Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://wap-frauenorgasmus.fickmaus.org/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: wap-frauenorgasmus.fickmaus.org Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 301 Moved Permanently Connection: close Date: Tue, 02 Jun 2015 09:25:53 GMT Location: http://imgref.in/script/in.cgi Server: Apache/2.2.16 (Debian) PHP/5.3.29-1~dotdeb.0 with Suhosin-Patch mod_python/3.3.1 Python/2.6.6 mod_ssl/2.2.16 OpenSSL/0.9.8o Content-Length: 436 Content-Type: text/html; charset=iso-8859-1 | malicious |
URL: http://imgref.in/script/in.cgi (imitation of visitor from search engine) GET /script/in.cgi HTTP/1.1 Host: imgref.in Referer: http://www.google.com/search?q=redirect+check2 | HTTP/1.1 302 Found Connection: close Date: Tue, 02 Jun 2015 09:25:53 GMT Location: http://join.jcosplay.com/track/NjU5MDoyMjoxOQ/ Server: Apache/2.2.9 (Debian) PHP/5.2.6-1+lenny16 with Suhosin-Patch mod_python/3.3.1 Python/2.5.2 mod_ssl/2.2.9 OpenSSL/0.9.8g Vary: Accept-Encoding Content-Type: text/html Set-Cookie: SL_default_0000=_7_; domain=imgref.in; path=/; expires=Wed, 03-Jun-2015 09:25:53 GMT Set-Cookie: SL_12_0000=_10_; domain=imgref.in; path=/; expires=Wed, 03-Jun-2015 09:25:53 GMT | malicious |
Scanned pages/files
Request | Server response | Status |
http://wap-frauenorgasmus.fickmaus.org/ | 200 OK Content-Length: 6672 Content-Type: text/html | clean |
http://wap-frauenorgasmus.fickmaus.org/? | 200 OK Content-Length: 6672 Content-Type: text/html | clean |
http://wap-frauenorgasmus.fickmaus.org/test404page.js | 404 Not Found Content-Length: 410 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=wap-frauenorgasmus.fickmaus.org
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://wap-frauenorgasmus.fickmaus.org/
Result: wap-frauenorgasmus.fickmaus.org is not infected or malware details are not published yet.
Result: wap-frauenorgasmus.fickmaus.org is not infected or malware details are not published yet.