Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=m7mod.net
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://m7mod.net/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: m7mod.net
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 26 Sep 2014 15:08:28 GMT
Server: nginx
Vary: Accept-Encoding
Vary: Accept-Encoding,User-Agent
Content-Type: text/html; charset=UTF-8
X-Frame-Options: SAMEORIGIN
X-Pingback: http://m7mod.net/xmlrpc.php
X-Powered-By: PHP/5.3.27
GET / HTTP/1.1
Host: m7mod.net
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 26 Sep 2014 15:08:28 GMT
Server: nginx
Vary: Accept-Encoding
Vary: Accept-Encoding,User-Agent
Content-Type: text/html; charset=UTF-8
X-Frame-Options: SAMEORIGIN
X-Pingback: http://m7mod.net/xmlrpc.php
X-Powered-By: PHP/5.3.27
Second query (visit from search engine):
GET / HTTP/1.1
Host: m7mod.net
Referer: http://www.google.com/search?q=m7mod.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: m7mod.net
Referer: http://www.google.com/search?q=m7mod.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://m7mod.net/ | 200 OK Content-Length: 46458 Content-Type: text/html | clean |
http://m7mod.net/wp-content/themes/inove/js/base.js | 200 OK Content-Length: 2678 Content-Type: application/x-javascript | clean |
http://m7mod.net/wp-content/themes/inove/js/menu.js | 200 OK Content-Length: 4798 Content-Type: application/x-javascript | clean |
http://twitter.com/javascripts/blogger.js | HTTP/1.1 301 Moved Permanently Date: Fri, 26 Sep 2014 15:08:30 UTC Location: https://twitter.com/javascripts/blogger.js Server: tsa_b Content-Length: 0 Set-Cookie: guest_id=v1%3A141174411019139489; Domain=.twitter.com; Path=/; Expires=Sun, 25-Sep-2016 15:08:30 UTC X-Connection-Hash: b198930484415aab1967faf2327cfb89 | clean |
https://twitter.com/javascripts/blogger.js | 404 Not Found Content-Length: 4311 Content-Type: text/html | clean |
https://abs.twimg.com/errors/404-4f54405af9c0bcdecbe656ca8893f7a9.js | 200 OK Content-Length: 10803 Content-Type: application/javascript | clean |
https://twitter.com/ | 200 OK Content-Length: 55840 Content-Type: text/html | clean |
https://abs.twimg.com/c/swift/en/init.2a43779a79d0f82455c6d18d6219402b16acf034.js | 200 OK Content-Length: 302216 Content-Type: application/javascript | clean |
https://twitter.com/?lang=id | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://twitter.com/test404page.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 26 Sep 2014 15:08:38 UTC Location: https://twitter.com/test404page.js Server: tfe_b Content-Length: 0 Set-Cookie: guest_id=v1%3A141174411832415405; Domain=.twitter.com; Path=/; Expires=Sun, 25-Sep-2016 15:08:38 UTC | clean |
https://twitter.com/test404page.js | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
https://twitter.com/?lang=msa | 200 OK Content-Length: 5846 Content-Type: text/html | clean |
https://twitter.com/?lang=cs | 200 OK Content-Length: 11143 Content-Type: text/html | clean |
https://twitter.com/?lang=da | 200 OK Content-Length: 56131 Content-Type: text/html | clean |
https://abs.twimg.com/c/swift/da/init.ef6afad5c59e917713f7af0f3d851c4b909171ec.js | 200 OK Content-Length: 303104 Content-Type: application/javascript | clean |
https://twitter.com/?lang=de | HTTP/1.1 200 OK Cache-Control: no-cache, no-store, must-revalidate, pre-check=0, post-check=0 Connection: close Date: Fri, 26 Sep 2014 15:08:56 GMT Pragma: no-cache Server: tfe_b Content-Length: 3033 Content-Type: text/html;charset=utf-8 Expires: Tue, 31 Mar 1981 05:00:00 GMT Last-Modified: Fri, 26 Sep 2014 15:08:56 GMT Content-Security-Policy-Report-Only: default-src https:; connect-src https:; font-src https: data:; frame-src https: http://*.twimg.com http://itunes.apple.com about: javascript:; img-src https: data:; media-src https:; object-src https:; script-src 'unsafe-inline' 'unsafe-eval' about: https:; style-src 'unsafe-inline' https:; report-uri https://twitter.com/i/csp_report?a=NVQWGYLXFVZXO2LGOQ%3D%3D%3D%3D%3D%3D&ro=true; Set-Cookie: _twitter_sess=BAh7CSIKZmxhc2hJQzonQWN0aW9uQ29udHJvbGxlcjo6Rmxhc2g6OkZsYXNo%250ASGFzaHsABjoKQHVzZWR7ADoPY3JlYXRlZF9hdGwrCED7gbJIAToMY3NyZl9p%250AZCIlYjAxYjJjNjVmZjgzMjUyZGY1ZjE0NjJmODVkNzkxMmM6B2lkIiU3MTNk%250AODEwYzkzNWU0MjE5NTM0MWZhNWJkMzUzYjkxMQ%253D%253D--e1b0e6911aa98361b21f82a95fe097c45c9f8437; Path=/; Domain=.twitter.com; Secure; HTTPOnly Set-Cookie: lang=de Set-Cookie: guest_id=v1%3A141174413599907754; Domain=.twitter.com; Path=/; Expires=Sun, 25-Sep-2016 15:08:56 UTC Status: 200 OK Strict-Transport-Security: max-age=631138519 X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-Transaction: 7b3ea34329218339 X-Xss-Protection: 1; mode=block | clean |
