Scanned pages/files
Request | Server response | Status |
http://abc.tumblr.com/ | 200 OK Content-Length: 26415 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 1x1 src: http://assets.tumblr.com/assets/html/iframe/teaser.html?_v=fcbdc0a182478cbe038098016e5ddcf2#src=http%3a%2f%2fabc.tumblr.com%2f&lang=en_us&name=abc&avatar=http%3a%2f%2fassets.tumblr.com%2fimages%2fdefault_avatar_64.png&title=untitled&url=http%3a%2f%2fabc.tumblr.com%2f&page_slide=slide <iframe scrolling="no" frameborder="0" src="http://assets.tumblr.com/assets/html/iframe/teaser.html?_v=fcbdc0a182478cbe038098016e5ddcf2#src=http%3a%2f%2fabc.tumblr.com%2f&lang=en_us&name=abc&avatar=http%3a%2f%2fassets.tumblr.com%2fimages%2fdefault_avatar_64.png&title=untitled&url=http%3a%2f%2fabc.tumblr.com%2f&page_slide=slide" id="teaser_iframe" width="1" height="1"> | ||
http://assets.tumblr.com/assets/scripts/pre_tumblelog.js?_v=75ff60d174af47d7ea271d82d4fe1151 | 200 OK Content-Length: 3361 Content-Type: application/javascript | clean |
http://assets.tumblr.com/assets/scripts/tumblelog.js?_v=93bb152582dbb408afc826f52e6676b4 | 200 OK Content-Length: 44957 Content-Type: application/javascript | clean |
http://assets.tumblr.com/assets/scripts/vendor/yahoo/rapid-3.29.js?_v=eba0b54ceda4a58e0c1ee32920e5bc09 | 200 OK Content-Length: 53393 Content-Type: application/javascript | clean |
http://assets.tumblr.com/assets/scripts/vendor/yahoo/rapidworker-1.2.js?_v=2c11d5915df4de9216a0aae5988fad84 | 200 OK Content-Length: 16395 Content-Type: application/javascript | clean |
http://abc.tumblr.com/archive | 200 OK Content-Length: 17839 Content-Type: text/html | clean |
http://assets.tumblr.com/client/prod/app/vendor/index.js?_v=3219a7d5d7de35bc81a8920b18834eac | 200 OK Content-Length: 301983 Content-Type: application/javascript | clean |
http://assets.tumblr.com/languages/strings/en_US.js?1343 | 200 OK Content-Length: 2204 Content-Type: application/javascript | clean |
http://assets.tumblr.com/assets/scripts/tumblr/utils/exceptions.js?_v=9110f33d39af6625c62c0c5bc17d004f | 200 OK Content-Length: 4996 Content-Type: application/javascript | clean |
http://assets.tumblr.com/assets/scripts/polyfills.js?_v=3d959d81598a8137e1bec1280909e164 | 200 OK Content-Length: 2985 Content-Type: application/javascript | clean |
http://assets.tumblr.com/assets/scripts/archive/archive.js?_v=9b3be3e77227c06f13af9c52177fd439 | 200 OK Content-Length: 12959 Content-Type: application/javascript | clean |
http://assets.tumblr.com/client/prod/app/context/archive/index.js?_v=6f7da4efe3728fa05996b922b3f3c71c | 200 OK Content-Length: 300506 Content-Type: application/javascript | clean |
http://abc.tumblr.com/post/42104369071 | 200 OK Content-Length: 58944 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 1x1 src: http://assets.tumblr.com/assets/html/iframe/teaser.html?_v=fcbdc0a182478cbe038098016e5ddcf2#src=http%3a%2f%2fabc.tumblr.com%2fpost%2f42104369071&pid=42104369071&rk=2d5gnepn&lang=en_us&name=abc&avatar=http%3a%2f%2fassets.tumblr.com%2fimages%2fdefault_avatar_64.png&title=untitled&url=http%3a%2f%2fabc.tumblr.com%2f&page_slide=slide <iframe scrolling="no" frameborder="0" src="http://assets.tumblr.com/assets/html/iframe/teaser.html?_v=fcbdc0a182478cbe038098016e5ddcf2#src=http%3a%2f%2fabc.tumblr.com%2fpost%2f42104369071&pid=42104369071&rk=2d5gnepn&lang=en_us&name=abc&avatar=http%3a%2f%2fassets.tumblr.com%2fimages%2fdefault_avatar_64.png&title=untitled&url=http%3a%2f%2fabc.tumblr.com%2f&page_slide=slide" id="teaser_iframe" width="1" height="1"> | ||
http://abc.tumblr.com/rss | 200 OK Content-Length: 601 Content-Type: text/xml | clean |
