Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=greasyblog.joekool3d.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: sweforum.schwedenstube.de
Result:
HTTP/1.1 200 OK
Cache-Control: private, no-cache="set-cookie"
Connection: close
Date: Sat, 26 Jul 2014 21:07:20 GMT
Pragma: no-cache
Server: nginx/1.6.0
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Expires: 0
Set-Cookie: phpbb3_6fbg4r_u=1; expires=Sun, 26-Jul-2015 21:07:20 GMT; path=/; domain=.sweforum.schwedenstube.de; HttpOnly
Set-Cookie: phpbb3_6fbg4r_k=; expires=Sun, 26-Jul-2015 21:07:20 GMT; path=/; domain=.sweforum.schwedenstube.de; HttpOnly
Set-Cookie: phpbb3_6fbg4r_sid=8ce16ac512ca3bd3de409b5108abdc8c; expires=Sun, 26-Jul-2015 21:07:20 GMT; path=/; domain=.sweforum.schwedenstube.de; HttpOnly
X-Powered-By: PHP/5.2.17-with-cgifix
GET / HTTP/1.1
Host: sweforum.schwedenstube.de
Result:
HTTP/1.1 200 OK
Cache-Control: private, no-cache="set-cookie"
Connection: close
Date: Sat, 26 Jul 2014 21:07:20 GMT
Pragma: no-cache
Server: nginx/1.6.0
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Expires: 0
Set-Cookie: phpbb3_6fbg4r_u=1; expires=Sun, 26-Jul-2015 21:07:20 GMT; path=/; domain=.sweforum.schwedenstube.de; HttpOnly
Set-Cookie: phpbb3_6fbg4r_k=; expires=Sun, 26-Jul-2015 21:07:20 GMT; path=/; domain=.sweforum.schwedenstube.de; HttpOnly
Set-Cookie: phpbb3_6fbg4r_sid=8ce16ac512ca3bd3de409b5108abdc8c; expires=Sun, 26-Jul-2015 21:07:20 GMT; path=/; domain=.sweforum.schwedenstube.de; HttpOnly
X-Powered-By: PHP/5.2.17-with-cgifix
Second query (visit from search engine):
GET / HTTP/1.1
Host: sweforum.schwedenstube.de
Referer: http://www.google.com/search?q=sweforum.schwedenstube.de
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: sweforum.schwedenstube.de
Referer: http://www.google.com/search?q=sweforum.schwedenstube.de
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://greasyblog.joekool3d.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 15 Jan 2015 03:12:28 GMT Location: http://joekool3d.com/dh_phpmyadmin/greasyblog.joekool3d.com/ Server: nginx/0.8.53 Content-Length: 185 Content-Type: text/html | malicious |
http://joekool3d.com/dh_phpmyadmin/greasyblog.joekool3d.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 15 Jan 2015 03:12:29 GMT Location: http://joesimanello.blogspot.com/dh_phpmyadmin/greasyblog.joekool3d.com/ Server: Apache Vary: Accept-Encoding Content-Length: 280 Content-Type: text/html; charset=iso-8859-1 | clean |
http://joesimanello.blogspot.com/dh_phpmyadmin/greasyblog.joekool3d.com/ | 404 Not Found Content-Length: 54114 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: greasyblog.joekool3d.com ...[1380 bytes skipped]... }d=a;750>=d&&b[k].load[g]("aft")};var l=!1;function m(){l||(l=!0,b[k].load[g]("firstScrollTime"))}b.addEventListener?b.addEventListener("scroll",m,!1):b.attachEvent("onscroll",m); })();</script> <meta content='blogger' name='generator'/> <link href='http://joesimanello.blogspot.com/favicon.ico' rel='icon' type='image/x-icon'/> <link href='http://joesimanello.blogspot.com//dh_phpmyadmin/greasyblog.joekool3d.com/' rel='canonical'/> <link rel="alternate" type="application/atom+xml" title="Joe Simanello 3D - Atom" href="http://joesimanello.blogspot.com/feeds/posts/default" /> <link rel="alternate" type="application/rss+xml" title="Joe Simanello 3D - RSS" href="http://joesimanello.blogspot.com/feeds/posts/default?alt=rss" /> <link rel="service.post" type="application/atom+xml" title="Joe Simanello 3D - Atom" href="httpnks': [{'href': 'http://joesimanello.blo ...[2006 bytes skipped]... | ||
https://apis.google.com/js/plusone.js | 200 OK Content-Length: 12798 Content-Type: application/javascript | clean |
https://www.blogger.com/static/v1/widgets/1843538518-widgets.js | 200 OK Content-Length: 92246 Content-Type: text/javascript | clean |