https://mobile.twitter.com/?lang=de | HTTP/1.1 302 Found Cache-Control: no-cache, no-store, max-age=0, must-revalidate Connection: close Date: Fri, 26 Sep 2014 15:08:56 GMT Pragma: no-cache Location: https://mobile.twitter.com/i/guest Server: tfe_b Vary: Accept-Encoding Content-Language: en Content-Length: 100 Content-Type: text/html; charset=utf-8 Expires: Mon, 01 Jan 1990 00:00:00 GMT Set-Cookie: req_country=Lithuania; path=/; expires=Sun, 26-Oct-2014 16:08:56 GMT Set-Cookie: req_country_code=LT; path=/; expires=Sun, 26-Oct-2014 16:08:56 GMT Set-Cookie: req_ip=78.158.11.226; path=/; expires=Sun, 26-Oct-2014 16:08:56 GMT Set-Cookie: _mobile_sess=BAh7CDoLcmVwX2lkSSIpZjVjZGQxMjAtMjdiYy0wMTMyLTJlYmQtM2NkOTJi%0AZWY5NjdjBjoGRVQ6EF9jc3JmX3Rva2VuIhk2ZjFiN2Q0YmEzZmFmNmZlM2U4%0ANTobaXNfZm9yY2VfbG9naW5fZXhlbXB0P1Q%3D%0A--4b42dea1ed49f9d9a4e4a3b7f1cf1fd3ea4761bf; path=/; expires=Mon, 24-Nov-2014 23:00:38 GMT; secure; HttpOnly Set-Cookie: guest_id=v1%3A141174413667654266; Domain=.twitter.com; Path=/; Expires=Sun, 25-Sep-2016 15:08:56 UTC Status: 302 Found Strict-Transport-Security: max-age=631138519 X-Content-Type-Options: NOSNIFF X-Frame-Options: SAMEORIGIN X-Runtime: 25 X-Xss-Protection: 1; mode=block | clean |
https://mobile.twitter.com/i/guest | HTTP/1.1 302 Found Cache-Control: no-cache, no-store, max-age=0, must-revalidate Connection: close Date: Fri, 26 Sep 2014 15:08:57 GMT Pragma: no-cache Location: https://mobile.twitter.com/ Server: tfe_b Vary: Accept-Encoding Content-Language: en Content-Length: 93 Content-Type: text/html; charset=utf-8 Expires: Mon, 01 Jan 1990 00:00:00 GMT Set-Cookie: _mobile_sess=BAh7CDoLcmVwX2lkSSIpZjYzNjIxMDAtMjdiYy0wMTMyLTAwMTgtMDAwMmM5%0AZTk2MzYwBjoGRVQ6EF9jc3JmX3Rva2VuIhk3ZDVkODQ2NjExMDYwZjc2NGRi%0AMjobaXNfZm9yY2VfbG9naW5fZXhlbXB0P1Q%3D%0A--50bb74698e84d4485ceb23acfa6f9c52779d5260; path=/; expires=Mon, 24-Nov-2014 23:05:58 GMT; secure; HttpOnly Set-Cookie: guest_id=v1%3A141174413735991736; Domain=.twitter.com; Path=/; Expires=Sun, 25-Sep-2016 15:08:57 UTC Status: 302 Found Strict-Transport-Security: max-age=631138519 X-Content-Type-Options: NOSNIFF X-Frame-Options: SAMEORIGIN X-Runtime: 2 X-Xss-Protection: 1; mode=block | clean |
https://mobile.twitter.com/ | HTTP/1.1 302 Found Cache-Control: no-cache, no-store, max-age=0, must-revalidate Connection: close Date: Fri, 26 Sep 2014 15:08:58 GMT Pragma: no-cache Location: https://mobile.twitter.com/i/guest Server: tfe_b Vary: Accept-Encoding Content-Language: en Content-Length: 100 Content-Type: text/html; charset=utf-8 Expires: Mon, 01 Jan 1990 00:00:00 GMT Set-Cookie: req_country=Lithuania; path=/; expires=Sun, 26-Oct-2014 15:08:58 GMT Set-Cookie: req_country_code=LT; path=/; expires=Sun, 26-Oct-2014 15:08:58 GMT Set-Cookie: req_ip=78.158.11.226; path=/; expires=Sun, 26-Oct-2014 15:08:58 GMT Set-Cookie: _mobile_sess=BAh7CDoLcmVwX2lkSSIpZjY5NWRhMDAtMjdiYy0wMTMyLWRhNDAtMDAwMmM5%0AZTg3OWMwBjoGRVQ6EF9jc3JmX3Rva2VuIhlkMTI0N2U3MzJlNzM1ZmZhMTgx%0AMTobaXNfZm9yY2VfbG9naW5fZXhlbXB0P1Q%3D%0A--8ddc3a46399d25ee9bc8ac35db23cbc1995c327d; path=/; expires=Mon, 24-Nov-2014 23:14:09 GMT; secure; HttpOnly Set-Cookie: guest_id=v1%3A141174413798645937; Domain=.twitter.com; Path=/; Expires=Sun, 25-Sep-2016 15:08:58 UTC Status: 302 Found Strict-Transport-Security: max-age=631138519 X-Content-Type-Options: NOSNIFF X-Frame-Options: SAMEORIGIN X-Runtime: 25 X-Xss-Protection: 1; mode=block | clean |
https://twitter.com/?lang=en | 200 OK Content-Length: 55864 Content-Type: text/html | clean |
https://twitter.com/?lang=en-gb | 200 OK Content-Length: 55886 Content-Type: text/html | clean |