Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=mobiled.uiah.fi
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://mobiled.uiah.fi/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: mobiled.uiah.fi
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 10 Jan 2015 16:16:28 GMT
Server: Apache/2.2.15 (Red Hat)
Content-Type: text/html; charset=UTF-8
Set-Cookie: kpg_stop_spammers_time=1420906589; expires=Sat, 10-Jan-2015 16:17:29 GMT
X-Pingback: http://mobiled.uiah.fi/xmlrpc.php
X-Powered-By: PHP/5.3.3
GET / HTTP/1.1
Host: mobiled.uiah.fi
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 10 Jan 2015 16:16:28 GMT
Server: Apache/2.2.15 (Red Hat)
Content-Type: text/html; charset=UTF-8
Set-Cookie: kpg_stop_spammers_time=1420906589; expires=Sat, 10-Jan-2015 16:17:29 GMT
X-Pingback: http://mobiled.uiah.fi/xmlrpc.php
X-Powered-By: PHP/5.3.3
Second query (visit from search engine):
GET / HTTP/1.1
Host: mobiled.uiah.fi
Referer: http://www.google.com/search?q=mobiled.uiah.fi
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: mobiled.uiah.fi
Referer: http://www.google.com/search?q=mobiled.uiah.fi
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://mobiled.uiah.fi/ | 200 OK Content-Length: 34064 Content-Type: text/html | clean |
http://mobiled.uiah.fi/wp-includes/js/jquery/jquery.js?ver=1.11.1 | 200 OK Content-Length: 95807 Content-Type: application/javascript | clean |
http://mobiled.uiah.fi/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://mobiled.uiah.fi/wp-content/themes/twentyfourteen/js/functions.js?ver=20140616 | 200 OK Content-Length: 3449 Content-Type: application/javascript | clean |
http://mobiled.uiah.fi/?page_id=96 | 200 OK Content-Length: 13101 Content-Type: text/html | clean |
http://mobiled.uiah.fi/?page_id=101 | 200 OK Content-Length: 11135 Content-Type: text/html | clean |
http://mobiled.uiah.fi/?page_id=82 | 200 OK Content-Length: 13278 Content-Type: text/html | clean |
http://mobiled.uiah.fi/?page_id=88 | 200 OK Content-Length: 12413 Content-Type: text/html | clean |
http://mobiled.uiah.fi/?page_id=98 | 200 OK Content-Length: 13952 Content-Type: text/html | clean |
http://mobiled.uiah.fi/?page_id=93 | 200 OK Content-Length: 9825 Content-Type: text/html | clean |
http://mobiled.uiah.fi/wp-login.php?redirect_to=http%3A%2F%2Fmobiled.uiah.fi%2F%3Fpage_id%3D93 | 200 OK Content-Length: 4335 Content-Type: text/html | clean |
http://mobiled.uiah.fi/wp-content/plugins/better-wp-security/modules/free/strong-passwords/js/strong-passwords.js?ver=4035 | 200 OK Content-Length: 319 Content-Type: application/javascript | clean |
http://mobiled.uiah.fi/wp-login.php?action=lostpassword | 200 OK Content-Length: 3982 Content-Type: text/html | clean |
http://mobiled.uiah.fi/wp-login.php | 200 OK Content-Length: 4333 Content-Type: text/html | clean |
http://mobiled.uiah.fi/test404page.js | 404 Not Found Content-Length: 294 Content-Type: text/html | clean |