Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=diefreiemeinung.de
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://diefreiemeinung.de/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: diefreiemeinung.de
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Thu, 26 Feb 2015 02:06:12 GMT
Location: http://www.diefreiemeinung.de/
Server: Apache
Content-Length: 0
Content-Type: text/html; charset=UTF-8
X-Pingback: http://www.diefreiemeinung.de/xmlrpc.php
...0 bytes of data.
GET / HTTP/1.1
Host: diefreiemeinung.de
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Thu, 26 Feb 2015 02:06:12 GMT
Location: http://www.diefreiemeinung.de/
Server: Apache
Content-Length: 0
Content-Type: text/html; charset=UTF-8
X-Pingback: http://www.diefreiemeinung.de/xmlrpc.php
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: diefreiemeinung.de
Referer: http://www.google.com/search?q=diefreiemeinung.de
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: diefreiemeinung.de
Referer: http://www.google.com/search?q=diefreiemeinung.de
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://diefreiemeinung.de/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 26 Feb 2015 02:06:12 GMT Location: http://www.diefreiemeinung.de/ Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Pingback: http://www.diefreiemeinung.de/xmlrpc.php | clean |
http://www.diefreiemeinung.de/ | 200 OK Content-Length: 117486 Content-Type: text/html | clean |
https://apis.google.com/js/plusone.js | 200 OK Content-Length: 12790 Content-Type: application/javascript | clean |
http://pagead2.googlesyndication.com/pagead/show_ads.js | 200 OK Content-Length: 19846 Content-Type: text/javascript | clean |
http://www.vermoegensteuerjetzt.de/js/embed/vermoegensuhr-klein.js | 200 OK Content-Length: 3646 Content-Type: application/javascript | clean |
http://adn.ebay.com/files/js/min/jquery-1.6.2-min.js | 200 OK Content-Length: 133542 Content-Type: application/x-javascript | clean |
http://adn.ebay.com/files/js/min/ebay_activeContent-min.js | 200 OK Content-Length: 5626 Content-Type: application/x-javascript | clean |
http://www.net-news-express.de/nne_roadrunner_transparent.php?font=black | 200 OK Content-Length: 276665 Content-Type: text/html | clean |
http://www.net-news-express.de/test404page.js | 200 OK Content-Length: 300645 Content-Type: text/html | clean |
http://www.net-news-express.de/./js/client.js | 200 OK Content-Length: 26531 Content-Type: application/javascript | clean |
http://www.net-news-express.de/./index.php?page=archive | 200 OK Content-Length: 37665 Content-Type: text/html | clean |
http://www.net-news-express.de/././js/client.js | 200 OK Content-Length: 26531 Content-Type: application/javascript | clean |
http://www.net-news-express.de/nne_roadrunner.php | 200 OK Content-Length: 278685 Content-Type: text/html | clean |
http://www.net-news-express.de/./index.php?page=home | 200 OK Content-Length: 300645 Content-Type: text/html | clean |
http://www.net-news-express.de/././index.php?page=archive | 200 OK Content-Length: 37665 Content-Type: text/html | clean |
http://www.net-news-express.de/./././js/client.js | 200 OK Content-Length: 26531 Content-Type: application/javascript | clean |