Scanned pages/files
Request | Server response | Status |
http://brotherjohnf.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 25 Sep 2014 12:54:14 GMT Location: http://www.brotherjohnf.com/ Server: cloudflare-nginx Content-Type: text/html; charset=iso-8859-1 CF-RAY: 16f75e848c06047f-FRA Set-Cookie: __cfduid=de15061283f078a93cac461e2c97a031a1411649654489; expires=Mon, 23-Dec-2019 23:50:00 GMT; path=/; domain=.brotherjohnf.com; HttpOnly Set-Cookie: X-Mapping-alncmkhk=7B78415E39EE39417EF1CF8833C6012A; path=/ | clean |
http://www.brotherjohnf.com/ | 200 OK Content-Length: 193322 Content-Type: text/html | malicious |
Page code contains blacklisted domain: silverstockreport.com <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"> <html xmlns="http://www.w3.org/1999/xhtml" lang="en-US"> <head> <meta http-equiv="Content-Type" content="text/html; charset=UTF-8"/> <title>Silver For The People</title> <meta name="description" content="silver gold "precious metals" conspiracy banksters bulli ...[4071 bytes skipped]... Malicious iFrame found. size: 200x125 src: http://widget.socialblade.com/widget.php?u=brotherjohnf This URL is marked by Google as suspicious <iframe id="fr" src="http://widget.socialblade.com/widget.php?u=brotherjohnf" style="overflow: hidden; height: 125px; width: 200px; border: 0;" scrolling="no" frameborder="0"> | ||
http://www.brotherjohnf.com/wp-includes/js/jquery/jquery.js?ver=1.11.0 | 200 OK Content-Length: 96314 Content-Type: application/x-javascript | clean |
http://www.brotherjohnf.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/x-javascript | clean |
http://contextual.media.net/nmedianet.js?cid=8CUDF7404 | 200 OK Content-Length: 58563 Content-Type: text/javascript | clean |
http://ji.revolvermaps.com/2/1.js?i=8cddbnxxgex&s=300&m=0&v=true&r=false&b=000000&n=false&c=ff0000 | 200 OK Content-Length: 2146 Content-Type: application/javascript | clean |
http://go.adversal.com/ttj?id=1241606&size=160x600&promo_sizes=120x600 | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, private Date: Thu, 25 Sep 2014 12:54:21 GMT Pragma: no-cache Location: http://ib.adnxs.com/ttj?id=1241606&size=160x600&promo_sizes=120x600 Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Sat, 15 Nov 2008 16:00:00 GMT P3P: policyref="http://cdn.adnxs.com/w3c/policy/p3p.xml", CP="NOI DSP COR ADM PSAo PSDo OURo SAMo UNRo OTRo BUS COM NAV DEM STA PRE" X-XSS-Protection: 0 | clean |
http://ib.adnxs.com/ttj?id=1241606&size=160x600&promo_sizes=120x600 | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, private Date: Thu, 25 Sep 2014 12:54:21 GMT Pragma: no-cache Location: http://ib.adnxs.com/bounce?%2Fttj%3Fid%3D1241606%26size%3D160x600%26promo_sizes%3D120x600 Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Sat, 15 Nov 2008 16:00:00 GMT P3P: policyref="http://cdn.adnxs.com/w3c/policy/p3p.xml", CP="NOI DSP COR ADM PSAo PSDo OURo SAMo UNRo OTRo BUS COM NAV DEM STA PRE" Set-Cookie: uuid2=0; path=/; expires=Wed, 24-Dec-2014 12:54:21 GMT; domain=.adnxs.com; HttpOnly Set-Cookie: sess=1; path=/; expires=Fri, 26-Sep-2014 12:54:21 GMT; domain=.adnxs.com; HttpOnly Set-Cookie: uuid2=6610319850323545787; path=/; expires=Wed, 24-Dec-2014 12:54:21 GMT; domain=.adnxs.com; HttpOnly X-XSS-Protection: 0 | clean |
http://ib.adnxs.com/bounce?%2fttj%3fid%3d1241606%26size%3d160x600%26promo_sizes%3d120x600 | 200 OK Content-Length: 1043 Content-Type: text/html | clean |
http://ib.adnxs.com/ttj?ttjb=1&bdc=1411649661&bdh=po4ntgoRGHt4MKYFUX0bGHdA9Ps.'+c+'&id=1241606&size=160x600&promo_sizes=120x600 | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, private Date: Thu, 25 Sep 2014 12:54:21 GMT Pragma: no-cache Location: http://ib.adnxs.com/bounce?%2Fttj%3Fttjb%3D1%26bdc%3D1411649661%26bdh%3Dpo4ntgoRGHt4MKYFUX0bGHdA9Ps.%27%2Bc%2B%27%26id%3D1241606%26size%3D160x600%26promo_sizes%3D120x600 Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Sat, 15 Nov 2008 16:00:00 GMT P3P: policyref="http://cdn.adnxs.com/w3c/policy/p3p.xml", CP="NOI DSP COR ADM PSAo PSDo OURo SAMo UNRo OTRo BUS COM NAV DEM STA PRE" Set-Cookie: uuid2=0; path=/; expires=Wed, 24-Dec-2014 12:54:21 GMT; domain=.adnxs.com; HttpOnly Set-Cookie: sess=1; path=/; expires=Fri, 26-Sep-2014 12:54:21 GMT; domain=.adnxs.com; HttpOnly Set-Cookie: uuid2=773838856904813656; path=/; expires=Wed, 24-Dec-2014 12:54:21 GMT; domain=.adnxs.com; HttpOnly X-XSS-Protection: 0 | clean |
