Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: blog.rewolf.pl
Result:
HTTP/1.1 301 Moved
Connection: close
Date: Mon, 25 May 2015 06:54:15 GMT
Location: http://blog.rewolf.pl/blog
Server: IdeaWebServer/v0.80
Content-Length: 182
Content-Type: text/html
...182 bytes of data.
GET / HTTP/1.1
Host: blog.rewolf.pl
Result:
HTTP/1.1 301 Moved
Connection: close
Date: Mon, 25 May 2015 06:54:15 GMT
Location: http://blog.rewolf.pl/blog
Server: IdeaWebServer/v0.80
Content-Length: 182
Content-Type: text/html
...182 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: blog.rewolf.pl
Referer: http://www.google.com/search?q=blog.rewolf.pl
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: blog.rewolf.pl
Referer: http://www.google.com/search?q=blog.rewolf.pl
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://blog.rewolf.pl/ | HTTP/1.1 301 Moved Connection: close Date: Mon, 25 May 2015 06:54:15 GMT Location: http://blog.rewolf.pl/blog Server: IdeaWebServer/v0.80 Content-Length: 182 Content-Type: text/html | clean |
http://blog.rewolf.pl/blog | HTTP/1.1 301 Moved Connection: close Date: Mon, 25 May 2015 06:54:15 GMT Location: http://blog.rewolf.pl/blog/ Server: IdeaWebServer/v0.80 Content-Length: 183 Content-Type: text/html | clean |
http://blog.rewolf.pl/blog/ | 200 OK Content-Length: 39921 Content-Type: text/html | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js?ver=1.4.2 | 200 OK Content-Length: 72174 Content-Type: text/javascript | clean |
http://blog.rewolf.pl/blog/wp-content/themes/simpledark/js/scrollto.min.js?ver=4.2.2 | 200 OK Content-Length: 2172 Content-Type: application/javascript | clean |
http://blog.rewolf.pl/blog/wp-content/themes/simpledark/js/autoresize.min.js?ver=1.04 | 200 OK Content-Length: 996 Content-Type: application/javascript | clean |
https://buttons.github.io/buttons.js | 200 OK Content-Length: 8042 Content-Type: application/javascript | clean |
http://blog.rewolf.pl//pagead2.googlesyndication.com/pagead/js/adsbygoogle.js/ | 404 Not Found Content-Length: 227 Content-Type: text/html | clean |
http://blog.rewolf.pl/test404page.js | 404 Not Found Content-Length: 185 Content-Type: text/html | clean |
http://blog.rewolf.pl//s7.addthis.com/js/300/addthis_widget.js/ | 404 Not Found Content-Length: 212 Content-Type: text/html | clean |
http://blog.rewolf.pl/blog/wp-content/themes/simpledark/js/simpledark-base.min.js | 200 OK Content-Length: 10508 Content-Type: application/javascript | clean |
http://blog.rewolf.pl/blog/wp-content/themes/simpledark/js/simpledark-ajax.min.js | 200 OK Content-Length: 8835 Content-Type: application/javascript | clean |
http://blog.rewolf.pl/blog/wp-content/plugins/addthis/includes/js/add-divs-to-coded-excerpts.js?ver=4.2.2 | 200 OK Content-Length: 9031 Content-Type: application/javascript | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=blog.rewolf.pl
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://blog.rewolf.pl/
Result: blog.rewolf.pl is not infected or malware details are not published yet.
Result: blog.rewolf.pl is not infected or malware details are not published yet.