Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: bryanhenry.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Sat, 27 Dec 2014 06:29:30 GMT
Accept-Ranges: bytes
Age: 0
Location: http://www.bryanhenry.com/
Server: Apache/2
Content-Length: 234
Content-Type: text/html; charset=iso-8859-1
X-Pingback: http://www.bryanhenry.com/xmlrpc.php
X-Powered-By: PHP/5.3.13
...234 bytes of data.
GET / HTTP/1.1
Host: bryanhenry.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Sat, 27 Dec 2014 06:29:30 GMT
Accept-Ranges: bytes
Age: 0
Location: http://www.bryanhenry.com/
Server: Apache/2
Content-Length: 234
Content-Type: text/html; charset=iso-8859-1
X-Pingback: http://www.bryanhenry.com/xmlrpc.php
X-Powered-By: PHP/5.3.13
...234 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: bryanhenry.com
Referer: http://www.google.com/search?q=bryanhenry.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: bryanhenry.com
Referer: http://www.google.com/search?q=bryanhenry.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://bryanhenry.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Sat, 27 Dec 2014 06:29:30 GMT Accept-Ranges: bytes Age: 0 Location: http://www.bryanhenry.com/ Server: Apache/2 Content-Length: 234 Content-Type: text/html; charset=iso-8859-1 X-Pingback: http://www.bryanhenry.com/xmlrpc.php X-Powered-By: PHP/5.3.13 | clean |
http://www.bryanhenry.com/ | 200 OK Content-Length: 14273 Content-Type: text/html | clean |
http://www.bryanhenry.com/wp-content/themes/journalcrunch/js/jquery-1.4.2.min.js | 200 OK Content-Length: 72174 Content-Type: application/x-javascript | clean |
http://www.bryanhenry.com/wp-content/themes/journalcrunch/js/jquery.form.js | 200 OK Content-Length: 31710 Content-Type: application/x-javascript | clean |
http://www.bryanhenry.com/wp-content/themes/journalcrunch/js/cufon-yui.js | 200 OK Content-Length: 18264 Content-Type: application/x-javascript | clean |
http://www.bryanhenry.com/wp-content/themes/journalcrunch/js/twittercb.js | 200 OK Content-Length: 2528 Content-Type: application/x-javascript | clean |
http://www.bryanhenry.com/wp-content/themes/journalcrunch/js/ddsmoothmenu.js | 200 OK Content-Length: 7013 Content-Type: application/x-javascript | clean |
http://www.bryanhenry.com/wp-content/themes/journalcrunch/js/jquery.prettyPhoto.js | 200 OK Content-Length: 16851 Content-Type: application/x-javascript | clean |
http://www.bryanhenry.com/wp-content/themes/journalcrunch/js/custom.js | 200 OK Content-Length: 1685 Content-Type: application/x-javascript | clean |
http://www.bryanhenry.com/wp-content/themes/journalcrunch/js/jquery.nivo.slider.pack.js | 200 OK Content-Length: 7015 Content-Type: application/x-javascript | clean |
http://www.bryanhenry.com/wp-content/themes/journalcrunch/js/Vegur_400-Vegur_700.font.js | 200 OK Content-Length: 29395 Content-Type: application/x-javascript | clean |
http://assets.pinterest.com/js/pinit.js | 200 OK Content-Length: 319 Content-Type: application/javascript | clean |
http://twitter.com/statuses/user_timeline/bryanhenry.json?callback=twitterCallback2&count=1 | HTTP/1.1 301 Moved Permanently Date: Sat, 27 Dec 2014 06:29:38 UTC Location: https://twitter.com/statuses/user_timeline/bryanhenry.json?callback=twitterCallback2&count=1 Server: tsa_b Content-Length: 0 Set-Cookie: guest_id=v1%3A141966177887364413; Domain=.twitter.com; Path=/; Expires=Mon, 26-Dec-2016 06:29:38 UTC X-Connection-Hash: d85d00f1d53c9ce65b1482f0984e19ff X-Response-Time: 2 | clean |
https://twitter.com/statuses/user_timeline/bryanhenry.json?callback=twittercallback2&count=1 | 404 Not Found Content-Length: 91 Content-Type: application/javascript | clean |
http://www.bryanhenry.com/wp-includes/js/jquery/jquery.js?ver=1.7.2 | 200 OK Content-Length: 94861 Content-Type: application/x-javascript | clean |
http://s.gravatar.com/js/gprofiles.js?aa&ver=3.4 | 200 OK Content-Length: 21442 Content-Type: application/x-javascript | clean |
http://www.bryanhenry.com/wp-content/plugins/jetpack/modules/wpgroho.js?ver=3.4 | 200 OK Content-Length: 930 Content-Type: application/x-javascript | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=bryanhenry.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://bryanhenry.com/
Result: bryanhenry.com is not infected or malware details are not published yet.
Result: bryanhenry.com is not infected or malware details are not published yet.