http://ib.adnxs.com/bounce?%2fttj%3fttjb%3d1%26bdc%3d1411649661%26bdh%3dpo4ntgorght4mkyfux0bghda9ps.%27%2bc%2b%27%26id%3d1241606%26size%3d160x600%26promo_sizes%3d120x600 | 200 OK Content-Length: 5828 Content-Type: application/javascript | clean |
http://go.adversal.com/test404page.js | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, private Date: Thu, 25 Sep 2014 12:54:21 GMT Pragma: no-cache Location: http://ib.adnxs.com/test404page.js Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Sat, 15 Nov 2008 16:00:00 GMT P3P: policyref="http://cdn.adnxs.com/w3c/policy/p3p.xml", CP="NOI DSP COR ADM PSAo PSDo OURo SAMo UNRo OTRo BUS COM NAV DEM STA PRE" X-XSS-Protection: 0 | clean |
http://ib.adnxs.com/test404page.js | 404 Not Found Content-Length: 0 Content-Type: text/html | clean |
http://ads.qadserve.com/t?id=a73ac819-c7eb-44ad-8d0e-b71df159432c&size=160x600 | 200 OK Content-Length: 320 Content-Type: text/javascript | clean |
http://brotherjohnf.com//z-na.amazon-adsystem.com/widgets/q?ServiceVersion=20070822&Operation=GetScript&ID=OneJS&WS=1&MarketPlace=US/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 25 Sep 2014 12:54:22 GMT Location: http://www.brotherjohnf.com/z-na.amazon-adsystem.com/widgets/q?ServiceVersion=20070822&Operation=GetScript&ID=OneJS&WS=1&MarketPlace=US/ Server: cloudflare-nginx Content-Type: text/html; charset=iso-8859-1 CF-RAY: 16f75eb710d3088d-FRA Set-Cookie: __cfduid=d8b192ef60a51fa5586abcb5864e63dc71411649662574; expires=Mon, 23-Dec-2019 23:50:00 GMT; path=/; domain=.brotherjohnf.com; HttpOnly Set-Cookie: X-Mapping-alncmkhk=15FABE68423694D20C523266126D87FB; path=/ | clean |
http://www.brotherjohnf.com/z-na.amazon-adsystem.com/widgets/q?serviceversion=20070822&operation=getscript&id=onejs&ws=1&marketplace=us/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Thu, 25 Sep 2014 12:54:23 GMT Pragma: no-cache Location: http://www.brotherjohnf.com/archives/307533?serviceversion=20070822&operation=getscript&id=onejs&ws=1&marketplace=us%2F Server: cloudflare-nginx Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT CF-RAY: 16f75eb90926088d-FRA Set-Cookie: __cfduid=da478075447afc37a2176aa0b18eda7db1411649662888; expires=Mon, 23-Dec-2019 23:50:00 GMT; path=/; domain=.brotherjohnf.com; HttpOnly Set-Cookie: X-Mapping-alncmkhk=3B86E31465DF611ECECC25E2EB59D12F; path=/ X-CF-Powered-By: WP 1.3.14 X-Pingback: http://www.brotherjohnf.com/xmlrpc.php | clean |
http://www.brotherjohnf.com/archives/307533?serviceversion=20070822&operation=getscript&id=onejs&ws=1&marketplace=us%2f | 200 OK Content-Length: 95139 Content-Type: text/html | malicious |
Page code contains blacklisted domain: silverstockreport.com <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"> <html xmlns="http://www.w3.org/1999/xhtml" lang="en-US"> <head> <meta http-equiv="Content-Type" content="text/html; charset=UTF-8"/> <title>Q & A Day: Currency Reset « Silver For The People</title> <link rel="shortcut icon" href="http://www.brotherjohnf.com/wp ...[4045 bytes skipped]... Malicious iFrame found. size: 200x125 src: http://widget.socialblade.com/widget.php?u=brotherjohnf This URL is marked by Google as suspicious <iframe id="fr" src="http://widget.socialblade.com/widget.php?u=brotherjohnf" style="overflow: hidden; height: 125px; width: 200px; border: 0;" scrolling="no" frameborder="0"> | ||