http://greasyblog.joekool3d.com//www.blogger.com/rearrange?blogID=3074654742690691921&widgetType=PageList&widgetId=PageList1&action=editWidget§ionId=crosscol/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 15 Jan 2015 03:12:33 GMT Location: http://joekool3d.com/dh_phpmyadmin/greasyblog.joekool3d.com/?blogID=3074654742690691921&widgetType=PageList&widgetId=PageList1&action=editWidget§ionId=crosscol/ Server: nginx/0.8.53 Content-Length: 185 Content-Type: text/html | malicious |
http://joekool3d.com/dh_phpmyadmin/greasyblog.joekool3d.com/?blogid=3074654742690691921&widgettype=pagelist&widgetid=pagelist1&action=editwidget§ionid=crosscol/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 15 Jan 2015 03:12:34 GMT Location: http://joesimanello.blogspot.com/dh_phpmyadmin/greasyblog.joekool3d.com/?blogid=3074654742690691921&widgettype=pagelist&widgetid=pagelist1&action=editwidget§ionid=crosscol/ Server: Apache Vary: Accept-Encoding Content-Length: 400 Content-Type: text/html; charset=iso-8859-1 | clean |
http://joesimanello.blogspot.com/dh_phpmyadmin/greasyblog.joekool3d.com/?blogid=3074654742690691921&widgettype=pagelist&widgetid=pagelist1&action=editwidget§ionid=crosscol/ | 404 Not Found Content-Length: 54595 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: greasyblog.joekool3d.com ...[1380 bytes skipped]... }d=a;750>=d&&b[k].load[g]("aft")};var l=!1;function m(){l||(l=!0,b[k].load[g]("firstScrollTime"))}b.addEventListener?b.addEventListener("scroll",m,!1):b.attachEvent("onscroll",m); })();</script> <meta content='blogger' name='generator'/> <link href='http://joesimanello.blogspot.com/favicon.ico' rel='icon' type='image/x-icon'/> <link href='http://joesimanello.blogspot.com//dh_phpmyadmin/greasyblog.joekool3d.com/?blogid=3074654742690691921&widgettype=pagelist&widgetid=pagelist1&action=editwidget§ionid=crosscol/' rel='canonical'/> <link rel="alternate" type="application/atom+xml" title="Joe Simanello 3D - Atom" href="http://joesimanello.blogspot.com/feeds/posts/default" /> <link rel="alternate" type="application/rss+xml" title="Joe Simanello 3D - RSS" href="http://joesimanello.blogspot.com/feeds/posts/default?altnks': [{'href': 'http://joesimanel ...[2012 bytes skipped]... | ||
http://joesimanello.blogspot.com/ | 200 OK Content-Length: 71108 Content-Type: text/html | clean |
https://www.blogger.com/static/v1/widgets/2309690643-widgets.js | 200 OK Content-Length: 92193 Content-Type: text/javascript | clean |
http://joesimanello.blogspot.com/p/aliens-rpg.html | 200 OK Content-Length: 79169 Content-Type: text/html | clean |
http://joesimanello.blogspot.com/p/black-ops1.html | 200 OK Content-Length: 74620 Content-Type: text/html | clean |
http://joesimanello.blogspot.com/p/modern-warfare-2.html | 200 OK Content-Length: 69922 Content-Type: text/html | clean |
http://joesimanello.blogspot.com/p/misc-art.html | 200 OK Content-Length: 63074 Content-Type: text/html | clean |
http://joesimanello.blogspot.com/p/next-gen-artwork_3128.html | 200 OK Content-Length: 60090 Content-Type: text/html | clean |
http://joesimanello.blogspot.com//www.blogger.com/rearrange?blogID=3074654742690691921&widgetType=PageList&widgetId=PageList1&action=editWidget§ionId=crosscol/ | 404 Not Found Content-Length: 54539 Content-Type: text/html | clean |
http://joesimanello.blogspot.com/feeds/posts/default | 200 OK Content-Length: 11094 Content-Type: application/atom+xml | clean |
http://joesimanello.blogspot.com/test404page.js | 404 Not Found Content-Length: 54014 Content-Type: text/html | clean |
http://joesimanello.blogspot.com/search?updated-min=2014-01-01T00:00:00-08:00&updated-max=2015-01-01T00:00:00-08:00&max-results=1 | 200 OK Content-Length: 60048 Content-Type: text/html | clean |