Scanned pages/files
Request | Server response | Status |
http://feeltheworld.com/ | HTTP/1.1 302 Found Connection: close Date: Mon, 14 Apr 2014 11:42:40 GMT Location: http://invisibleshoe.com Server: Apache Content-Length: 208 Content-Type: text/html; charset=iso-8859-1 | clean |
http://invisibleshoe.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Mon, 14 Apr 2014 11:42:40 GMT Location: http://www.invisibleshoe.com/ Server: nginx/1.4.7 Content-Length: 304 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.invisibleshoe.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Mon, 14 Apr 2014 11:42:41 GMT Location: http://xeroshoes.com/ Server: nginx/1.4.7 Content-Length: 300 Content-Type: text/html; charset=iso-8859-1 | clean |
http://xeroshoes.com/ | 200 OK Content-Length: 63385 Content-Type: text/html | suspicious |
Suspicious code found <div id="fb-root"></div> <script type="text/javascript"> window.fbAsyncInit = function() { // init the FB JS SDK FB.init({ appId : '589094247792643', status : true, // check the login status upon init? cookie : true, // set sessions cookies to allow your server to access the session? xfbml : true // parse XFBML tags on this page? }); }; // Load the SDK's source Asynchronously (function(d){ var js, id = 'facebook-jssdk', ref = d.getElementsByTagName('script')[0]; if (d.getElementById(id)) {return;} js = d.createElement('script'); js.id = id; js.async = true; js.src = "//connect.facebook.net/en_US/all" + (debug ? "/debug" : "") + ".js"; ref.parentNode.insertBefore(js, ref); }(document)); </script> | ||
http://xeroshoes.com/wp-includes/js/jquery/jquery.js?ver=1.10.2 | 200 OK Content-Length: 93085 Content-Type: application/x-javascript | clean |
http://xeroshoes.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/x-javascript | clean |
http://xeroshoes.com/wp-content/plugins/e-commerce-mailcheck/mailcheck-js/jquery.mailcheck.min.js?ver=3.8.2 | 200 OK Content-Length: 1439 Content-Type: application/x-javascript | clean |
http://xeroshoes.com/wp-content/plugins/e-commerce-mailcheck/js/woo.js?ver=3.8.2 | 200 OK Content-Length: 449 Content-Type: application/x-javascript | clean |
http://xeroshoes.com/wp-content/plugins/woocommerce/assets/js/frontend/add-to-cart.min.js?ver=2.0.20 | 200 OK Content-Length: 2077 Content-Type: application/x-javascript | clean |
http://feeltheworld.com//assets.pinterest.com/js/pinit.js/ | HTTP/1.1 302 Found Connection: close Date: Mon, 14 Apr 2014 11:42:45 GMT Location: http://invisibleshoe.com Server: Apache Content-Length: 208 Content-Type: text/html; charset=iso-8859-1 | clean |
http://invisibleshoe.com/test404page.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Mon, 14 Apr 2014 11:42:46 GMT Location: http://www.invisibleshoe.com/test404page.js Server: nginx/1.4.7 Content-Length: 318 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.invisibleshoe.com/test404page.js | 404 Not Found Content-Length: 46989 Content-Type: text/html | clean |
https://ajax.googleapis.com/ajax/libs/jquery/1.5.1/jquery.min.js | 200 OK Content-Length: 85260 Content-Type: text/javascript | clean |
http://www.invisibleshoe.com/store/javascript/IS/IS_ViewCartButton.js | 200 OK Content-Length: 7837 Content-Type: application/javascript | clean |
http://www.invisibleshoe.com/store/javascript/css_browser_selector.js | 200 OK Content-Length: 4973 Content-Type: application/javascript | clean |
http://invisibleshoe.com//ajax.googleapis.com/ajax/libs/prototype/1.7.1.0/prototype.js?ver=1.7.1/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Mon, 14 Apr 2014 11:42:51 GMT Location: http://www.invisibleshoe.com/ajax.googleapis.com/ajax/libs/prototype/1.7.1.0/prototype.js?ver=1.7.1/ Server: nginx/1.4.7 Content-Length: 375 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.invisibleshoe.com/ajax.googleapis.com/ajax/libs/prototype/1.7.1.0/prototype.js?ver=1.7.1/ | 404 Not Found Content-Length: 47045 Content-Type: text/html | clean |