http://www.brotherjohnf.com//z-na.amazon-adsystem.com/widgets/q?ServiceVersion=20070822&Operation=GetScript&ID=OneJS&WS=1&MarketPlace=US/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Thu, 25 Sep 2014 12:54:26 GMT Pragma: no-cache Location: http://www.brotherjohnf.com/archives/307533?ServiceVersion=20070822&Operation=GetScript&ID=OneJS&WS=1&MarketPlace=US%2F Server: cloudflare-nginx Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT CF-RAY: 16f75ecac3fb047f-FRA Set-Cookie: __cfduid=d7fd3af9894a74287e4c65c58df6be8e41411649665729; expires=Mon, 23-Dec-2019 23:50:00 GMT; path=/; domain=.brotherjohnf.com; HttpOnly Set-Cookie: X-Mapping-alncmkhk=7B78415E39EE39417EF1CF8833C6012A; path=/ X-CF-Powered-By: WP 1.3.14 X-Pingback: http://www.brotherjohnf.com/xmlrpc.php | clean |
http://brotherjohnf.com//pagead2.googlesyndication.com/pagead/js/adsbygoogle.js/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 25 Sep 2014 12:54:26 GMT Location: http://www.brotherjohnf.com/pagead2.googlesyndication.com/pagead/js/adsbygoogle.js/ Server: cloudflare-nginx Content-Type: text/html; charset=iso-8859-1 CF-RAY: 16f75ecfb598088d-FRA Set-Cookie: __cfduid=d5dc4d6ba8bd0b2e852080d818abaf2fc1411649666514; expires=Mon, 23-Dec-2019 23:50:00 GMT; path=/; domain=.brotherjohnf.com; HttpOnly Set-Cookie: X-Mapping-alncmkhk=D95A026102BFBCB9738702E7681B5737; path=/ | clean |
http://www.brotherjohnf.com/pagead2.googlesyndication.com/pagead/js/adsbygoogle.js/ | 404 Not Found Content-Length: 84916 Content-Type: text/html | malicious |
Page code contains blacklisted domain: silverstockreport.com <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"> <html xmlns="http://www.w3.org/1999/xhtml" lang="en-US"> <head> <meta http-equiv="Content-Type" content="text/html; charset=UTF-8"/> <title>404 - Page not found « Silver For The People</title> <link rel="shortcut icon" href="http://www.brotherjohnf.com/wp-content/ata-i ...[4152 bytes skipped]... Malicious iFrame found. size: 200x125 src: http://widget.socialblade.com/widget.php?u=brotherjohnf This URL is marked by Google as suspicious <iframe id="fr" src="http://widget.socialblade.com/widget.php?u=brotherjohnf" style="overflow: hidden; height: 125px; width: 200px; border: 0;" scrolling="no" frameborder="0"> | ||
http://s0.wp.com/wp-content/js/devicepx-jetpack.js?ver=201439 | 200 OK Content-Length: 9301 Content-Type: application/x-javascript | clean |
http://stats.wp.com/e-201439.js | 200 OK Content-Length: 824 Content-Type: application/x-javascript | clean |
http://www.brotherjohnf.com/wp-content/plugins/jetpack/modules/sharedaddy/sharing.js?ver=20121205 | 200 OK Content-Length: 35418 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: brotherjohnf.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Thu, 25 Sep 2014 12:54:14 GMT
Location: http://www.brotherjohnf.com/
Server: cloudflare-nginx
Content-Type: text/html; charset=iso-8859-1
CF-RAY: 16f75e848c06047f-FRA
Set-Cookie: __cfduid=de15061283f078a93cac461e2c97a031a1411649654489; expires=Mon, 23-Dec-2019 23:50:00 GMT; path=/; domain=.brotherjohnf.com; HttpOnly
Set-Cookie: X-Mapping-alncmkhk=7B78415E39EE39417EF1CF8833C6012A; path=/
GET / HTTP/1.1
Host: brotherjohnf.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Thu, 25 Sep 2014 12:54:14 GMT
Location: http://www.brotherjohnf.com/
Server: cloudflare-nginx
Content-Type: text/html; charset=iso-8859-1
CF-RAY: 16f75e848c06047f-FRA
Set-Cookie: __cfduid=de15061283f078a93cac461e2c97a031a1411649654489; expires=Mon, 23-Dec-2019 23:50:00 GMT; path=/; domain=.brotherjohnf.com; HttpOnly
Set-Cookie: X-Mapping-alncmkhk=7B78415E39EE39417EF1CF8833C6012A; path=/
Second query (visit from search engine):
GET / HTTP/1.1
Host: brotherjohnf.com
Referer: http://www.google.com/search?q=brotherjohnf.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: brotherjohnf.com
Referer: http://www.google.com/search?q=brotherjohnf.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=brotherjohnf.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://brotherjohnf.com/
Result: brotherjohnf.com is not infected or malware details are not published yet.
Result: brotherjohnf.com is not infected or malware details are not published yet.