Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=heimarbeiten-mit-danni.blogspot.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: heimarbeiten-mit-danni.blogspot.com
Result:
HTTP/1.1 302 Moved Temporarily
Cache-Control: no-cache, no-store, max-age=0, must-revalidate
Connection: close
Date: Wed, 08 Oct 2014 15:01:24 GMT
Pragma: no-cache
Location: http://www.blogger.com/blogin.g?blogspotURL=http://heimarbeiten-mit-danni.blogspot.com/
Server: GSE
Content-Type: text/html; charset=UTF-8
Expires: Fri, 01 Jan 1990 00:00:00 GMT
Alternate-Protocol: 80:quic,p=0.01
X-Content-Type-Options: nosniff
X-Frame-Options: SAMEORIGIN
X-XSS-Protection: 1; mode=block
GET / HTTP/1.1
Host: heimarbeiten-mit-danni.blogspot.com
Result:
HTTP/1.1 302 Moved Temporarily
Cache-Control: no-cache, no-store, max-age=0, must-revalidate
Connection: close
Date: Wed, 08 Oct 2014 15:01:24 GMT
Pragma: no-cache
Location: http://www.blogger.com/blogin.g?blogspotURL=http://heimarbeiten-mit-danni.blogspot.com/
Server: GSE
Content-Type: text/html; charset=UTF-8
Expires: Fri, 01 Jan 1990 00:00:00 GMT
Alternate-Protocol: 80:quic,p=0.01
X-Content-Type-Options: nosniff
X-Frame-Options: SAMEORIGIN
X-XSS-Protection: 1; mode=block
Second query (visit from search engine):
GET / HTTP/1.1
Host: heimarbeiten-mit-danni.blogspot.com
Referer: http://www.google.com/search?q=heimarbeiten-mit-danni.blogspot.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: heimarbeiten-mit-danni.blogspot.com
Referer: http://www.google.com/search?q=heimarbeiten-mit-danni.blogspot.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://heimarbeiten-mit-danni.blogspot.com/ | HTTP/1.1 302 Moved Temporarily Cache-Control: no-cache, no-store, max-age=0, must-revalidate Connection: close Date: Wed, 08 Oct 2014 15:01:24 GMT Pragma: no-cache Location: http://www.blogger.com/blogin.g?blogspotURL=http://heimarbeiten-mit-danni.blogspot.com/ Server: GSE Content-Type: text/html; charset=UTF-8 Expires: Fri, 01 Jan 1990 00:00:00 GMT Alternate-Protocol: 80:quic,p=0.01 X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-XSS-Protection: 1; mode=block | clean |
http://www.blogger.com/blogin.g?blogspoturl=http://heimarbeiten-mit-danni.blogspot.com/ | HTTP/1.1 302 Moved Temporarily Cache-Control: private, max-age=0 Connection: close Date: Wed, 08 Oct 2014 15:01:24 GMT Location: https://www.blogger.com/blogin.g?blogspoturl=http://heimarbeiten-mit-danni.blogspot.com/ Server: GSE Content-Type: text/html; charset=UTF-8 Expires: Wed, 08 Oct 2014 15:01:24 GMT Alternate-Protocol: 80:quic,p=0.01 P3P: CP="This is not a P3P policy! See http://www.google.com/support/accounts/bin/answer.py?hl=en&answer=151657 for more info." X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-XSS-Protection: 1; mode=block | clean |
https://www.blogger.com/blogin.g?blogspoturl=http://heimarbeiten-mit-danni.blogspot.com/ | 400 Bad Request Content-Length: 4728 Content-Type: text/html | clean |
