Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: mingmash.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 25 Aug 2015 01:43:09 GMT
Location: http://www.mingmash.com/
Server: Apache/2.4.12
Vary: User-Agent
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Set-Cookie: wfvt_3070091034=55dbc82deaedf; expires=Tue, 25-Aug-2015 02:13:09 GMT; path=/; httponly
X-Pingback: http://www.mingmash.com/xmlrpc.php
X-Powered-By: PHP/5.4.43
X-UA-Compatible: IE=edge,chrome=1
...0 bytes of data.
GET / HTTP/1.1
Host: mingmash.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 25 Aug 2015 01:43:09 GMT
Location: http://www.mingmash.com/
Server: Apache/2.4.12
Vary: User-Agent
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Set-Cookie: wfvt_3070091034=55dbc82deaedf; expires=Tue, 25-Aug-2015 02:13:09 GMT; path=/; httponly
X-Pingback: http://www.mingmash.com/xmlrpc.php
X-Powered-By: PHP/5.4.43
X-UA-Compatible: IE=edge,chrome=1
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: mingmash.com
Referer: http://www.google.com/search?q=mingmash.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: mingmash.com
Referer: http://www.google.com/search?q=mingmash.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://mingmash.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Tue, 25 Aug 2015 01:43:09 GMT Location: http://www.mingmash.com/ Server: Apache/2.4.12 Vary: User-Agent Content-Length: 0 Content-Type: text/html; charset=UTF-8 Set-Cookie: wfvt_3070091034=55dbc82deaedf; expires=Tue, 25-Aug-2015 02:13:09 GMT; path=/; httponly X-Pingback: http://www.mingmash.com/xmlrpc.php X-Powered-By: PHP/5.4.43 X-UA-Compatible: IE=edge,chrome=1 | clean |
http://www.mingmash.com/ | 200 OK Content-Length: 41846 Content-Type: text/html | clean |
http://www.mingmash.com/wp-includes/js/jquery/jquery.js?ver=1.11.3 | 200 OK Content-Length: 95977 Content-Type: application/javascript | clean |
http://www.mingmash.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://xslt.alexa.com/site_stats/js/s/a?url=http://mingmash.com | 200 OK Content-Length: 3153 Content-Type: application/x-javascript | clean |
http://resources.infolinks.com/js/infolinks_main.js | 200 OK Content-Length: 2398 Content-Type: text/javascript | clean |
http://www.mingmash.com/wp-content/plugins/jetpack/modules/photon/photon.js?ver=20130122 | 200 OK Content-Length: 1378 Content-Type: application/javascript | clean |
http://www.mingmash.com/wp-content/plugins/contact-form-7/includes/js/jquery.form.min.js?ver=3.51.0-2014.06.20 | 200 OK Content-Length: 15248 Content-Type: application/javascript | clean |
http://www.mingmash.com/wp-content/plugins/contact-form-7/includes/js/scripts.js?ver=4.2.2 | 200 OK Content-Length: 11200 Content-Type: application/javascript | clean |
http://s0.wp.com/wp-content/js/devicepx-jetpack.js?ver=201535 | 200 OK Content-Length: 9885 Content-Type: application/x-javascript | clean |
http://s.gravatar.com/js/gprofiles.js?ver=2015Augaa | 200 OK Content-Length: 21442 Content-Type: application/x-javascript | clean |
http://www.mingmash.com/wp-content/plugins/jetpack/modules/wpgroho.js?ver=4.3 | 200 OK Content-Length: 959 Content-Type: application/javascript | clean |
http://stats.wp.com/e-201535.js | 200 OK Content-Length: 3334 Content-Type: application/x-javascript | clean |
http://mingmash.com/test404page.js | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Tue, 25 Aug 2015 01:43:19 GMT Pragma: no-cache Location: http://www.mingmash.com/test404page.js Server: Apache/2.4.12 Vary: User-Agent Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Set-Cookie: wfvt_3070091034=55dbc837d61de; expires=Tue, 25-Aug-2015 02:13:19 GMT; path=/; httponly X-Pingback: http://www.mingmash.com/xmlrpc.php X-Powered-By: PHP/5.4.43 X-UA-Compatible: IE=edge,chrome=1 | clean |
http://www.mingmash.com/test404page.js | 404 Not Found Content-Length: 23368 Content-Type: text/html | clean |
http://www.mingmash.com/category/serial-keys/ | 200 OK Content-Length: 40614 Content-Type: text/html | clean |
http://www.mingmash.com/category/cracks-only/ | 200 OK Content-Length: 44213 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=mingmash.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://mingmash.com/
Result: mingmash.com is not infected or malware details are not published yet.
Result: mingmash.com is not infected or malware details are not published yet.