Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=nestfoundation.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://nestfoundation.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: nestfoundation.com
Result:
HTTP/1.1 200 OK
Cache-Control: private
Date: Wed, 25 Feb 2015 22:52:08 GMT
Server: Microsoft-IIS/6.0
Content-Length: 117770
Content-Type: text/html
Set-Cookie: ASPSESSIONIDCCSDDASR=OJCCIPMCHHMOPOGELKNMGCLD; path=/
X-Powered-By: ASP.NET
...117770 bytes of data.
GET / HTTP/1.1
Host: nestfoundation.com
Result:
HTTP/1.1 200 OK
Cache-Control: private
Date: Wed, 25 Feb 2015 22:52:08 GMT
Server: Microsoft-IIS/6.0
Content-Length: 117770
Content-Type: text/html
Set-Cookie: ASPSESSIONIDCCSDDASR=OJCCIPMCHHMOPOGELKNMGCLD; path=/
X-Powered-By: ASP.NET
...117770 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: nestfoundation.com
Referer: http://www.google.com/search?q=nestfoundation.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: nestfoundation.com
Referer: http://www.google.com/search?q=nestfoundation.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://nestfoundation.com/ | 200 OK Content-Length: 117770 Content-Type: text/html | clean |
http://www.ishoppingmall.cc/jordanen.js | 200 OK Content-Length: 505 Content-Type: application/x-javascript | clean |
http://www.girl-jordans-shoes.com/js/prototype/prototype.js | 200 OK Content-Length: 129960 Content-Type: application/javascript | clean |
http://www.girl-jordans-shoes.com/js/lib/ccard.js | 200 OK Content-Length: 747 Content-Type: application/javascript | clean |
http://www.girl-jordans-shoes.com/js/prototype/validation.js | 200 OK Content-Length: 37422 Content-Type: application/javascript | clean |
http://www.girl-jordans-shoes.com/js/scriptaculous/builder.js | 200 OK Content-Length: 4744 Content-Type: application/javascript | clean |
http://www.girl-jordans-shoes.com/js/scriptaculous/effects.js | 200 OK Content-Length: 38745 Content-Type: application/javascript | clean |
http://www.girl-jordans-shoes.com/js/scriptaculous/dragdrop.js | 200 OK Content-Length: 31192 Content-Type: application/javascript | clean |
http://www.girl-jordans-shoes.com/js/scriptaculous/controls.js | 200 OK Content-Length: 34797 Content-Type: application/javascript | clean |
http://www.girl-jordans-shoes.com/js/scriptaculous/slider.js | 200 OK Content-Length: 10331 Content-Type: application/javascript | clean |
http://www.girl-jordans-shoes.com/js/varien/js.js | 200 OK Content-Length: 18736 Content-Type: application/javascript | clean |
http://www.girl-jordans-shoes.com/js/varien/form.js | 200 OK Content-Length: 11714 Content-Type: application/javascript | clean |
http://www.girl-jordans-shoes.com/js/varien/menu.js | 200 OK Content-Length: 4426 Content-Type: application/javascript | clean |
http://www.girl-jordans-shoes.com/js/mage/translate.js | 200 OK Content-Length: 1597 Content-Type: application/javascript | clean |
http://www.girl-jordans-shoes.com/js/mage/cookies.js | 200 OK Content-Length: 2615 Content-Type: application/javascript | clean |