https://www.blogger.com/ | HTTP/1.1 302 Moved Temporarily Cache-Control: no-cache, no-store, max-age=0, must-revalidate Connection: close Date: Wed, 08 Oct 2014 15:01:25 GMT Pragma: no-cache Location: https://www.blogger.com/home Server: GSE Content-Type: text/html; charset=UTF-8 Expires: Fri, 01 Jan 1990 00:00:00 GMT Alternate-Protocol: 443:quic,p=0.01 P3P: CP="This is not a P3P policy! See http://www.google.com/support/accounts/bin/answer.py?hl=en&answer=151657 for more info." X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-XSS-Protection: 1; mode=block | clean |
https://www.blogger.com/home | HTTP/1.1 302 Moved Temporarily Cache-Control: private, max-age=0 Connection: close Date: Wed, 08 Oct 2014 15:01:26 GMT Location: https://accounts.google.com/ServiceLogin?service=blogger&passive=1209600&continue=https://www.blogger.com/home&followup=https://www.blogger.com/home<mpl=start Server: GSE Content-Type: text/html; charset=UTF-8 Expires: Wed, 08 Oct 2014 15:01:26 GMT Alternate-Protocol: 443:quic,p=0.01 P3P: CP="This is not a P3P policy! See http://www.google.com/support/accounts/bin/answer.py?hl=en&answer=151657 for more info." X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-XSS-Protection: 1; mode=block | clean |
https://accounts.google.com/servicelogin?service=blogger&passive=1209600&continue=https://www.blogger.com/home&followup=https://www.blogger.com/home<mpl=start | 200 OK Content-Length: 69633 Content-Type: text/html | clean |
https://accounts.google.com/SignUp?service=blogger&continue=https%3A%2F%2Fwww.blogger.com%2Fhome<mpl=start | 200 OK Content-Length: 300951 Content-Type: text/html | clean |
https://accounts.google.com/ServiceLogin?continue=https%3A%2F%2Fwww.blogger.com%2Fhome&service=blogger<mpl=start&dsh=8442619152503950637 | 200 OK Content-Length: 66865 Content-Type: text/html | clean |
https://accounts.google.com/TOS?loc=LT&hl=en | HTTP/1.1 302 Moved Temporarily Cache-Control: no-cache, no-store Connection: close Date: Wed, 08 Oct 2014 15:01:30 GMT Pragma: no-cache Location: https://www.google.lt/intl/en/policies/terms/ Server: GSE Content-Length: 227 Content-Type: text/html; charset=UTF-8 Expires: Mon, 01-Jan-1990 00:00:00 GMT Alternate-Protocol: 443:quic,p=0.01 Set-Cookie: GoogleAccountsLocale_session=en; Path=/; Secure; HttpOnly Strict-Transport-Security: max-age=10893354; includeSubDomains X-Content-Type-Options: nosniff X-Frame-Options: DENY X-XSS-Protection: 1; mode=block | clean |
https://www.google.lt/intl/en/policies/terms/ | HTTP/1.1 200 OK Cache-Control: private, max-age=0 Connection: close Date: Wed, 08 Oct 2014 15:01:30 GMT Server: sffe Vary: Accept-Encoding Content-Type: text/html Expires: Wed, 08 Oct 2014 15:01:30 GMT Last-Modified: Tue, 24 Jan 2012 14:44:29 GMT X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block | clean |
https://www.google.lt/intl/en/policies/terms/regional.html | 200 OK Content-Length: 20900 Content-Type: text/html | clean |
https://www.google.lt//www.google.com/js/google.js/ | 404 Not Found Content-Length: 1438 Content-Type: text/html | clean |
https://www.google.lt//www.google.com/ | 404 Not Found Content-Length: 1425 Content-Type: text/html | clean |
http://www.google.lt/test404page.js | 404 Not Found Content-Length: 1439 Content-Type: text/html | clean |
http://www.google.lt//www.google.com/ | 404 Not Found Content-Length: 1440 Content-Type: text/html | clean |
https://accounts.google.com//www.google.com/js/maia.js/ | 404 Not Found Content-Length: 1413 Content-Type: text/html | clean |