http://www.invisibleshoe.com//ajax.googleapis.com/ajax/libs/prototype/1.7.1.0/prototype.js?ver=1.7.1/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Mon, 14 Apr 2014 11:42:54 GMT Pragma: no-cache Location: http://www.invisibleshoe.com/ajax.googleapis.com/ajax/libs/prototype/1.7.1.0/prototype.js?ver=1.7.1/ Server: nginx/1.4.7 Vary: Cookie Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Set-Cookie: PHPSESSID=b856f2e00bbf543a1091c51be50b4a6d; path=/ X-Pingback: http://www.invisibleshoe.com/xmlrpc.php | clean |
http://invisibleshoe.com//ajax.googleapis.com/ajax/libs/scriptaculous/1.9.0/scriptaculous.js?ver=1.9.0/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Mon, 14 Apr 2014 11:42:54 GMT Location: http://www.invisibleshoe.com/ajax.googleapis.com/ajax/libs/scriptaculous/1.9.0/scriptaculous.js?ver=1.9.0/ Server: nginx/1.4.7 Content-Length: 381 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.invisibleshoe.com/ajax.googleapis.com/ajax/libs/scriptaculous/1.9.0/scriptaculous.js?ver=1.9.0/ | 404 Not Found Content-Length: 47051 Content-Type: text/html | clean |
http://www.invisibleshoe.com//ajax.googleapis.com/ajax/libs/scriptaculous/1.9.0/scriptaculous.js?ver=1.9.0/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Mon, 14 Apr 2014 11:42:57 GMT Pragma: no-cache Location: http://www.invisibleshoe.com/ajax.googleapis.com/ajax/libs/scriptaculous/1.9.0/scriptaculous.js?ver=1.9.0/ Server: nginx/1.4.7 Vary: Cookie Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Set-Cookie: PHPSESSID=00d25833a269bd069ddcc5a93d20271a; path=/ X-Pingback: http://www.invisibleshoe.com/xmlrpc.php | clean |
http://invisibleshoe.com//ajax.googleapis.com/ajax/libs/scriptaculous/1.9.0/effects.js?ver=1.9.0/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Mon, 14 Apr 2014 11:42:57 GMT Location: http://www.invisibleshoe.com/ajax.googleapis.com/ajax/libs/scriptaculous/1.9.0/effects.js?ver=1.9.0/ Server: nginx/1.4.7 Content-Length: 375 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.invisibleshoe.com/ajax.googleapis.com/ajax/libs/scriptaculous/1.9.0/effects.js?ver=1.9.0/ | 404 Not Found Content-Length: 47045 Content-Type: text/html | clean |
http://www.invisibleshoe.com//ajax.googleapis.com/ajax/libs/scriptaculous/1.9.0/effects.js?ver=1.9.0/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Mon, 14 Apr 2014 11:43:00 GMT Pragma: no-cache Location: http://www.invisibleshoe.com/ajax.googleapis.com/ajax/libs/scriptaculous/1.9.0/effects.js?ver=1.9.0/ Server: nginx/1.4.7 Vary: Cookie Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Set-Cookie: PHPSESSID=f1d3349dfa184d37830835f0ba1d2bbb; path=/ X-Pingback: http://www.invisibleshoe.com/xmlrpc.php | clean |
http://www.invisibleshoe.com/wp-content/plugins/lightbox-2/lightbox.js?ver=1.8 | 200 OK Content-Length: 21338 Content-Type: application/javascript | clean |
http://www.invisibleshoe.com/wp-includes/js/jquery/jquery.js?ver=1.8.3 | 200 OK Content-Length: 93658 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: feeltheworld.com
Result:
HTTP/1.1 302 Found
Connection: close
Date: Mon, 14 Apr 2014 11:42:40 GMT
Location: http://invisibleshoe.com
Server: Apache
Content-Length: 208
Content-Type: text/html; charset=iso-8859-1
...208 bytes of data.
GET / HTTP/1.1
Host: feeltheworld.com
Result:
HTTP/1.1 302 Found
Connection: close
Date: Mon, 14 Apr 2014 11:42:40 GMT
Location: http://invisibleshoe.com
Server: Apache
Content-Length: 208
Content-Type: text/html; charset=iso-8859-1
...208 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: feeltheworld.com
Referer: http://www.google.com/search?q=feeltheworld.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: feeltheworld.com
Referer: http://www.google.com/search?q=feeltheworld.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=feeltheworld.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://feeltheworld.com/
Result: feeltheworld.com is not infected or malware details are not published yet.
Result: feeltheworld.com is not infected or malware details are not published yet.