Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=hxbenefit.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://hxbenefit.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: hxbenefit.com
Result:
HTTP/1.1 301 Moved Permanently
Cache-Control: no-cache, must-revalidate, max-age=0
Connection: close
Date: Tue, 27 Jan 2015 07:25:32 GMT
Pragma: no-cache
Location: http://www.hxbenefit.com/
Server: nginx admin
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Expires: Tue, 20 Jan 2015 07:25:32 GMT
Last-Modified: Tue, 27 Jan 2015 07:25:32 GMT
Set-Cookie: wordpress_bcd52999009004707927730d70fbfd75=%7C1423553132%7C36451403df0825a18c5b0546ca8052a6; expires=Tue, 10-Feb-2015 19:25:32 GMT; path=/wp-content/plugins; httponly
Set-Cookie: wordpress_bcd52999009004707927730d70fbfd75=%7C1423553132%7C36451403df0825a18c5b0546ca8052a6; expires=Tue, 10-Feb-2015 19:25:32 GMT; path=/wp-admin; httponly
Set-Cookie: wordpress_logged_in_bcd52999009004707927730d70fbfd75=%7C1423553132%7C9dae7175231626626358ea0a3aab01de; expires=Tue, 10-Feb-2015 19:25:32 GMT; path=/; httponly
X-Cache: HIT from Backend
X-Pingback: http://www.hxbenefit.com/xmlrpc.php
X-Powered-By: PHP/5.2.14
...0 bytes of data.
GET / HTTP/1.1
Host: hxbenefit.com
Result:
HTTP/1.1 301 Moved Permanently
Cache-Control: no-cache, must-revalidate, max-age=0
Connection: close
Date: Tue, 27 Jan 2015 07:25:32 GMT
Pragma: no-cache
Location: http://www.hxbenefit.com/
Server: nginx admin
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Expires: Tue, 20 Jan 2015 07:25:32 GMT
Last-Modified: Tue, 27 Jan 2015 07:25:32 GMT
Set-Cookie: wordpress_bcd52999009004707927730d70fbfd75=%7C1423553132%7C36451403df0825a18c5b0546ca8052a6; expires=Tue, 10-Feb-2015 19:25:32 GMT; path=/wp-content/plugins; httponly
Set-Cookie: wordpress_bcd52999009004707927730d70fbfd75=%7C1423553132%7C36451403df0825a18c5b0546ca8052a6; expires=Tue, 10-Feb-2015 19:25:32 GMT; path=/wp-admin; httponly
Set-Cookie: wordpress_logged_in_bcd52999009004707927730d70fbfd75=%7C1423553132%7C9dae7175231626626358ea0a3aab01de; expires=Tue, 10-Feb-2015 19:25:32 GMT; path=/; httponly
X-Cache: HIT from Backend
X-Pingback: http://www.hxbenefit.com/xmlrpc.php
X-Powered-By: PHP/5.2.14
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: hxbenefit.com
Referer: http://www.google.com/search?q=hxbenefit.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: hxbenefit.com
Referer: http://www.google.com/search?q=hxbenefit.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://hxbenefit.com/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Tue, 27 Jan 2015 07:25:32 GMT Pragma: no-cache Location: http://www.hxbenefit.com/ Server: nginx admin Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Tue, 20 Jan 2015 07:25:32 GMT Last-Modified: Tue, 27 Jan 2015 07:25:32 GMT Set-Cookie: wordpress_bcd52999009004707927730d70fbfd75=%7C1423553132%7C36451403df0825a18c5b0546ca8052a6; expires=Tue, 10-Feb-2015 19:25:32 GMT; path=/wp-content/plugins; httponly Set-Cookie: wordpress_bcd52999009004707927730d70fbfd75=%7C1423553132%7C36451403df0825a18c5b0546ca8052a6; expires=Tue, 10-Feb-2015 19:25:32 GMT; path=/wp-admin; httponly Set-Cookie: wordpress_logged_in_bcd52999009004707927730d70fbfd75=%7C1423553132%7C9dae7175231626626358ea0a3aab01de; expires=Tue, 10-Feb-2015 19:25:32 GMT; path=/; httponly X-Cache: HIT from Backend X-Pingback: http://www.hxbenefit.com/xmlrpc.php X-Powered-By: PHP/5.2.14 | clean |
http://www.hxbenefit.com/ | 200 OK Content-Length: 23407 Content-Type: text/html | clean |
http://www.hxbenefit.com/wp-includes/js/jquery/jquery.js?ver=1.10.2 | 200 OK Content-Length: 93085 Content-Type: application/x-javascript | clean |
http://www.hxbenefit.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/x-javascript | clean |
http://www.hxbenefit.com/wp-content/plugins/featured-content-gallery/scripts/mootools.v1.11.js | 200 OK Content-Length: 34840 Content-Type: application/x-javascript | clean |
http://www.hxbenefit.com/wp-content/plugins/featured-content-gallery/scripts/jd.gallery.js.php | 200 OK Content-Length: 25562 Content-Type: text/html | clean |
http://www.hxbenefit.com/test404page.js | 404 Not Found Content-Length: 18225 Content-Type: text/html | clean |
http://www.hxbenefit.com/wp-content/plugins/featured-content-gallery/scripts/jd.gallery.transitions.js | 200 OK Content-Length: 2182 Content-Type: application/x-javascript | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.5.2/jquery.min.js | 200 OK Content-Length: 85925 Content-Type: text/javascript | clean |
http://www.hxbenefit.com/wp-content/themes/newhealth/js/jquery.color-RGBa-patch.js | 200 OK Content-Length: 5091 Content-Type: application/x-javascript | clean |
http://www.hxbenefit.com/wp-content/themes/newhealth/js/example.js | 200 OK Content-Length: 2224 Content-Type: application/x-javascript | clean |
http://www.hxbenefit.com/wp-content/themes/newhealth/js/cal.js | 200 OK Content-Length: 1124 Content-Type: application/x-javascript | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.6.1/jquery.min.js | 200 OK Content-Length: 91342 Content-Type: text/javascript | clean |
http://tag.contextweb.com/TagPublish/getjs.aspx?action=VIEWAD&cwrun=200&cwadformat=160X600&cwpid=543117&cwwidth=160&cwheight=600&cwpnet=1&cwtagid=121242 | 200 OK Content-Length: 535 Content-Type: application/x-javascript | clean |
http://www.hxbenefit.com/wp-content/themes/newhealth/js/navigation.js?ver=1.0 | 200 OK Content-Length: 863 Content-Type: application/x-javascript | clean |
http://www.hxbenefit.com/digestive-system | 200 OK Content-Length: 23731 Content-Type: text/html | clean |