Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://www.frscinsight.com/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: www.frscinsight.com Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Mon, 30 Jun 2014 03:23:07 GMT Location: http://www.totalcarsolution.com/sctcom/cgi-bin/1.php Server: Apache Content-Type: text/html X-Powered-By: PHP/5.2.17 | malicious |
URL: http://www.totalcarsolution.com/sctcom/cgi-bin/1.php (imitation of visitor from search engine) GET /sctcom/cgi-bin/1.php HTTP/1.1 Host: www.totalcarsolution.com Referer: http://www.google.com/search?q=redirect+check2 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Mon, 30 Jun 2014 03:23:08 GMT Location: http://www.csra.de/includes/domit/1.php Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html | malicious |
URL: http://www.csra.de/includes/domit/1.php (imitation of visitor from search engine) GET /includes/domit/1.php HTTP/1.1 Host: www.csra.de Referer: http://www.google.com/search?q=redirect+check3 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Mon, 30 Jun 2014 03:23:08 GMT Location: http://jbtconsultinggroup.com/components/com_user/views/login/tmpl/1/all3.php Server: Apache Content-Length: 0 Content-Type: text/html X-Powered-By: PHP/5.4.29 | malicious |
URL: http://jbtconsultinggroup.com/components/com_user/views/login/tmpl/1/all3.php (imitation of visitor from search engine) GET /components/com_user/views/login/tmpl/1/all3.php HTTP/1.1 Host: jbtconsultinggroup.com Referer: http://www.google.com/search?q=redirect+check4 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Mon, 30 Jun 2014 03:23:09 GMT Location: http://google.ru Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html | malicious |
Scanned pages/files
Request | Server response | Status |
http://www.frscinsight.com/ | 200 OK Content-Length: 48135 Content-Type: text/html | clean |
http://www.frscinsight.com/wp-content/themes/wp-comfy/scripts/jquery-1.3.1.min.js | 200 OK Content-Length: 55272 Content-Type: application/javascript | clean |
http://www.frscinsight.com/wp-content/themes/wp-comfy/scripts/jquery-custom.js | 200 OK Content-Length: 1353 Content-Type: application/javascript | clean |
http://www.frscinsight.com/wp-content/themes/wp-comfy/scripts/tabs.js | 200 OK Content-Length: 8866 Content-Type: application/javascript | clean |
http://www.frscinsight.com/wp-content/themes/wp-comfy/scripts/clear-input.js | 200 OK Content-Length: 782 Content-Type: application/javascript | clean |
http://www.frscinsight.com/wp-includes/js/jquery/jquery.js?ver=1.8.3 | 200 OK Content-Length: 93658 Content-Type: application/javascript | clean |
http://www.frscinsight.com/wp-content/plugins/nextgen-gallery/shutter/shutter-reloaded.js?ver=1.3.3 | 200 OK Content-Length: 9986 Content-Type: application/javascript | clean |
http://www.frscinsight.com/wp-content/plugins/nextgen-gallery/js/jquery.cycle.all.min.js?ver=2.9995 | 200 OK Content-Length: 26590 Content-Type: application/javascript | clean |
http://www.frscinsight.com/wp-content/plugins/nextgen-gallery/js/ngg.slideshow.min.js?ver=1.06 | 200 OK Content-Length: 1791 Content-Type: application/javascript | clean |
http://www.frscinsight.com/wp-content/plugins/nextgen-gallery/js/ngg.js?ver=2.1 | 200 OK Content-Length: 5488 Content-Type: application/javascript | clean |
http://www.frscinsight.com/wp-includes/js/wp-ajax-response.min.js?ver=3.5.2 | 200 OK Content-Length: 2152 Content-Type: application/javascript | clean |
http://www.frscinsight.com/wp-content/plugins/theme-my-login/modules/ajax/js/ajax.js?ver=3.5.2 | 200 OK Content-Length: 2748 Content-Type: application/javascript | clean |
http://www.frscinsight.com/wp-content/plugins/bns-corner-logo/bns-corner-logo-scripts.js?ver=1.8.2 | 200 OK Content-Length: 1189 Content-Type: application/javascript | clean |
http://www.frscinsight.com/wp-content/plugins/wp-postratings/postratings-js.js?ver=1.63 | 200 OK Content-Length: 3227 Content-Type: application/javascript | clean |
http://www.frscinsight.com/?page_id=3973 | 200 OK Content-Length: 32724 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=frscinsight.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://frscinsight.com/
Result: frscinsight.com is not infected or malware details are not published yet.
Result: frscinsight.com is not infected or malware details are not published yet.