Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=xkxempire.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://xkxempire.com/ | 200 OK Content-Length: 21901 Content-Type: text/html | clean |
http://xkxempire.com/test404page.js | HTTP/1.1 302 Found Connection: close Date: Sun, 21 Sep 2014 05:23:12 GMT Location: http://www.xkxempire.com/gallery/ Server: Apache/2 Content-Length: 282 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.xkxempire.com/gallery/ | 200 OK Content-Length: 21910 Content-Type: text/html | clean |
http://www.xkxempire.com/out.php?link=top~1&ref=youngfuckfamilycom | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sun, 21 Sep 2014 05:23:13 GMT Location: http://www.xkxempire.com/rank/nude-virgins.php Server: Apache/2 Vary: Accept-Encoding,User-Agent Content-Length: 0 Content-Type: text/html X-Powered-By: PHP/5.3.28 | clean |
http://www.xkxempire.com/rank/nude-virgins.php | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sun, 21 Sep 2014 05:23:13 GMT Location: http://nude-virgins.info/cgi-bin/in.cgi?id=1092 Server: Apache/2 Vary: Accept-Encoding,User-Agent Content-Length: 0 Content-Type: text/html X-Powered-By: PHP/5.3.28 | clean |
http://nude-virgins.info/cgi-bin/in.cgi?id=1092 | HTTP/1.1 301 Moved Permanently Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Sun, 21 Sep 2014 05:18:32 GMT Pragma: no-cache Location: http://nude-virgins.info/index.html Server: nginx/1.2.2 Content-Length: 0 Content-Type: text/plain Set-Cookie: amem=1092; Expires=Sunday, 21-Sep-14 5:28:32 GMT; domain=nude-virgins.info Set-Cookie: mem-1092=-; Expires=Monday, 22-Sep-14 5:18:32 GMT; domain=nude-virgins.info Set-Cookie: mem=1092; domain=nude-virgins.info Set-Cookie: ses=CCjxkz8aKF; domain=nude-virgins.info Set-Cookie: d=139216058; domain=nude-virgins.info | clean |
http://nude-virgins.info/index.html | 200 OK Content-Length: 56872 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: my-junior-sister.net <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN"> <HTML> <HEAD> <title>Young Virgins, Russian Virgin, Nude Teens, Young Girls</title> <META NAME="description" CONTENT="Young Nude Virgins pics and movies, Russian Virgin Girls, Nude Teens ! These pretty nude teen girls are very sexy and are waiting to meet you."> <META NAME="keywords" CONTENT="nude, nude virgins, nudist, nudist virgins, ...[4397 bytes skipped]... | ||
http://static.clickpapa.com/c.js | 200 OK Content-Length: 5559 Content-Type: application/x-javascript | clean |
http://gogousenet.com/tools/promo2.cgi?aid=1957523&cat=&group=&cb=344&var=llllll&target=_blank&show=0000&kw=Sex&lnk=set | 200 OK Content-Length: 1850 Content-Type: text/javascript | clean |
http://gogousenet.com/tools/promo2.cgi?aid=1957523&cat=21&group=&cb=&var=ssssssssnssssssssnssssssssnssssssssnssssssss&target=_blank&show=1111&kw=young&lnk=set | 200 OK Content-Length: 12269 Content-Type: text/javascript | clean |
http://cdn.popcash.net/pop.js | 200 OK Content-Length: 2863 Content-Type: application/x-javascript | clean |
http://www.xkxempire.com/test404page.js | HTTP/1.1 302 Found Connection: close Date: Sun, 21 Sep 2014 05:23:18 GMT Location: http://www.xkxempire.com/gallery/ Server: Apache/2 Content-Length: 286 Content-Type: text/html; charset=iso-8859-1 | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: xkxempire.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 21 Sep 2014 05:23:12 GMT
Server: Apache/2
Vary: Accept-Encoding,User-Agent
Content-Type: text/html
Set-Cookie: DRUID=e58259ef53b5ace6edae197c88080e16; expires=Mon, 22-Sep-2014 05:23:12 GMT
Set-Cookie: ACID=e58259ef53b5ace6edae197c88080e16
X-Powered-By: PHP/5.3.28
GET / HTTP/1.1
Host: xkxempire.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 21 Sep 2014 05:23:12 GMT
Server: Apache/2
Vary: Accept-Encoding,User-Agent
Content-Type: text/html
Set-Cookie: DRUID=e58259ef53b5ace6edae197c88080e16; expires=Mon, 22-Sep-2014 05:23:12 GMT
Set-Cookie: ACID=e58259ef53b5ace6edae197c88080e16
X-Powered-By: PHP/5.3.28
Second query (visit from search engine):
GET / HTTP/1.1
Host: xkxempire.com
Referer: http://www.google.com/search?q=xkxempire.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: xkxempire.com
Referer: http://www.google.com/search?q=xkxempire.com
Result:
The result is similar to the first query. There are no suspicious redirects found.