Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=gluesys.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://gluesys.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: gluesys.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Fri, 19 Dec 2014 03:23:24 GMT
Pragma: no-cache
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Link: <http://wp.me/P531Kg-y>; rel=shortlink
P3P: CP='NOI CURa ADMa DEVa TAIa OUR DELa BUS IND PHY ONL UNI COM NAV INT DEM PRE'
Set-Cookie: PHPSESSID=qvoc1rlv6vj60hm9bsqa5sufo0; path=/
Set-Cookie: _icl_current_language=ko; expires=Sat, 20-Dec-2014 03:23:24 GMT; path=/
X-Pingback: http://gluesys.com/xmlrpc.php
X-Powered-By: PHP/5.3.13p1
GET / HTTP/1.1
Host: gluesys.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Fri, 19 Dec 2014 03:23:24 GMT
Pragma: no-cache
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Link: <http://wp.me/P531Kg-y>; rel=shortlink
P3P: CP='NOI CURa ADMa DEVa TAIa OUR DELa BUS IND PHY ONL UNI COM NAV INT DEM PRE'
Set-Cookie: PHPSESSID=qvoc1rlv6vj60hm9bsqa5sufo0; path=/
Set-Cookie: _icl_current_language=ko; expires=Sat, 20-Dec-2014 03:23:24 GMT; path=/
X-Pingback: http://gluesys.com/xmlrpc.php
X-Powered-By: PHP/5.3.13p1
Second query (visit from search engine):
GET / HTTP/1.1
Host: gluesys.com
Referer: http://www.google.com/search?q=gluesys.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: gluesys.com
Referer: http://www.google.com/search?q=gluesys.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://gluesys.com/ | 200 OK Content-Length: 60402 Content-Type: text/html | clean |
http://gluesys.com/wp-includes/js/jquery/jquery.js?ver=1.11.1 | 200 OK Content-Length: 95807 Content-Type: application/javascript | clean |
http://gluesys.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://gluesys.com/wp-content/plugins/bwp-minify/min/?f=wp-content/plugins/revslider/rs-plugin/js/jquery.themepunch.plugins.min.js,wp-content/plugins/revslider/rs-plugin/js/jquery.themepunch.revolution.min.js&ver=1.0 | 200 OK Content-Length: 186475 Content-Type: application/x-javascript | clean |
http://s.gravatar.com/js/gprofiles.js?ver=2014Decaa | 200 OK Content-Length: 21442 Content-Type: application/x-javascript | clean |
http://gluesys.com/wp-content/plugins/bwp-minify/min/?f=wp-content/plugins/contact-form-7/includes/js/jquery.form.min.js,wp-content/plugins/contact-form-7/includes/js/scripts.js,wp-content/plugins/jetpack/modules/wpgroho.js,wp-content/plugins/sitepress-multilingual-cms/res/js/sitepress.js,wp-content/plugins/js_composer/assets/js/js_composer_front.js&ver=1.0 | 200 OK Content-Length: 38522 Content-Type: application/x-javascript | clean |
http://s0.wp.com/wp-content/js/devicepx-jetpack.js?ver=201451 | 200 OK Content-Length: 9301 Content-Type: application/x-javascript | clean |
http://stats.wp.com/e-201451.js | 200 OK Content-Length: 2332 Content-Type: application/x-javascript | clean |
http://gluesys.com/customercenter/inquiry/ | 200 OK Content-Length: 49213 Content-Type: text/html | clean |
http://gluesys.com/itservice/skillsurport/board/ | 200 OK Content-Length: 47540 Content-Type: text/html | clean |
http://gluesys.com/customercenter/referenceroom/ | 200 OK Content-Length: 45956 Content-Type: text/html | clean |
http://gluesys.com/company/overview1/overview2/ | 200 OK Content-Length: 47842 Content-Type: text/html | clean |
http://gluesys.com/overview1/overview2/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Fri, 19 Dec 2014 03:23:47 GMT Pragma: no-cache Location: http://gluesys.com/company/overview1/overview2/ Server: Apache Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT P3P: CP='NOI CURa ADMa DEVa TAIa OUR DELa BUS IND PHY ONL UNI COM NAV INT DEM PRE' Set-Cookie: PHPSESSID=30jjvabrj807pibbk7p99tc9m2; path=/ Set-Cookie: _icl_current_language=ko; expires=Sat, 20-Dec-2014 03:23:47 GMT; path=/ X-Pingback: http://gluesys.com/xmlrpc.php X-Powered-By: PHP/5.3.13p1 | clean |
http://gluesys.com/test404page.js | 404 Not Found Content-Length: 42115 Content-Type: text/html | clean |
http://gluesys.com/wp-content/plugins/bwp-minify/min/?f=wp-content/plugins/contact-form-7/includes/js/jquery.form.min.js,wp-content/plugins/contact-form-7/includes/js/scripts.js,wp-content/plugins/jetpack/modules/wpgroho.js,wp-content/plugins/sitepress-multilingual-cms/res/js/sitepress.js&ver=1.0 | 200 OK Content-Length: 25000 Content-Type: application/x-javascript | clean |
http://gluesys.com/company/overview1/ | 200 OK Content-Length: 27263 Content-Type: text/html | clean |