ashleygagafakes.blogspot.com - URL scan, 17 Aug 2026
MalwareAnalyzer by Cyble scanned ashleygagafakes.blogspot.com and returned a unknown verdict (score 18). The page resolved to 142.250.183.33 on Google LLC in IN. The domain was registered 9512 days ago through MarkMonitor Inc.. 7 domains and 1 IP were contacted, over 4 HTTP requests. 1 malware sample communicates with this URL. This is a point-in-time observation from 17 Aug 2026; the page may have changed since.
Scan result
- Verdict: unknown (score 18) · Confidence 24%
- Scanned URL:
http://ashleygagafakes.blogspot.com/2011/12/20111225.html - Domain: ashleygagafakes.blogspot.com · IP: 142.250.183.33 · AS15169 · IN
- Server: GSE
- Page title: Celebrity Nudes: 2011.12.25
- HTTP status: 200 · text/html; charset=UTF-8
- Registrar: MarkMonitor Inc. · domain age 9512 days · created 2000-07-31
- HTTP requests captured: 4
- Scan tier: fast · observed 2026-08-17 01:01:59 UTC
Malware communicating with this URL (1)
These samples were observed contacting or being served from ashleygagafakes.blogspot.com. Each links to its full analysis.
- 11baf37c2515f9bce728e372ce984a67c837fe791d32f81ab0644a8a56acfef0 - referenced ·
11baf37c2515f9bce728e372ce984a67· first seen 2026-08-17
Antivirus & YARA (1 of 47 engines)
- ClamAV (daily) [av]: Html.Exploit.Agent-6598769-0 (page content)
These signatures matched text in the page. Pages that quote or document malware can match them, so on their own they do not make a page malicious.
Why this verdict
- A signature matched text in the page (Html.Exploit.Agent-6598769-0) — pages that discuss malware can match, so this alone is not a malicious verdict
- Served over plaintext HTTP
Detected technologies
- jQuery
Contacted infrastructure
- 142.250.183.33 - AS15169 Google LLC (India)
Observed indicators
- ashleygagafakes.blogspot.com
- www.blogger.com
- blogger.googleusercontent.com
- ajax.googleapis.com
- apis.google.com
- pagead2.googlesyndication.com
- scripts.chitika.net
- 142.250.183.33
- http://ashleygagafakes.blogspot.com/2011/12/20111225.html
- https://www.blogger.com/static/v1/widgets/2872013778-css_bundle_v2.css
- http://ashleygagafakes.blogspot.com/favicon.ico
- http://ashleygagafakes.blogspot.com/feeds/posts/default
- http://ashleygagafakes.blogspot.com/feeds/posts/default?alt=rss
- https://www.blogger.com/feeds/8325603593962565300/posts/default
- http://ashleygagafakes.blogspot.com/feeds/4659136032503018998/comments/default
- https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEh19iAvnYBqkh-jGphK7Hp1YJeBbgWCN0yPjLNgiXeUZ1KEQzSi_cUfOQUx-ZKAoeihkWbJsZdHT9GuHT_8idjOHJqQ_ah3qfpVk2YoTi7nkHjhtDEWyzbvPtgai-KAv3352nUr1L0iOr9Q/s400/bc0118.jpg
- http://ajax.googleapis.com/ajax/libs/jquery/1.6.2/jquery.min.js
- https://www.blogger.com/dyn-css/authorization.css?targetBlogID=8325603593962565300&zx=68338f5a-23e4-4168-8ae0-10fddc715664
- https://apis.google.com/js/platform.js
- http://pagead2.googlesyndication.com/pagead/js/google_top_exp.js
Other scans of ashleygagafakes.blogspot.com (6)
This host has been scanned before. Each scan is a separate observation, so a verdict here does not carry over to the others.
- 21 Aug 2026 - unknown ·
https://www.blogger.com/feeds/8325603593962565300/posts/default - 21 Aug 2026 - unknown ·
http://ashleygagafakes.blogspot.com/feeds/posts/default?alt=rss - 21 Aug 2026 - unknown ·
http://ashleygagafakes.blogspot.com/feeds/posts/default - 17 Aug 2026 - unknown ·
https://www.blogger.com/feeds/8325603593962565300/posts/default - 17 Aug 2026 - unknown ·
http://ashleygagafakes.blogspot.com/feeds/posts/default?alt=rss - 17 Aug 2026 - unknown ·
http://ashleygagafakes.blogspot.com/feeds/posts/default
Questions about ashleygagafakes.blogspot.com
- Is ashleygagafakes.blogspot.com safe?
- The scan of ashleygagafakes.blogspot.com on 17 Aug 2026 reached no verdict either way (score 18). Too little was captured to judge it, which is an unknown rather than a pass.
- What malware is associated with ashleygagafakes.blogspot.com?
- 1 analysed samples communicate with this URL.
- How was ashleygagafakes.blogspot.com checked?
- A static pass resolved DNS, captured TLS and headers and followed the redirect chain, and where the fast tier allows, a headless browser rendered the page and recorded every request. Egress is SSRF-locked. Signatures that matched only page text are weighted far below one that matched a served file, because a page documenting malware matches the same rules.
Scanned at the fast tier - see how URL scanning works.
Scan another URL · Latest analyzed threats · All scans of ashleygagafakes.blogspot.com
Scanned on MalwareAnalyzer by Cyble · Open interactive scan