Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://nedaspeaks.org/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: nedaspeaks.org Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Mon, 09 Jun 2014 08:47:05 GMT Location: http://gigop.americanunfinished.com/ Server: Apache Content-Length: 0 Content-Type: text/html X-Powered-By: PHP/5.3.27 | malicious |
Scanned pages/files
Request | Server response | Status |
http://nedaspeaks.org/ | 200 OK Content-Length: 15830 Content-Type: text/html | clean |
http://nedaspeaks.org/wp-includes/js/jquery/jquery.js?ver=1.3.2 | 200 OK Content-Length: 57276 Content-Type: application/javascript | clean |
http://nedaspeaks.org/wp-content/plugins/jquery-lightbox-balupton-edition/js/jquery.lightbox.min.js?ie6_upgrade=false&ver=1.3.7 | 200 OK Content-Length: 21338 Content-Type: application/javascript | clean |
http://nedaspeaks.org/wp-content/plugins/jquery-lightbox-balupton-edition/js/jquery.lightbox.plugin.min.js?ver=1.0 | 200 OK Content-Length: 221 Content-Type: application/javascript | clean |
http://nedaspeaks.org/wp-content/plugins/members-list/tern_wp_members.js?ver=2.9.2 | 200 OK Content-Length: 1011 Content-Type: application/javascript | clean |
http://nedaspeaks.org/wp-includes/js/comment-reply.js?ver=20090102 | 200 OK Content-Length: 786 Content-Type: application/javascript | clean |
http://nedaspeaks.org/wp-content/themes/neda/js/jqueryslidemenu.js | 200 OK Content-Length: 2146 Content-Type: application/javascript | clean |
http://nedaspeaks.org/watch | 200 OK Content-Length: 14265 Content-Type: text/html | clean |
http://nedaspeaks.org/learn | 200 OK Content-Length: 19604 Content-Type: text/html | clean |
http://nedaspeaks.org/donate | HTTP/1.1 200 OK Connection: close Date: Mon, 09 Jun 2014 08:47:16 GMT Server: Apache Content-Type: text/html; charset=UTF-8 X-Pingback: http://nedaspeaks.org/xmlrpc.php X-Powered-By: PHP/5.3.27 | clean |
http://www.amnestyusa.org/donate?msource=w1005ta
| HTTP/1.1 301 Moved Permanently Cache-Control: public, max-age=3600 Connection: close Date: Mon, 09 Jun 2014 08:47:15 GMT Via: 1.1 varnish Age: 0 ETag: "1402303635" Location: https://donate.amnestyusa.org/ea-action/action?msource=w1005ta&ea.client.id=1839&ea.campaign.id=25646 Server: Apache Vary: Cookie,Accept-Encoding Content-Type: text/html; charset=utf-8 Expires: Sun, 11 Mar 1984 12:00:00 GMT Last-Modified: Mon, 09 Jun 2014 08:47:15 +0000 X-Powered-By: PHP/5.3.28 X-Varnish: 320468056 | clean |
https://donate.amnestyusa.org/ea-action/action?msource=w1005ta&ea.client.id=1839&ea.campaign.id=25646 | 200 OK Content-Length: 37962 Content-Type: text/html | clean |
https://www.google.com/jsapi | 200 OK Content-Length: 24553 Content-Type: text/javascript | clean |
http://nedaspeaks.org/ https://www.e-activist.com/ea-campaign/action.retrievefile.do?ea_fileid=39877 | 404 Not Found Content-Length: 7026 Content-Type: text/html | clean |
http://nedaspeaks.org/test404page.js | 404 Not Found Content-Length: 6957 Content-Type: text/html | clean |
http://nedaspeaks.org/ea-action/js/eaCommon.js | 404 Not Found Content-Length: 6967 Content-Type: text/html | clean |
http://nedaspeaks.org/ea-action/js/eaAJAX.js | 404 Not Found Content-Length: 6965 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=nedaspeaks.org
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://nedaspeaks.org/
Result: nedaspeaks.org is not infected or malware details are not published yet.
Result: nedaspeaks.org is not infected or malware details are not published yet.