Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=fazmusic26.org
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: green.nascar.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=600, must-revalidate
Connection: close
Date: Fri, 04 Apr 2014 20:33:06 GMT
Server: WP Engine/6.0.2
Vary: Accept-Encoding,Cookie
Content-Type: text/html; charset=UTF-8
X-Cache: HIT: 5
X-Cache-Group: normal
X-Cacheable: SHORT
X-Pingback: http://green.nascar.com/xmlrpc.php
X-Type: default
GET / HTTP/1.1
Host: green.nascar.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=600, must-revalidate
Connection: close
Date: Fri, 04 Apr 2014 20:33:06 GMT
Server: WP Engine/6.0.2
Vary: Accept-Encoding,Cookie
Content-Type: text/html; charset=UTF-8
X-Cache: HIT: 5
X-Cache-Group: normal
X-Cacheable: SHORT
X-Pingback: http://green.nascar.com/xmlrpc.php
X-Type: default
Second query (visit from search engine):
GET / HTTP/1.1
Host: green.nascar.com
Referer: http://www.google.com/search?q=green.nascar.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: green.nascar.com
Referer: http://www.google.com/search?q=green.nascar.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://fazmusic26.org/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Tue, 01 Apr 2014 22:17:14 GMT Location: http://gemmusic.org Server: LiteSpeed Content-Length: 464 Content-Type: text/html | malicious |
http://gemmusic.org/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Tue, 01 Apr 2014 22:17:16 GMT Location: http://www.gemmusic.org/ Server: LiteSpeed Content-Length: 0 Content-Type: text/html; charset=UTF-8 Set-Cookie: wfvt_3035127762=533b3aec703aa; expires=Tue, 01-Apr-2014 22:47:16 GMT; path=/ Set-Cookie: wordpress_4fc33fb3cd07d4da497eefd338737b0d=%7C1397600236%7C5c14cba3736a1648f500e2b053b0be07; expires=Wed, 16-Apr-2014 10:17:16 GMT; path=/wp-content/plugins; httponly Set-Cookie: wordpress_4fc33fb3cd07d4da497eefd338737b0d=%7C1397600236%7C5c14cba3736a1648f500e2b053b0be07; expires=Wed, 16-Apr-2014 10:17:16 GMT; path=/wp-admin; httponly Set-Cookie: wordpress_logged_in_4fc33fb3cd07d4da497eefd338737b0d=%7C1397600236%7Ccd51aea6e2716ab01563eb3073941779; expires=Wed, 16-Apr-2014 10:17:16 GMT; path=/; httponly Set-Cookie: wordpress_4fc33fb3cd07d4da497eefd338737b0d=%7C1397600236%7C5c14cba3736a1648f500e2b053b0be07; expires=Wed, 16-Apr-2014 10:17:16 GMT; path=/wp-content/plugins; httponly Set-Cookie: wordpress_4fc33fb3cd07d4da497eefd338737b0d=%7C1397600236%7C5c14cba3736a1648f500e2b053b0be07; expires=Wed, 16-Apr-2014 10:17:16 GMT; path=/wp-admin; httponly Set-Cookie: wordpress_logged_in_4fc33fb3cd07d4da497eefd338737b0d=%7C1397600236%7Ccd51aea6e2716ab01563eb3073941779; expires=Wed, 16-Apr-2014 10:17:16 GMT; path=/; httponly X-Pingback: http://www.gemmusic.org/xmlrpc.php X-Powered-By: PHP/5.3.28 | clean |
http://www.gemmusic.org/ | 200 OK Content-Length: 157359 Content-Type: text/html | clean |
http://www.gemmusic.org/wp-includes/js/jquery/jquery.js?ver=1.10.2 | 200 OK Content-Length: 93085 Content-Type: application/javascript | clean |
http://www.gemmusic.org/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://www.gemmusic.org/wp-content/plugins/ncode-image-resizer/js/ncode_imageresizer.js?v=1.0.1 | 200 OK Content-Length: 6717 Content-Type: application/javascript | clean |
http://www.gemmusic.org/wp-content/plugins/ncode-image-resizer/js/tinybox.js?v=1.0 | 200 OK Content-Length: 4174 Content-Type: application/javascript | clean |
http://popup.smusic.ir/pop.php?user=762&poptimes=2 | 200 OK Content-Length: 0 Content-Type: text/html | clean |
http://popup.smusic.ir/test404page.js | 404 Not Found Content-Length: 440 Content-Type: text/html | clean |