Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=hkanzok.tumbir.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: hkanzok.tumbir.com
Result:
HTTP/1.1 302 Found
Connection: close
Date: Sat, 24 Jan 2015 04:53:32 GMT
Location: http://ww5.hkanzok.tumbir.com/
Server: Apache
Content-Length: 0
Content-Type: text/html; charset=UTF-8
X-Powered-By: PHP/5.3.3-7+squeeze23
...0 bytes of data.
GET / HTTP/1.1
Host: hkanzok.tumbir.com
Result:
HTTP/1.1 302 Found
Connection: close
Date: Sat, 24 Jan 2015 04:53:32 GMT
Location: http://ww5.hkanzok.tumbir.com/
Server: Apache
Content-Length: 0
Content-Type: text/html; charset=UTF-8
X-Powered-By: PHP/5.3.3-7+squeeze23
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: hkanzok.tumbir.com
Referer: http://www.google.com/search?q=hkanzok.tumbir.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: hkanzok.tumbir.com
Referer: http://www.google.com/search?q=hkanzok.tumbir.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://hkanzok.tumbir.com/ | HTTP/1.1 302 Found Connection: close Date: Sat, 24 Jan 2015 04:53:32 GMT Location: http://ww5.hkanzok.tumbir.com/ Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Powered-By: PHP/5.3.3-7+squeeze23 | clean |
http://ww5.hkanzok.tumbir.com/ | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Connection: close Date: Sat, 24 Jan 2015 04:55:06 GMT Pragma: no-cache Location: http://splitter.ndsplitter.com/?r=3&mid=6&f=DH5&domain=tumbir.com Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Expires: Thu, 29 Oct 1998 17:04:19 GMT Last-Modified: Sat, 24 Jan 2015 04:55:06 GMT Set-Cookie: tumbir_com=013cb2f5c763018b977854478eac264f; expires=Thu, 23-Jan-2020 04:55:06 GMT; path=/ | clean |
http://splitter.ndsplitter.com/?r=3&mid=6&f=dh5&domain=tumbir.com | 200 OK Content-Length: 647 Content-Type: text/html | clean |
http://splitter.ndsplitter.com/test404page.js | 404 Not Found Content-Length: 571 Content-Type: text/html | clean |