https://accounts.google.com//www.google.com/ | 404 Not Found Content-Length: 1413 Content-Type: text/html | clean |
https://accounts.google.com/ | HTTP/1.1 302 Moved Temporarily Cache-Control: private, max-age=0 Connection: close Date: Wed, 08 Oct 2014 15:01:32 GMT Location: https://accounts.google.com/ManageAccount Server: GSE Content-Length: 223 Content-Type: text/html; charset=UTF-8 Expires: Wed, 08 Oct 2014 15:01:32 GMT Alternate-Protocol: 443:quic,p=0.01 Strict-Transport-Security: max-age=10893354; includeSubDomains X-Content-Type-Options: nosniff X-Frame-Options: DENY X-XSS-Protection: 1; mode=block | clean |
https://accounts.google.com/manageaccount | HTTP/1.1 302 Moved Temporarily Cache-Control: private, max-age=0 Connection: close Date: Wed, 08 Oct 2014 15:01:32 GMT Location: https://accounts.google.com/ServiceLogin?passive=1209600&continue=https%3A%2F%2Faccounts.google.com%2Fmanageaccount&followup=https%3A%2F%2Faccounts.google.com%2Fmanageaccount Server: GSE Content-Length: 364 Content-Type: text/html; charset=UTF-8 Expires: Wed, 08 Oct 2014 15:01:32 GMT Alternate-Protocol: 443:quic,p=0.01 Set-Cookie: GAPS=1:dLKi1NxyeFO3H0S1jNaPTUIRGA7g4g:-T9hxstOsWCk9nOT;Path=/;Expires=Fri, 07-Oct-2016 15:01:32 GMT;Secure;HttpOnly;Priority=HIGH Strict-Transport-Security: max-age=10893354; includeSubDomains X-Content-Type-Options: nosniff X-Frame-Options: DENY X-XSS-Protection: 1; mode=block | clean |
https://accounts.google.com/servicelogin?passive=1209600&continue=https%3a%2f%2faccounts.google.com%2fmanageaccount&followup=https%3a%2f%2faccounts.google.com%2fmanageaccount | 200 OK Content-Length: 66793 Content-Type: text/html | clean |
https://accounts.google.com/RecoverAccount?continue=https%3A%2F%2Faccounts.google.com%2Fmanageaccount | HTTP/1.1 302 Moved Temporarily Cache-Control: private, max-age=0 Connection: close Date: Wed, 08 Oct 2014 15:01:33 GMT Location: https://www.google.com/accounts/recovery?hl=en&ard=AHwGkRl5V2GaacLp-IieAi9x6yOHNVq1UAw6OWaGYKlEiKf8y6MZ-_fi0u68PYJCeAfhhWomZ8YYujJydJD0_bHq6XaRcY4ISS-wrwz_8k8W-Y10MfB4HGtV7YIbud8lKQyP18Ngf78rMMUk2ACXHvsNMHElFMrwjg Server: GSE Content-Length: 399 Content-Type: text/html; charset=UTF-8 Expires: Wed, 08 Oct 2014 15:01:33 GMT Alternate-Protocol: 443:quic,p=0.01 Set-Cookie: GAPS=1:aZ8ujdj7yEKqk4zM-pwbsh9sziQeaA:48XnecgT9kVJspU-;Path=/;Expires=Fri, 07-Oct-2016 15:01:33 GMT;Secure;HttpOnly;Priority=HIGH Strict-Transport-Security: max-age=10893354; includeSubDomains X-Content-Type-Options: nosniff X-Frame-Options: DENY X-XSS-Protection: 1; mode=block | clean |
https://www.google.com/accounts/recovery?hl=en&ard=ahwgkrl5v2gaaclp-iieai9x6yohnvq1uaw6owagykleikf8y6mz-_fi0u68pyjceafhhwomz8yyujjydjd0_bhq6xarcy4iss-wrwz_8k8w-y10mfb4hgtv7yibud8lkqyp18ngf78rmmuk2acxhvsnmhelfmrwjg | HTTP/1.1 302 Moved Temporarily Cache-Control: no-cache, no-store, max-age=0, must-revalidate Connection: close Date: Wed, 08 Oct 2014 15:01:33 GMT Pragma: no-cache Location: https://www.google.com/accounts/recovery/?hl=en&ard=ahwgkrl5v2gaaclp-iieai9x6yohnvq1uaw6owagykleikf8y6mz-_fi0u68pyjceafhhwomz8yyujjydjd0_bhq6xarcy4iss-wrwz_8k8w-y10mfb4hgtv7yibud8lkqyp18ngf78rmmuk2acxhvsnmhelfmrwjg Server: GSE Content-Type: text/html; charset=UTF-8 Expires: Fri, 01 Jan 1990 00:00:00 GMT X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-XSS-Protection: 1; mode=block | clean |
