Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=vacationstogo.theexchangeart.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://vacationstogo.theexchangeart.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://vacationstogo.theexchangeart.com/ | 200 OK Content-Length: 77968 Content-Type: text/html | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.7.1/jquery.min.js | 200 OK Content-Length: 93868 Content-Type: text/javascript | clean |
http://vacationstogo.theexchangeart.com/page/2/ | 200 OK Content-Length: 66997 Content-Type: text/html | clean |
http://vacationstogo.theexchangeart.com/page/3/ | 200 OK Content-Length: 65878 Content-Type: text/html | clean |
http://vacationstogo.theexchangeart.com/page/4/ | 200 OK Content-Length: 72773 Content-Type: text/html | clean |
http://vacationstogo.theexchangeart.com/page/5/ | 200 OK Content-Length: 71521 Content-Type: text/html | clean |
http://vacationstogo.theexchangeart.com/page/6/ | 200 OK Content-Length: 82964 Content-Type: text/html | clean |
http://vacationstogo.theexchangeart.com/page/7/ | 200 OK Content-Length: 84016 Content-Type: text/html | clean |
http://vacationstogo.theexchangeart.com/page/8/ | 200 OK Content-Length: 83632 Content-Type: text/html | clean |
http://vacationstogo.theexchangeart.com/page/9/ | 200 OK Content-Length: 77531 Content-Type: text/html | clean |
http://vacationstogo.theexchangeart.com/page/10/ | 200 OK Content-Length: 72807 Content-Type: text/html | clean |
http://vacationstogo.theexchangeart.com/page/11/ | 200 OK Content-Length: 67270 Content-Type: text/html | clean |
http://vacationstogo.theexchangeart.com/page/12/ | 200 OK Content-Length: 106490 Content-Type: text/html | clean |
http://vacationstogo.theexchangeart.com/page/13/ | 200 OK Content-Length: 81975 Content-Type: text/html | clean |
http://vacationstogo.theexchangeart.com/page/14/ | 200 OK Content-Length: 85366 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.travelda.ru ...[50317 bytes skipped]... t;/p> <p>Source: <a href="http://feeds.sciencedaily.com/~r/sciencedaily/~3/apzIEPfMq6I/130524142549.htm">http://feeds.sciencedaily.com/~r/sciencedaily/~3/apzIEPfMq6I/130524142549.htm</a></p> <p><a href="http://www.trgovinca.org/index.php?main_page=tell_a_friend&products_id=337">cmas</a> <a href="http://www.travelplanetagent.com/page/7/">cmas</a> <a href="http://www.travelda.ru/malta.php">tcu</a> <a href="http://www.travelantium.com/wedding-in-bahamas.htm">dr. oz</a> <a href="http://www.travel-bug.ru/board/ad-bug-obslujivayushiy-personal.html">heart attack grill las vegas</a> <a href="http://www.transport-gid.ru/Ivanovskaja/g-Sovki/403/ivanovotransagentstvo-zao.html">the heart attack grill</a> <a href="http://www.tractorist.ru/goods.php?q_good_id=89">joe kennedy iii</a> </p> < ...[45535 bytes skipped]... |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: vacationstogo.theexchangeart.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache, must-revalidate, max-age=0
Connection: close
Date: Wed, 04 Jun 2014 07:41:09 GMT
Pragma: no-cache
Server: Apache/2.2.23 (Unix) mod_ssl/2.2.23 OpenSSL/1.0.1e-fips mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635
Content-Type: text/html; charset=UTF-8
Expires: Tue, 27 May 2014 17:17:18 GMT
Last-Modified: Wed, 04 Jun 2014 07:41:09 GMT
X-Pingback: http://vacationstogo.theexchangeart.com/xmlrpc.php
X-Powered-By: PHP/5.2.17
GET / HTTP/1.1
Host: vacationstogo.theexchangeart.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache, must-revalidate, max-age=0
Connection: close
Date: Wed, 04 Jun 2014 07:41:09 GMT
Pragma: no-cache
Server: Apache/2.2.23 (Unix) mod_ssl/2.2.23 OpenSSL/1.0.1e-fips mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635
Content-Type: text/html; charset=UTF-8
Expires: Tue, 27 May 2014 17:17:18 GMT
Last-Modified: Wed, 04 Jun 2014 07:41:09 GMT
X-Pingback: http://vacationstogo.theexchangeart.com/xmlrpc.php
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: vacationstogo.theexchangeart.com
Referer: http://www.google.com/search?q=vacationstogo.theexchangeart.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: vacationstogo.theexchangeart.com
Referer: http://www.google.com/search?q=vacationstogo.theexchangeart.com
Result:
The result is similar to the first query. There are no suspicious redirects found.