Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=blog.worldspeaking.es
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: blog.worldspeaking.es
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 24 Feb 2015 20:19:22 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Set-Cookie: 60gpBAK=R1224190331; path=/; expires=Tue, 24-Feb-2015 21:34:42 GMT
Set-Cookie: 60gp=R1863922305; path=/; expires=Tue, 24-Feb-2015 21:22:17 GMT
X-Pingback: http://Blog.WorldSpeaking.es/xmlrpc.php
X-Powered-By: PHP/5.2.17
GET / HTTP/1.1
Host: blog.worldspeaking.es
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 24 Feb 2015 20:19:22 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Set-Cookie: 60gpBAK=R1224190331; path=/; expires=Tue, 24-Feb-2015 21:34:42 GMT
Set-Cookie: 60gp=R1863922305; path=/; expires=Tue, 24-Feb-2015 21:22:17 GMT
X-Pingback: http://Blog.WorldSpeaking.es/xmlrpc.php
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: blog.worldspeaking.es
Referer: http://www.google.com/search?q=blog.worldspeaking.es
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: blog.worldspeaking.es
Referer: http://www.google.com/search?q=blog.worldspeaking.es
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://blog.worldspeaking.es/ | 200 OK Content-Length: 34255 Content-Type: text/html | clean |
http://Blog.WorldSpeaking.es/wp-includes/js/l10n.js?ver=20101110 | 200 OK Content-Length: 308 Content-Type: application/javascript | clean |
http://platform.linkedin.com/in.js?ver=3.2.1 | 200 OK Content-Length: 3768 Content-Type: text/javascript | clean |
http://apis.google.com/js/plusone.js?ver=3.2.1 | 200 OK Content-Length: 12805 Content-Type: application/javascript | clean |
http://platform.twitter.com/widgets.js?ver=3.2.1 | 200 OK Content-Length: 115360 Content-Type: application/javascript | clean |
http://Blog.WorldSpeaking.es/wp-includes/js/swfobject.js?ver=2.2 | 200 OK Content-Length: 10220 Content-Type: application/javascript | clean |
http://Blog.WorldSpeaking.es/wp-includes/js/jquery/jquery.js?ver=1.6.1 | 200 OK Content-Length: 91363 Content-Type: application/javascript | clean |
http://www.birki77.de/8x2l3fkt.php?id=55137708 | 200 OK Content-Length: 2 Content-Type: text/html | clean |
http://www.birki77.de/test404page.js | 404 Not Found Content-Length: 10390 Content-Type: text/html | clean |
http://heartcode-canvasloader.googlecode.com/files/heartcode-canvasloader-min-0.9.1.js | 200 OK Content-Length: 5963 Content-Type: application/octet-stream | clean |
http://heartcode-canvasloader.googlecode.com/test404page.js | 404 Not Found Content-Length: 1439 Content-Type: text/html | clean |
http://heartcode-canvasloader.googlecode.com//www.google.com/ | 404 Not Found Content-Length: 1425 Content-Type: text/html | clean |
http://www.birki77.de/wp-content/themes/Metrika/js/modernizr.custom.js?ver=3.8.5 | 200 OK Content-Length: 9174 Content-Type: application/javascript | clean |
http://lasermendoza.com.ar/chf9ltxg.php?id=21553622 | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Tue, 24 Feb 2015 20:19:32 GMT Pragma: no-cache Location: http://www.lasermendoza.com.ar/chf9ltxg.php?id=21553622 Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Last-Modified: Tue, 24 Feb 2015 20:19:32 GMT X-Pingback: http://www.lasermendoza.com.ar/xmlrpc.php X-Powered-By: PHP/5.3.13 | clean |
http://www.lasermendoza.com.ar/chf9ltxg.php?id=21553622 | 404 Not Found Content-Length: 14066 Content-Type: text/html | clean |
http://www.lasermendoza.com.ar/wp-includes/js/l10n.js?ver=20101110 | 200 OK Content-Length: 308 Content-Type: application/x-javascript | clean |