Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://www.wearefathoms.com/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: www.wearefathoms.com Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Found Connection: close Date: Fri, 11 Dec 2015 01:22:35 GMT Location: http://clcktrck.net/path/lp.php?trvid=10009&trvx=ec6c1bfa&search=www.wearefathoms.com&smid=5a8dK2I56uJ5LpLUje6Kmh65N37pK&dom=wearefathoms.com Server: cloudflare-nginx Content-Type: text/html;charset=UTF-8 CF-RAY: 252d6119e2962ac7-WAW Set-Cookie: __cfduid=daa1d8fd22eb0499660afe060d09113dc1449796955; expires=Sat, 10-Dec-16 01:22:35 GMT; path=/; domain=.wearefathoms.com; HttpOnly | malicious |
URL: http://clcktrck.net/path/lp.php?trvid=10009&trvx=ec6c1bfa&search=www.wearefathoms.com&smid=5a8dK2I56uJ5LpLUje6Kmh65N37pK&dom=wearefathoms.com (imitation of visitor from search engine) GET /path/lp.php?trvid=10009&trvx=ec6c1bfa&search=www.wearefathoms.com&smid=5a8dK2I56uJ5LpLUje6Kmh65N37pK&dom=wearefathoms.com HTTP/1.1 Host: clcktrck.net Referer: http://www.google.com/search?q=redirect+check2 | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Fri, 11 Dec 2015 01:22:34 GMT Pragma: no-cache Location: http://www.skinmagazine.org/wrinkle-miracle-report/?oid=1414&sxid=k99wj6t705a3 Server: Apache Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: THRIVE_SESS=kupv95fh5t2qk2tjhus9jo2jm2; path=/; domain=.clcktrck.net; HttpOnly Set-Cookie: ClickId=k99wj6t705a3; expires=Sun, 10-Jan-2016 01:22:34 GMT; path=/; domain=.clcktrck.net Set-Cookie: OfferPage=http%3A%2F%2Fdatclick.com%2F%3Fa%3D529%26c%3D3405%26s1%3D%26s2%3Dk99wj6t705a3; expires=Sun, 10-Jan-2016 01:22:34 GMT; path=/; domain=.clcktrck.net X-Powered-By: PHP/5.4.16 X-UA-Compatible: IE=Edge,chrome=1 | suspicious |
Scanned pages/files
Request | Server response | Status |
http://www.wearefathoms.com/ | 404 Not Found Content-Length: 155 Content-Type: text/html | clean |
http://www.wearefathoms.com/test404page.js | 404 Not Found Content-Length: 155 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=wearefathoms.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://wearefathoms.com/
Result: wearefathoms.com is not infected or malware details are not published yet.
Result: wearefathoms.com is not infected or malware details are not published yet.