Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://0x0000017.0x000585afc/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: 0x0000017.0x000585afc Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 19 Aug 2015 23:32:13 GMT Location: http://www.cozntrwa.com/?c05ef9kl&fix=http://www.google.com/url?&q=0x0000017.0x000585afc&pd=27121 Server: Apache/2.2.15 (CentOS) DAV/2 PHP/5.4.42 mod_ssl/2.2.15 OpenSSL/1.0.1e-fips mod_perl/2.0.4 Perl/v5.10.1 Content-Length: 571 Content-Type: text/html; charset=UTF-8 Set-Cookie: wp_visit_id=454a9614202f8c8cafa79acdf39c5b67j21979; path=/ X-Pingback: http://0x0000017.0x000585afc/xmlrpc.php X-Powered-By: PHP/5.4.42 | malicious |
Scanned pages/files
Request | Server response | Status |
http://0x0000017.0x000585afc/ | 200 OK Content-Length: 59037 Content-Type: text/html | clean |
http://0x0000017.0x000585afc/wp-includes/js/jquery/jquery.js?ver=1.11.2 | 200 OK Content-Length: 95952 Content-Type: text/javascript | clean |
http://0x0000017.0x000585afc/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: text/javascript | clean |
http://0x0000017.0x000585afc/wp-content/themes/zeedynamic/js/navigation.js?ver=4.2.4 | 200 OK Content-Length: 1336 Content-Type: text/javascript | clean |
http://0x0000017.0x000585afc/spongebob-ukulele-sbukoft%e3%80%8a%e3%82%b9%e3%83%9d%e3%83%b3%e3%82%b8%e3%83%9c%e3%83%96%e3%83%bb%e3%82%a6%e3%82%af%e3%83%ac%e3%83%ac%e3%80%8b%e3%80%90%e9%80%81%e6%96%99%e7%84%a1%e6%96%99%e3%80%91--11492.html | 200 OK Content-Length: 28075 Content-Type: text/html | clean |
http://0x0000017.0x000585afc/wp-includes/js/comment-reply.min.js?ver=4.2.4 | 200 OK Content-Length: 757 Content-Type: text/javascript | clean |
http://0x0000017.0x000585afc/category/%e5%ae%b6%e5%85%b7 | 200 OK Content-Length: 59713 Content-Type: text/html | clean |
http://0x0000017.0x000585afc/category/%e5%ae%b6%e5%85%b7/%e3%83%8f%e3%83%b3%e3%83%89%e3%83%9a%e3%82%a4%e3%83%b3%e3%83%88%e5%ae%b6%e5%85%b7 | 200 OK Content-Length: 60408 Content-Type: text/html | clean |
http://0x0000017.0x000585afc/%e3%83%96%e3%83%a9%e3%82%a4%e3%83%88%e3%83%b3%e3%83%8d%e3%83%83%e3%83%88-brightonnet3m-cable-ac-adaptor-for-smart-phone-%e3%82%b9%e3%83%9e%e3%83%bc%e3%83%88%e3%83%95%e3%82%a9%e3%83%b3%e7%94%a8-3m--11490.html | 200 OK Content-Length: 28629 Content-Type: text/html | clean |
http://0x0000017.0x000585afc/fefe%e3%82%b9%e3%83%86%e3%83%b3%e3%83%ac%e3%82%b9%e3%82%b9%e3%83%88%e3%83%a9%e3%83%83%e3%83%97-%e3%82%b9%e3%83%86%e3%83%b3%e3%83%ac%e3%82%b9-%e3%82%a2%e3%82%af%e3%82%bb%e3%83%95%e3%82%a7%e3%83%95--11488.html | 200 OK Content-Length: 30479 Content-Type: text/html | clean |
http://0x0000017.0x000585afc/%e3%80%90%e5%8d%b3%e6%97%a5%e7%99%ba%e9%80%81ok%e3%80%91%e3%83%90%e3%83%bc%e3%83%90%e3%83%91%e3%83%91babapapa2way%e4%b8%ad%e6%a0%93%e3%82%b9%e3%83%86%e3%83%b3%e3%83%ac%e3%82%b9%e3%83%9c%e3%83%88--11486.html | 200 OK Content-Length: 31632 Content-Type: text/html | clean |
http://0x0000017.0x000585afc/%e4%b8%ad%e5%8f%a4%e3%83%91%e3%82%bd%e3%82%b3%e3%83%b3-hp-compaq-6000pro-sff-c2500%e2%96%a020%e6%b6%b2%e6%99%b6%e3%82%bb%e3%83%83%e3%83%88celeron-dvd-rom-windows7-%e3%83%92%e3%83%a5%e3%83%bc%e3%83%ac--11484.html | 200 OK Content-Length: 30821 Content-Type: text/html | clean |
http://0x0000017.0x000585afc/wilton-%e3%82%a6%e3%82%a3%e3%83%ab%e3%83%88%e3%83%b3-4pc%e3%83%8f%e3%83%bc%e3%83%88%e3%82%ab%e3%83%83%e3%82%bf%e3%83%bc%e3%82%bb%e3%83%83%e3%83%88-4-piece-nesting-heart-colored-metal-cookie-cutter-s--11482.html | 200 OK Content-Length: 28842 Content-Type: text/html | clean |
http://0x0000017.0x000585afc/s234400726--11480.html | 200 OK Content-Length: 25797 Content-Type: text/html | clean |
http://0x0000017.0x000585afc/s232801341--11478.html | 200 OK Content-Length: 24900 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=0x0000017.0x000585afc
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://0x0000017.0x000585afc/
Result: 0x0000017.0x000585afc is not infected or malware details are not published yet.
Result: 0x0000017.0x000585afc is not infected or malware details are not published yet.