Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: miltonprom.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=3600
Connection: close
Date: Fri, 15 Aug 2014 22:00:21 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Expires: Fri, 15 Aug 2014 23:00:21 GMT
Link: <http://miltonprom.com/?p=636>; rel=shortlink
Set-Cookie: last_display=1408140022; expires=Sat, 16-Aug-2014 22:00:22 GMT
X-Pingback: http://miltonprom.com/xmlrpc.php
GET / HTTP/1.1
Host: miltonprom.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=3600
Connection: close
Date: Fri, 15 Aug 2014 22:00:21 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Expires: Fri, 15 Aug 2014 23:00:21 GMT
Link: <http://miltonprom.com/?p=636>; rel=shortlink
Set-Cookie: last_display=1408140022; expires=Sat, 16-Aug-2014 22:00:22 GMT
X-Pingback: http://miltonprom.com/xmlrpc.php
Second query (visit from search engine):
GET / HTTP/1.1
Host: miltonprom.com
Referer: http://www.google.com/search?q=miltonprom.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: miltonprom.com
Referer: http://www.google.com/search?q=miltonprom.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://www.miltonprom.com/ | HTTP/1.1 301 Moved Permanently Cache-Control: max-age=3600 Connection: close Date: Fri, 15 Aug 2014 22:00:17 GMT Location: http://miltonprom.com/ Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Fri, 15 Aug 2014 23:00:17 GMT Set-Cookie: last_display=1408140021; expires=Sat, 16-Aug-2014 22:00:21 GMT X-Pingback: http://miltonprom.com/xmlrpc.php | clean |
http://miltonprom.com/ | 200 OK Content-Length: 18828 Content-Type: text/html | clean |
http://miltonprom.com/wp-includes/js/jquery/jquery.js?ver=1.10.2 | 200 OK Content-Length: 93085 Content-Type: application/x-javascript | clean |
http://miltonprom.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/x-javascript | clean |
http://miltonprom.com/wp-content/plugins/mailchimp/js/scrollTo.js?ver=1.4.1 | 200 OK Content-Length: 2262 Content-Type: application/x-javascript | clean |
http://miltonprom.com/wp-includes/js/jquery/jquery.form.min.js?ver=3.37.0 | 200 OK Content-Length: 14720 Content-Type: application/x-javascript | clean |
http://miltonprom.com/wp-content/plugins/mailchimp/js/mailchimp.js?ver=1.4.1 | 200 OK Content-Length: 994 Content-Type: application/x-javascript | clean |
http://miltonprom.com/wp-includes/js/jquery/ui/jquery.ui.core.min.js?ver=1.10.3 | 200 OK Content-Length: 4289 Content-Type: application/x-javascript | clean |
http://miltonprom.com/wp-content/plugins/mailchimp//js/datepicker.js?ver=3.8.4 | 200 OK Content-Length: 75876 Content-Type: application/x-javascript | clean |
http://miltonprom.com/wp-content/plugins/wsi/js/jQueryTools/jquery.tools.min.wp-front.v2.js?ver=3.8.4 | 200 OK Content-Length: 99982 Content-Type: application/x-javascript | clean |
http://miltonprom.com/wp-includes/js/comment-reply.min.js?ver=3.8.4 | 200 OK Content-Length: 757 Content-Type: application/x-javascript | clean |
http://www.mozeo.com/widget.js | 200 OK Content-Length: 447 Content-Type: application/x-javascript | clean |
http://miltonprom.com/wp-content/themes/Trim/js/superfish.js?ver=1.0 | 200 OK Content-Length: 3820 Content-Type: application/x-javascript | clean |
http://miltonprom.com/wp-content/themes/Trim/js/jquery.easing.1.3.js?ver=1.0 | 200 OK Content-Length: 8268 Content-Type: application/x-javascript | clean |
http://miltonprom.com/wp-content/themes/Trim/js/jquery.flexslider-min.js?ver=1.0 | 200 OK Content-Length: 16845 Content-Type: application/x-javascript | clean |
http://miltonprom.com/wp-content/themes/Trim/js/custom.js?ver=1.0 | 200 OK Content-Length: 9074 Content-Type: application/x-javascript | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=miltonprom.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://miltonprom.com/
Result: miltonprom.com is not infected or malware details are not published yet.
Result: miltonprom.com is not infected or malware details are not published yet.