Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=bill.wiedemann.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: bill.wiedemann.com
Result:
GET / HTTP/1.1
Host: bill.wiedemann.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: bill.wiedemann.com
Referer: http://www.google.com/search?q=bill.wiedemann.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: bill.wiedemann.com
Referer: http://www.google.com/search?q=bill.wiedemann.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://www.bill.wiedemann.com/ | HTTP/1.1 302 Found Cache-Control: no-cache Connection: close Location: http://www.wiedemann.com/ Server: nginx/0.7.65 + Phusion Passenger 2.2.5 (mod_rails/mod_rack) Content-Length: 91 Content-Type: text/html; charset=utf-8 P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Status: 302 X-Powered-By: Phusion Passenger (mod_rails/mod_rack) 2.2.5 X-Runtime: 4 | clean |
http://www.wiedemann.com/ | 200 OK Content-Length: 3479 Content-Type: text/html | clean |
http://www.wiedemann.com/assets/application-33c9b4081258789ecdba66fd23ac9a8d.js | 200 OK Content-Length: 112786 Content-Type: application/x-javascript | clean |
http://www.bill.wiedemann.com/assets/main-6509d3dd71bb92c105b77a5d1a47bbf5.js | HTTP/1.1 302 Found Cache-Control: no-cache Connection: close Location: http://www.wiedemann.com/ Server: nginx/0.7.65 + Phusion Passenger 2.2.5 (mod_rails/mod_rack) Content-Length: 91 Content-Type: text/html; charset=utf-8 P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Status: 302 X-Powered-By: Phusion Passenger (mod_rails/mod_rack) 2.2.5 X-Runtime: 2 | clean |
http://www.wiedemann.com/test404page.js | 404 Not Found Content-Length: 2809 Content-Type: text/html | clean |
http://www.wiedemann.com/assets/main-6509d3dd71bb92c105b77a5d1a47bbf5.js | 200 OK Content-Length: 37852 Content-Type: application/x-javascript | clean |
http://www.wiedemann.com/features | 200 OK Content-Length: 3629 Content-Type: text/html | clean |
http://www.wiedemann.com/about | 200 OK Content-Length: 3240 Content-Type: text/html | clean |
http://www.wiedemann.com/help | HTTP/1.1 302 Found Cache-Control: no-cache Connection: close Date: Fri, 19 Dec 2014 01:18:18 GMT Location: https://realnames.com/help Server: nginx/1.6.1 + Phusion Passenger 4.0.50 Vary: Accept-Encoding Content-Type: text/html; charset=utf-8 P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: request_method=GET; path=/ Status: 302 Found X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-Powered-By: Phusion Passenger 4.0.53 X-Request-Id: c84d7852-0617-454d-9e3b-e588ee0e8db5 X-Runtime: 0.003468 X-XSS-Protection: 1; mode=block | clean |
https://realnames.com/help | 200 OK Content-Length: 3915 Content-Type: text/html | clean |
https://realnames.com/assets/application-33c9b4081258789ecdba66fd23ac9a8d.js | 200 OK Content-Length: 112786 Content-Type: application/x-javascript | clean |
http://www.wiedemann.com/account/signin | HTTP/1.1 302 Found Cache-Control: no-cache Connection: close Date: Fri, 19 Dec 2014 01:18:21 GMT Location: https://realnames.com/account/signin Server: nginx/1.6.1 + Phusion Passenger 4.0.50 Vary: Accept-Encoding Content-Type: text/html; charset=utf-8 P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: request_method=GET; path=/ Status: 302 Found X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-Powered-By: Phusion Passenger 4.0.53 X-Request-Id: 9fa7e7e7-26bb-49e8-bc84-2ee5c9ed640d X-Runtime: 0.003473 X-XSS-Protection: 1; mode=block | clean |
https://realnames.com/account/signin | HTTP/1.1 302 Found Cache-Control: no-cache Connection: close Date: Fri, 19 Dec 2014 01:18:22 GMT Location: http://realnames.com/signin Server: nginx/1.6.1 + Phusion Passenger 4.0.50 Vary: Accept-Encoding Content-Type: text/html; charset=utf-8 P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: request_method=GET; path=/ Set-Cookie: _session_id=5247865c1618e4982fcdc217e0bae160; path=/; HttpOnly Status: 302 Found X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-Powered-By: Phusion Passenger 4.0.53 X-Request-Id: 4f09a4d4-2dc4-4575-859e-6635dd40b0d5 X-Runtime: 0.010641 X-XSS-Protection: 1; mode=block | clean |
http://realnames.com/signin | HTTP/1.1 302 Found Connection: Keep-Alive Location: https://realnames.com/signin Server: BigIP Content-Length: 0 | clean |
https://realnames.com/signin | 200 OK Content-Length: 3609 Content-Type: text/html | clean |
https://realnames.com/assets/main-6509d3dd71bb92c105b77a5d1a47bbf5.js | 200 OK Content-Length: 37852 Content-Type: application/x-javascript | clean |
http://www.wiedemann.com/signin/forgot_username | HTTP/1.1 302 Found Cache-Control: no-cache Connection: close Date: Fri, 19 Dec 2014 01:18:24 GMT Location: https://realnames.com/signin/forgot_username Server: nginx/1.6.1 + Phusion Passenger 4.0.50 Vary: Accept-Encoding Content-Type: text/html; charset=utf-8 P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: request_method=GET; path=/ Status: 302 Found X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-Powered-By: Phusion Passenger 4.0.53 X-Request-Id: 26cb0642-3410-4901-82e8-758c9f7bbef8 X-Runtime: 0.004459 X-XSS-Protection: 1; mode=block | clean |
https://realnames.com/signin/forgot_username | 200 OK Content-Length: 2898 Content-Type: text/html | clean |
https://realnames.com/ | 200 OK Content-Length: 3479 Content-Type: text/html | clean |
https://realnames.com/features | 200 OK Content-Length: 3629 Content-Type: text/html | clean |
https://realnames.com/about | 200 OK Content-Length: 2942 Content-Type: text/html | clean |
https://realnames.com/tos | 200 OK Content-Length: 19531 Content-Type: text/html | clean |