4/beach-at-dusk@2x_optimized.jpg" class="pano" /> </div> <div class="hpCounter"> <div class="counter medium clearfix" id="jsCounter"></div> <p class="text">meest ja naist on <span class="fcor">praegu</span> Twoos aktiivsed!</p> </div> <div class="slogan left"> <span><strong class="fw500" <div class="hpLoading clearfix mh20" id="facebookLoading" style="display:none;"> <p class="fs16 fwb fcw"> Facebookiga ühendumine </p> <p class="fcw"> <img class="rad5" src="http://twoo-a.akamaihd.net/static/17460098992384237/images/loader-animated.gif" /><br /> </p> <p class="fcw"> Palun oota, kuni loome Sulle konto </p> </div> </div> | ||
http://www.twoo.com/id/?lng=et | 200 OK Content-Length: 47632 Content-Type: text/html | suspicious |
Suspicious code found <div class="bgImage"> <img src="http://twoo-a.akamaihd.net/static/5197366995258789236541/images/hpv4/beach-at-dusk@2x_optimized.jpg" class="pano" /> </div> <div class="hpCounter"> <div class="counter medium clearfix" id="jsCounter"></div> <p class="text">laki-laki dan wanita <span class="fcor">sekarang</span> aktif di Twoo!</p> </div> <div class="slogan left"> <span><strong class="fw5 <div class="hpLoading clearfix mh20" id="facebookLoading" style="display:none;"> <p class="fs16 fwb fcw"> Tersambung melalui Facebook </p> <p class="fcw"> <img class="rad5" src="http://twoo-a.akamaihd.net/static/17460098992384237/images/loader-animated.gif" /><br /> </p> <p class="fcw"> Tunggu sampai kami buat akunmu. </p> </div> </div> | ||
http://www.twoo.com/en/?lng=id | 200 OK Content-Length: 45683 Content-Type: text/html | suspicious |
Suspicious code found <div class="bgImage"> <img src="http://twoo-a.akamaihd.net/static/5197366995258789236541/images/hpv4/beach-at-dusk@2x_optimized.jpg" class="pano" /> </div> <div class="hpCounter"> <div class="counter medium clearfix" id="jsCounter"></div> <p class="text">men and women on <span class="fcor">Twoo</span>!</p> </div> <div class="slogan left"> <span><strong class="fw500">Welcome to < <div class="hpLoading clearfix mh20" id="facebookLoading" style="display:none;"> <p class="fs16 fwb fcw"> Connecting with Facebook </p> <p class="fcw"> <img class="rad5" src="http://twoo-a.akamaihd.net/static/17460098992384237/images/loader-animated.gif" /><br /> </p> <p class="fcw"> Please wait while we create your account. </p> </div> </div> |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: twoomail.com
Result:
HTTP/1.1 301 Moved Permanently
Cache-Control: max-age=2592000
Date: Mon, 02 Mar 2015 10:29:51 GMT
Pragma: public
Location: http://www.twoo.com/
Server: nginx
Content-Type: text/html; charset=UTF-8
Expires: Wed, 01 Apr 2015 10:29:51 GMT
Last-Modified: Sun, 01 Mar 2015 10:29:51 GMT
X-Cnection: close
GET / HTTP/1.1
Host: twoomail.com
Result:
HTTP/1.1 301 Moved Permanently
Cache-Control: max-age=2592000
Date: Mon, 02 Mar 2015 10:29:51 GMT
Pragma: public
Location: http://www.twoo.com/
Server: nginx
Content-Type: text/html; charset=UTF-8
Expires: Wed, 01 Apr 2015 10:29:51 GMT
Last-Modified: Sun, 01 Mar 2015 10:29:51 GMT
X-Cnection: close
Second query (visit from search engine):
GET / HTTP/1.1
Host: twoomail.com
Referer: http://www.google.com/search?q=twoomail.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: twoomail.com
Referer: http://www.google.com/search?q=twoomail.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=twoomail.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://twoomail.com/
Result: twoomail.com is not infected or malware details are not published yet.
Result: twoomail.com is not infected or malware details are not published yet.