http://abc.tumblr.com/test404page.js | 404 Not Found Content-Length: 23045 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 1x1 src: http://assets.tumblr.com/assets/html/iframe/teaser.html?_v=fcbdc0a182478cbe038098016e5ddcf2#src=http%3a%2f%2fabc.tumblr.com%2ftest404page.js&lang=en_us&name=abc&avatar=http%3a%2f%2fassets.tumblr.com%2fimages%2fdefault_avatar_64.png&title=untitled&url=http%3a%2f%2fabc.tumblr.com%2f&page_slide=slide <iframe scrolling="no" frameborder="0" src="http://assets.tumblr.com/assets/html/iframe/teaser.html?_v=fcbdc0a182478cbe038098016e5ddcf2#src=http%3a%2f%2fabc.tumblr.com%2ftest404page.js&lang=en_us&name=abc&avatar=http%3a%2f%2fassets.tumblr.com%2fimages%2fdefault_avatar_64.png&title=untitled&url=http%3a%2f%2fabc.tumblr.com%2f&page_slide=slide" id="teaser_iframe" width="1" height="1"> |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: abc.tumblr.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 14 Jul 2015 09:55:10 GMT
Vary: X-UA-Device
Content-Type: text/html; charset=utf-8
Link: <http://assets.tumblr.com/images/default_avatar_128.png>; rel=icon
P3P: CP="Tumblr's privacy policy is available here: https://www.tumblr.com/policy/en/privacy"
X-Tumblr-Pixel: 2
X-Tumblr-Pixel-0: http://px.srvcs.tumblr.com/impixu?T=1436867710&J=eyJ0eXBlIjoidXJsIiwidXJsIjoiaHR0cDpcL1wvYWJjLnR1bWJsci5jb21cLyIsInJlcXR5cGUiOjAsInJvdXRlIjoiXC8ifQ==&U=GJJAPNAOHF&K=73a19e3531cb3a9365fe111956629ff817c51c2be112c9412824b7dca3f4cc66--http://px.srvcs.tumblr.com/impixu?T=1436867710&J=eyJ0eXBlIjoicG9zdCIsInVybCI6Imh0dHA6XC9cL2FiYy50dW1ibHIuY29tXC8iLCJyZXF0eXBlIjowLCJyb3V0ZSI6IlwvIiwicG9zdHMiOlt7InJvb3RfYmxvZ2lkIjoiMTEyNjk5ODIiLCJyb290X3Bvc3RpZCI6MzczMTgxMjczMzYsInBvc3RpZCI6IjQyMTA0MzY5MDcxIi
X-Tumblr-Pixel-1: wiYmxvZ2lkIjoiMTcxNTciLCJzb3VyY2UiOjMzfV19&U=FJKKPLILKD&K=b174e077e26d33df85d36d968dbe691871ef7c30234bee8bd244ad1599ceb441
X-Tumblr-User: abc
X-UA-Compatible: IE=Edge,chrome=1
X-UA-Device: desktop
GET / HTTP/1.1
Host: abc.tumblr.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 14 Jul 2015 09:55:10 GMT
Vary: X-UA-Device
Content-Type: text/html; charset=utf-8
Link: <http://assets.tumblr.com/images/default_avatar_128.png>; rel=icon
P3P: CP="Tumblr's privacy policy is available here: https://www.tumblr.com/policy/en/privacy"
X-Tumblr-Pixel: 2
X-Tumblr-Pixel-0: http://px.srvcs.tumblr.com/impixu?T=1436867710&J=eyJ0eXBlIjoidXJsIiwidXJsIjoiaHR0cDpcL1wvYWJjLnR1bWJsci5jb21cLyIsInJlcXR5cGUiOjAsInJvdXRlIjoiXC8ifQ==&U=GJJAPNAOHF&K=73a19e3531cb3a9365fe111956629ff817c51c2be112c9412824b7dca3f4cc66--http://px.srvcs.tumblr.com/impixu?T=1436867710&J=eyJ0eXBlIjoicG9zdCIsInVybCI6Imh0dHA6XC9cL2FiYy50dW1ibHIuY29tXC8iLCJyZXF0eXBlIjowLCJyb3V0ZSI6IlwvIiwicG9zdHMiOlt7InJvb3RfYmxvZ2lkIjoiMTEyNjk5ODIiLCJyb290X3Bvc3RpZCI6MzczMTgxMjczMzYsInBvc3RpZCI6IjQyMTA0MzY5MDcxIi
X-Tumblr-Pixel-1: wiYmxvZ2lkIjoiMTcxNTciLCJzb3VyY2UiOjMzfV19&U=FJKKPLILKD&K=b174e077e26d33df85d36d968dbe691871ef7c30234bee8bd244ad1599ceb441
X-Tumblr-User: abc
X-UA-Compatible: IE=Edge,chrome=1
X-UA-Device: desktop
Second query (visit from search engine):
GET / HTTP/1.1
Host: abc.tumblr.com
Referer: http://www.google.com/search?q=abc.tumblr.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: abc.tumblr.com
Referer: http://www.google.com/search?q=abc.tumblr.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=abc.tumblr.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://abc.tumblr.com/
Result: abc.tumblr.com is not infected or malware details are not published yet.
Result: abc.tumblr.com is not infected or malware details are not published yet.