Scanned pages/files
Request | Server response | Status |
http://gailmarshall.com/ | HTTP/1.1 302 Found Connection: close Date: Fri, 09 May 2014 10:21:05 GMT Location: http://www.linkedin.com/in/GailMarshall Server: Apache Content-Length: 223 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.linkedin.com/in/gailmarshall | 200 OK Content-Length: 37787 Content-Type: text/html | malicious |
Malicious code - confirmed by antiviruses (see below) LI.Controls.addControl('control-http-12248-7757727-2', 'ToggleClass', { classname: 'view-all-skills', on: '#profile-skills' }); Antivirus reports:
| ||
http://static.licdn.com:80/scds/common/u/lib/fizzy/fz-1.3.5-min.js | 200 OK Content-Length: 26523 Content-Type: text/javascript | clean |
http://s.c.lnkd.licdn.com/scds/concat/common/js?h=3nuvxgwg15rbghxm1gpzfbya2-35e6ug1j754avohmn1bzmucat-mv3v66b8q0h1hvgvd3yfjv5f-14k913qahq3mh0ac0lh0twk9v&fc=2 | 200 OK Content-Length: 2744 Content-Type: text/javascript | clean |
http://s.c.lnkd.licdn.com/scds/concat/common/js?h=dfoaudjrk6rbf82f45bz5crwi-62og8s54488owngg0s7escdit-c8ha6zrgpgcni7poa5ctye7il-djim7uyllidc9gta745y2wo5m-51dv6schthjydhvcv6rxvospp-d7z5zqt26qe7ht91f8494hqx5-e9rsfv7b5gx0bk0tln31dx3sq-2r5gveucqe4lsolc3n0oljsn1-8v2hz0euzy8m1tk5d6tfrn6j-b88qxy99s08xoes3weacd08uc-bymlr3eiytxzjg9or01ze5ia8-ac8pg92mfnb2j836ntpvg1fsi-8s85e76fq22lk42rfavbckpvb-lyi4ca0d33mbz <span>...172 symbols skipped</span> | 200 OK Content-Length: 266871 Content-Type: text/javascript | clean |
http://s.c.lnkd.licdn.com/scds/concat/common/js?h=6b5tomv24hymqjdn9yh9vdxyg-95d8d303rtd0n9wj4dcjbnh2c&fc=2 | 200 OK Content-Length: 2255 Content-Type: text/javascript | clean |
http://s.c.lnkd.licdn.com/scds/concat/common/js?h=d43qahhuvg0j5mlh4c2m9sipk-ew7wxbzv14lsc4vzkh2xrbzqn-dp1os5pzpoyifn8ljtjpfxrz-e17zy6z51dugr6fy4su92o7de-eq875keqggun9hoxzfhbanjes&fc=2 | 200 OK Content-Length: 17345 Content-Type: text/javascript | clean |
http://gailmarshall.com/home?trk=hb_logo | 404 Not Found Content-Length: 321 Content-Type: text/html | clean |
http://gailmarshall.com/test404page.js | 404 Not Found Content-Length: 331 Content-Type: text/html | clean |
http://gailmarshall.com/edu/babson-college---franklin-w%2E-olin-graduate-school-of-business-18452 | 404 Not Found Content-Length: 388 Content-Type: text/html | clean |
http://gailmarshall.com/edu/university-of-new-hampshire-18850 | 404 Not Found Content-Length: 354 Content-Type: text/html | clean |
http://gailmarshall.com/company/vail-resorts?trk=ppro_cprof | 404 Not Found Content-Length: 337 Content-Type: text/html | clean |
http://gailmarshall.com/redir/redirect?url=https%3A%2F%2Fwww%2Eaahanet%2Eorg%2FStore%2FProductDetail%2Easpx%3Ftype%3DAll%26code%3DCMAND&urlhash=M1q9 | 404 Not Found Content-Length: 331 Content-Type: text/html | clean |
http://gailmarshall.com/pub/dir/?first=Gail&last=Marshall | 404 Not Found Content-Length: 325 Content-Type: text/html | clean |
http://gailmarshall.com/static?key=country_listing | 404 Not Found Content-Length: 323 Content-Type: text/html | clean |
http://gailmarshall.com/directory/people-a | 404 Not Found Content-Length: 335 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: gailmarshall.com
Result:
HTTP/1.1 302 Found
Connection: close
Date: Fri, 09 May 2014 10:21:05 GMT
Location: http://www.linkedin.com/in/GailMarshall
Server: Apache
Content-Length: 223
Content-Type: text/html; charset=iso-8859-1
...223 bytes of data.
GET / HTTP/1.1
Host: gailmarshall.com
Result:
HTTP/1.1 302 Found
Connection: close
Date: Fri, 09 May 2014 10:21:05 GMT
Location: http://www.linkedin.com/in/GailMarshall
Server: Apache
Content-Length: 223
Content-Type: text/html; charset=iso-8859-1
...223 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: gailmarshall.com
Referer: http://www.google.com/search?q=gailmarshall.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: gailmarshall.com
Referer: http://www.google.com/search?q=gailmarshall.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=gailmarshall.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://gailmarshall.com/
Result: gailmarshall.com is not infected or malware details are not published yet.
Result: gailmarshall.com is not infected or malware details are not published yet.