Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: ultramegahot.net
Result:
GET / HTTP/1.1
Host: ultramegahot.net
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: ultramegahot.net
Referer: http://www.google.com/search?q=ultramegahot.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: ultramegahot.net
Referer: http://www.google.com/search?q=ultramegahot.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://www.ultramegahot.net/ | 200 OK Content-Length: 33971 Content-Type: text/html | clean |
http://mobile.plugrush.com/ultramegahot.net/169m/169m.js | 200 OK Content-Length: 0 Content-Type: text/html | clean |
http://mobile.plugrush.com/test404page.js | 200 OK Content-Length: 0 Content-Type: text/html | clean |
https://ajax.googleapis.com/ajax/libs/jquery/1.7.2/jquery.min.js | 200 OK Content-Length: 94840 Content-Type: text/javascript | clean |
http://www.ultramegahot.net/js/functions.js | 200 OK Content-Length: 545 Content-Type: application/x-javascript | clean |
http://plug.plugerr.com/galleries?p=ca=both,nh=0,id=389,iyn=1,sym=disc,opa=100,opc=ffffff,db=4,htc=0F25F2,bty=solid,ibch=000000,it=port,wt=G,iw=180,pd=5,br=0,brc=000000,c=800,st=1,tp=2,ta=left,dec=none,ff=Georgia,fsz=12,fs=normal,fw=normal,fc=FF1717,ch=25,adv=0,ai=0,tags=amateur;anal;blowjob;cumshot;pornstar;teen;&fid=707 | 200 OK Content-Length: 28916 Content-Type: text/javascript | clean |
http://www.plughits.com/pu.php?site=55 | 200 OK Content-Length: 3385 Content-Type: text/html | clean |
http://ads.livepromotools.com/da_js.ashx?handler=WLGBannerV1.ashx&template=2042&width=200&height=200&wid=125748676035&cid=10&promocode=BCODE43FE4457_im&ptype=2&pid=-10870&queryid=1 | 200 OK Content-Length: 1072 Content-Type: text/javascript | clean |
http://xapi.juicyads.com/js/jac.js | 200 OK Content-Length: 91344 Content-Type: application/x-javascript | clean |
http://www.amateursmile.com/js/ui.php?mcid=3 | 200 OK Content-Length: 1557 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=ultramegahot.net
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://ultramegahot.net/
Result: ultramegahot.net is not infected or malware details are not published yet.
Result: ultramegahot.net is not infected or malware details are not published yet.