https://www.google.com/accounts/recovery/?hl=en&ard=ahwgkrl5v2gaaclp-iieai9x6yohnvq1uaw6owagykleikf8y6mz-_fi0u68pyjceafhhwomz8yyujjydjd0_bhq6xarcy4iss-wrwz_8k8w-y10mfb4hgtv7yibud8lkqyp18ngf78rmmuk2acxhvsnmhelfmrwjg | HTTP/1.1 302 Moved Temporarily Cache-Control: no-cache, no-store, max-age=0, must-revalidate Connection: close Date: Wed, 08 Oct 2014 15:01:33 GMT Pragma: no-cache Location: https://www.google.com/accounts/RecoverAccount?hl=en&ard=ahwgkrl5v2gaaclp-iieai9x6yohnvq1uaw6owagykleikf8y6mz-_fi0u68pyjceafhhwomz8yyujjydjd0_bhq6xarcy4iss-wrwz_8k8w-y10mfb4hgtv7yibud8lkqyp18ngf78rmmuk2acxhvsnmhelfmrwjg&arr=AHwGkRl6pNcxcGdyyeZUrzwPyakqCLJ7yZ1NccamxPm_2Els8ij5zZWa8zyQRwLjOxQXgbB9dDfsgkck2xE94hjwmM07m6s-Z_8DzI2RsGPI6Jp8oBIfF85jKYGDl5rZSWZaEldOuZHg Server: GSE Content-Type: text/html; charset=UTF-8 Expires: Fri, 01 Jan 1990 00:00:00 GMT Set-Cookie: accountrecoverylocale=en; Expires=Wed, 15-Oct-2014 15:01:33 GMT; Path=/accounts/recovery; Secure; HttpOnly Set-Cookie: S=account-recovery=KQPD-K8bfjU; Domain=.google.com; Path=/; Secure; HttpOnly X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-XSS-Protection: 1; mode=block | clean |
https://www.google.com/accounts/recoveraccount?hl=en&ard=ahwgkrl5v2gaaclp-iieai9x6yohnvq1uaw6owagykleikf8y6mz-_fi0u68pyjceafhhwomz8yyujjydjd0_bhq6xarcy4iss-wrwz_8k8w-y10mfb4hgtv7yibud8lkqyp18ngf78rmmuk2acxhvsnmhelfmrwjg&arr=ahwgkrl6pncxcgdyyezurzwpyakqclj7yz1nccamxpm_2els8ij5zzwa8zyqrwljoxqxgbb9ddfsgkck2xe94hjwmm07m6s-z_8dzi2rsgpi6jp8obiff85jkygdl5rzswzaeldouzhg | HTTP/1.1 302 Moved Temporarily Cache-Control: private, max-age=0 Connection: close Date: Wed, 08 Oct 2014 15:01:33 GMT Location: https://accounts.google.com/recoveraccount?hl=en&ard=ahwgkrl5v2gaaclp-iieai9x6yohnvq1uaw6owagykleikf8y6mz-_fi0u68pyjceafhhwomz8yyujjydjd0_bhq6xarcy4iss-wrwz_8k8w-y10mfb4hgtv7yibud8lkqyp18ngf78rmmuk2acxhvsnmhelfmrwjg&arr=ahwgkrl6pncxcgdyyezurzwpyakqclj7yz1nccamxpm_2els8ij5zzwa8zyqrwljoxqxgbb9ddfsgkck2xe94hjwmm07m6s-z_8dzi2rsgpi6jp8obiff85jkygdl5rzswzaeldouzhg Server: GSE Content-Length: 550 Content-Type: text/html; charset=UTF-8 Expires: Wed, 08 Oct 2014 15:01:33 GMT Set-Cookie: GoogleAccountsLocale_session=en; Path=/; Secure; HttpOnly X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block | clean |
https://accounts.google.com/recoveraccount?hl=en&ard=ahwgkrl5v2gaaclp-iieai9x6yohnvq1uaw6owagykleikf8y6mz-_fi0u68pyjceafhhwomz8yyujjydjd0_bhq6xarcy4iss-wrwz_8k8w-y10mfb4hgtv7yibud8lkqyp18ngf78rmmuk2acxhvsnmhelfmrwjg&arr=ahwgkrl6pncxcgdyyezurzwpyakqclj7yz1nccamxpm_2els8ij5zzwa8zyqrwljoxqxgbb9ddfsgkck2xe94hjwmm07m6s-z_8dzi2rsgpi6jp8obiff85jkygdl5rzswzaeldouzhg | 400 Bad Request Content-Length: 145 Content-Type: text/html | clean |
https://accounts.google.com/SignUp?continue=https%3A%2F%2Faccounts.google.com%2Fmanageaccount | 200 OK Content-Length: 300291 Content-Type: text/html | clean |
https://accounts.google.com/ServiceLogin?continue=https%3A%2F%2Faccounts.google.com%2Fmanageaccount&dsh=6669016424762101247 | 200 OK Content-Length: 66678 Content-Type: text/html | clean |