Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=bezmaly.wordpress.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://bezmaly.wordpress.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: bezmaly.wordpress.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=300, must-revalidate
Connection: close
Date: Tue, 09 Sep 2014 17:01:29 GMT
Server: nginx
Vary: Accept-Encoding
Vary: Cookie
Content-Type: text/html; charset=UTF-8
Last-Modified: Tue, 09 Sep 2014 17:01:29 GMT
Link: <http://wp.me/1365u>; rel=shortlink
X-Ac: 2.fra _sat
X-Hacker: If you're reading this, you should visit automattic.com/jobs and apply to join the fun, mention this header.
X-Nananana: Batcache
X-Pingback: http://bezmaly.wordpress.com/xmlrpc.php
GET / HTTP/1.1
Host: bezmaly.wordpress.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=300, must-revalidate
Connection: close
Date: Tue, 09 Sep 2014 17:01:29 GMT
Server: nginx
Vary: Accept-Encoding
Vary: Cookie
Content-Type: text/html; charset=UTF-8
Last-Modified: Tue, 09 Sep 2014 17:01:29 GMT
Link: <http://wp.me/1365u>; rel=shortlink
X-Ac: 2.fra _sat
X-Hacker: If you're reading this, you should visit automattic.com/jobs and apply to join the fun, mention this header.
X-Nananana: Batcache
X-Pingback: http://bezmaly.wordpress.com/xmlrpc.php
Second query (visit from search engine):
GET / HTTP/1.1
Host: bezmaly.wordpress.com
Referer: http://www.google.com/search?q=bezmaly.wordpress.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: bezmaly.wordpress.com
Referer: http://www.google.com/search?q=bezmaly.wordpress.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://bezmaly.wordpress.com/ | 200 OK Content-Length: 122075 Content-Type: text/html | clean |
http://s0.wp.com/_static/??-eJyFkNsOwiAMQH9IxrZo4ovxW3bpSBEoUhjRrxeTGTXO7KlNe9LTVmYvBnIRXJSapaUeDYjEEDpVagLdRJXmnSwcusGkEfgJ6muCcFvCJiAsqtBFqCy6F/xh9cTRAnNRrnS/VehmhLyJaYi+Gy4iAOP9Z2pvSAlvkkLHsuQKRkpRTGQMZZlxVBDXjmL/3v//NxbqbE/Nvq4Px6atW/0AiPqGzQ== | 200 OK Content-Length: 169863 Content-Type: application/x-javascript | clean |
http://bezmaly.wordpress.com//0.gravatar.com/js/gprofiles.js?ver=201437x/ | 404 Not Found Content-Length: 564 Content-Type: text/html | clean |
http://bezmaly.wordpress.com/test404page.js | 404 Not Found Content-Length: 564 Content-Type: text/html | clean |
http://s2.wp.com/wp-content/mu-plugins/gravatar-hovercards/wpgroho.js?m=1380573781g | 200 OK Content-Length: 582 Content-Type: application/x-javascript | clean |
http://s2.wp.com/_static/??/wp-content/js/jquery/jquery.autoresize.js,/wp-content/mu-plugins/highlander-comments/script.js?m=1409006146j | 200 OK Content-Length: 41514 Content-Type: application/x-javascript | clean |
http://i0.poll.fm/js/rating/rating.js | 200 OK Content-Length: 16678 Content-Type: application/x-javascript | clean |
http://s2.wp.com/_static/??-eJyNjtEOgjAMRX/IUY0Gw4PxW7AU2RzrXDeQvxdJRowPxLfb9p6TwugVsovkIhiBhgaN5F+FkR18nfqkvE137QS0a7XTcVrDRlc6DhG5IfnIzTNRmAqc0NLfkFg9p45Hte4zqx3alGtjyzdDGH/F2TrMGoZahOICLLMPJLLxCtaBk5AFQ9HX+FB5MTPX/nI47atzeSyr0rwBTAp7ag== | 200 OK Content-Length: 184042 Content-Type: application/x-javascript | clean |
http://platform.twitter.com/widgets.js?ver=20111117 | 200 OK Content-Length: 100803 Content-Type: application/javascript | clean |
http://s0.wp.com/_static/??-eJyVy7EOQEAMANAfUnViYBDfgmsupepyivh7VpMY3/DwjDCuaqSGyw5R9sC6oZ1sRgkG6cd54OQhMqHSQYnUs4Z82jL8c+P3YyEPoRehdL31rG5pXVXUTVO70k03DU5D1g== | 200 OK Content-Length: 6951 Content-Type: application/x-javascript | clean |
http://s.skimresources.com/js/725X1342.skimlinks.js | 200 OK Content-Length: 44816 Content-Type: application/javascript | clean |
http://bezmaly.wordpress.com//stats.wp.com/w.js?23/ | 404 Not Found Content-Length: 564 Content-Type: text/html | clean |