Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: guzno.com
Result:
GET / HTTP/1.1
Host: guzno.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: guzno.com
Referer: http://www.google.com/search?q=guzno.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: guzno.com
Referer: http://www.google.com/search?q=guzno.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://www.guzno.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 21 Sep 2014 04:35:43 GMT Location: http://www.vsporno.net/ Content-Length: 413 Content-Type: text/html | clean |
http://www.vsporno.net/ | 200 OK Content-Length: 33327 Content-Type: text/html | clean |
http://www.vsporno.net/wp-content/themes/wuw/js/jquery.tools.min.js | 200 OK Content-Length: 137839 Content-Type: application/x-javascript | clean |
http://www.vsporno.net/wp-content/themes/wuw/js/init.js | 200 OK Content-Length: 537 Content-Type: application/x-javascript | clean |
http://adspaces.ero-advertising.com/adspace/329480.js | 200 OK Content-Length: 2432 Content-Type: application/javascript | clean |
http://adspaces.ero-advertising.com/adspace/329481.js | 200 OK Content-Length: 16641 Content-Type: application/javascript | clean |
http://www.guzno.com/test404page.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 21 Sep 2014 04:35:45 GMT Location: http://www.vsporno.net/test404page.js Content-Length: 413 Content-Type: text/html | clean |
http://www.vsporno.net/test404page.js | 404 Not Found Content-Length: 26995 Content-Type: text/html | clean |
http://adspaces.ero-advertising.com/adspace/329478.js | 200 OK Content-Length: 0 Content-Type: application/javascript | clean |
http://adspaces.ero-advertising.com/adspace/329479.js | 200 OK Content-Length: 1551 Content-Type: application/javascript | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=guzno.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://guzno.com/
Result: guzno.com is not infected or malware details are not published yet.
Result: guzno.com is not infected or malware details are not published yet.