Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: hortonskids.org
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Sat, 05 Apr 2014 08:59:06 GMT
Accept-Ranges: bytes
Age: 0
Location: http://www.hortonskids.org/
Server: Apache/2
Content-Length: 235
Content-Type: text/html; charset=iso-8859-1
X-Pingback: http://www.hortonskids.org/xmlrpc.php
X-Powered-By: PHP/5.2.17
...235 bytes of data.
GET / HTTP/1.1
Host: hortonskids.org
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Sat, 05 Apr 2014 08:59:06 GMT
Accept-Ranges: bytes
Age: 0
Location: http://www.hortonskids.org/
Server: Apache/2
Content-Length: 235
Content-Type: text/html; charset=iso-8859-1
X-Pingback: http://www.hortonskids.org/xmlrpc.php
X-Powered-By: PHP/5.2.17
...235 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: hortonskids.org
Referer: http://www.google.com/search?q=hortonskids.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: hortonskids.org
Referer: http://www.google.com/search?q=hortonskids.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://hortonskids.org/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Sat, 05 Apr 2014 08:59:06 GMT Accept-Ranges: bytes Age: 0 Location: http://www.hortonskids.org/ Server: Apache/2 Content-Length: 235 Content-Type: text/html; charset=iso-8859-1 X-Pingback: http://www.hortonskids.org/xmlrpc.php X-Powered-By: PHP/5.2.17 | clean |
http://www.hortonskids.org/ | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://www.hortonskids.org/test404page.js | 404 Not Found Content-Length: 21101 Content-Type: text/html | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.6.2/jquery.min.js?ver=1.6.2 | 200 OK Content-Length: 91556 Content-Type: text/javascript | clean |
http://www.hortonskids.org/wp-content/themes/hortons-kids/js/plugins.js?ver=3.7.1 | 200 OK Content-Length: 3695 Content-Type: application/x-javascript | clean |
http://www.hortonskids.org/wp-content/themes/hortons-kids/js/script.js?ver=3.7.1 | 200 OK Content-Length: 4790 Content-Type: application/x-javascript | clean |
http://www.hortonskids.org/wp-content/plugins/google-calendar-events/js/jquery-qtip.js | 200 OK Content-Length: 38428 Content-Type: application/x-javascript | clean |
http://www.hortonskids.org/wp-content/plugins/google-calendar-events/js/gce-script.js | 200 OK Content-Length: 1616 Content-Type: application/x-javascript | clean |
http://www.hortonskids.org/wp-content/plugins/meteor-slides/js/jquery.cycle.all.js?ver=3.7.1 | 200 OK Content-Length: 52194 Content-Type: application/x-javascript | clean |
http://www.hortonskids.org/wp-content/plugins/meteor-slides/js/jquery.metadata.v2.js?ver=3.7.1 | 200 OK Content-Length: 5112 Content-Type: application/x-javascript | clean |
http://www.hortonskids.org/wp-content/plugins/meteor-slides/js/jquery.touchwipe.1.1.1.js?ver=3.7.1 | 200 OK Content-Length: 2174 Content-Type: application/x-javascript | clean |
http://www.hortonskids.org/wp-content/plugins/meteor-slides/js/slideshow.js?ver=3.7.1 | 200 OK Content-Length: 2397 Content-Type: application/x-javascript | clean |
http://use.typekit.com/jse3eqp.js | 200 OK Content-Length: 29341 Content-Type: text/javascript | clean |
http://www.formstack.com/forms/js/3/jquery.min.js | 200 OK Content-Length: 93434 Content-Type: application/x-javascript | clean |
http://www.formstack.com/forms/js/3/jquery-ui.min.js?20130225 | 200 OK Content-Length: 83894 Content-Type: application/x-javascript | clean |
http://www.formstack.com/forms/js/3/scripts.js?20130521 | 200 OK Content-Length: 41147 Content-Type: application/x-javascript | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=hortonskids.org
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://hortonskids.org/
Result: hortonskids.org is not infected or malware details are not published yet.
Result: hortonskids.org is not infected or malware details are not published yet.