Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://netfamilynews.com/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: netfamilynews.com Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Found Cache-Control: max-age=315360000 Connection: close Date: Wed, 20 Aug 2014 18:38:18 GMT Location: http://bitly.com/STTMlN Server: nginx/0.8.55 Content-Length: 207 Content-Type: text/html; charset=iso-8859-1 Expires: Thu, 31 Dec 2037 23:55:55 GMT | malicious |
URL: http://bitly.com/STTMlN (imitation of visitor from search engine) GET /STTMlN HTTP/1.1 Host: bitly.com Referer: http://www.google.com/search?q=redirect+check2 | HTTP/1.1 301 Moved Permanently Cache-Control: private; max-age=90 Connection: close Date: Wed, 20 Aug 2014 18:38:18 GMT Location: http://goo.gl/0rXySb Server: nginx Content-Length: 112 Content-Type: text/html; charset=utf-8 Mime-Version: 1.0 Set-Cookie: _bit=53f4eb1a-00270-063f4-3c1cf10a;domain=.bitly.com;expires=Mon Feb 16 18:38:18 2015;path=/; HttpOnly | malicious |
URL: http://goo.gl/0rXySb (imitation of visitor from search engine) GET /0rXySb HTTP/1.1 Host: goo.gl Referer: http://www.google.com/search?q=redirect+check3 | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, no-store, max-age=0, must-revalidate Connection: close Date: Wed, 20 Aug 2014 18:38:18 GMT Pragma: no-cache Location: http://sh.oowoo.ru/redsh.php Server: GSE Content-Type: text/html; charset=UTF-8 Expires: Fri, 01 Jan 1990 00:00:00 GMT Alternate-Protocol: 80:quic X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-XSS-Protection: 1; mode=block | malicious |
URL: http://sh.oowoo.ru/redsh.php (imitation of visitor from search engine) GET /redsh.php HTTP/1.1 Host: sh.oowoo.ru Referer: http://www.google.com/search?q=redirect+check4 | HTTP/1.1 302 Found Connection: close Date: Wed, 20 Aug 2014 18:37:21 GMT Location: http://hotzone2nn.com/sexgospital/?sid=269188418 Server: nginx/1.0.15 Content-Length: 0 Content-Type: text/html; charset=CP1251 X-Powered-By: PHP/5.2.17 | suspicious |
URL: http://hotzone2nn.com/sexgospital/?sid=269188418 (imitation of visitor from search engine) GET /sexgospital/?sid=269188418 HTTP/1.1 Host: hotzone2nn.com Referer: http://www.google.com/search?q=redirect+check5 | HTTP/1.1 302 Found Cache-Control: max-age=259200 Connection: close Date: Wed, 20 Aug 2014 18:38:19 GMT Pragma: no-cache Location: http://hotzonepqnn.info/sexgospital?sid=269188418 Server: nginx/1.0.14 Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Sat, 23 Aug 2014 18:38:19 GMT Set-Cookie: PHPSESSID=fdp924tcuq88fmnpiigl198rn3; path=/ X-Powered-By: PHP/5.3.10 | suspicious |
Scanned pages/files
Request | Server response | Status |
http://netfamilynews.com/ | 200 OK Content-Length: 8104 Content-Type: text/html | clean |
http://netfamilynews.com/weather.html | 200 OK Content-Length: 24954 Content-Type: text/html | clean |
http://netfamilynews.com/index.html | 200 OK Content-Length: 8104 Content-Type: text/html | clean |
http://netfamilynews.com/contest.html | 200 OK Content-Length: 5451 Content-Type: text/html | clean |
http://netfamilynews.com/entryform.html | 200 OK Content-Length: 2037 Content-Type: text/html | clean |
http://netfamilynews.com/test404page.js | HTTP/1.1 301 Moved Permanently Cache-Control: max-age=315360000 Connection: close Date: Wed, 20 Aug 2014 18:38:19 GMT Location: http://netfamilynews.com/ Server: nginx/0.8.55 Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Thu, 31 Dec 2037 23:55:55 GMT X-Powered-By: PHP/5.1.6 | clean |
http://netfamilynews.com/edit/edit.cgi?page=index.html | 200 OK Content-Length: 1461 Content-Type: text/html | clean |
http://netfamilynews.com/edit/manual.cgi | HTTP/1.1 301 Moved Permanently Cache-Control: max-age=315360000 Connection: close Date: Wed, 20 Aug 2014 18:38:19 GMT Location: http://netfamilynews.com/ Server: nginx/0.8.55 Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Thu, 31 Dec 2037 23:55:55 GMT X-Powered-By: PHP/5.1.6 | clean |
http://netfamilynews.com/edit/edit.cgi?html=yes&page=index.html&hit=1&cols=80 | HTTP/1.1 301 Moved Permanently Cache-Control: max-age=315360000 Connection: close Date: Wed, 20 Aug 2014 18:38:19 GMT Location: http://netfamilynews.com/ Server: nginx/0.8.55 Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Thu, 31 Dec 2037 23:55:55 GMT X-Powered-By: PHP/5.1.6 | clean |
http://netfamilynews.com/redirect.php?url=javascript%3Ahistory.go%28-1%29%3B | HTTP/1.1 302 Found Cache-Control: max-age=315360000 Connection: close Date: Wed, 20 Aug 2014 18:38:19 GMT Location: http://javascript:history.go(-1); Server: nginx/0.8.55 Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Thu, 31 Dec 2037 23:55:55 GMT X-Powered-By: PHP/5.1.6 | clean |
http://javascript:history.go(-1);/ | 500 Can't connect to javascript:history.go(-1);:80 (Bad hostname) Content-Length: 184 Content-Type: text/plain | clean |
http://netfamilynews.com/redirect.php?url=www.pccomtech.com | HTTP/1.1 302 Found Cache-Control: max-age=315360000 Connection: close Date: Wed, 20 Aug 2014 18:38:19 GMT Location: http://www.pccomtech.com Server: nginx/0.8.55 Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Thu, 31 Dec 2037 23:55:55 GMT X-Powered-By: PHP/5.1.6 | clean |
http://www.pccomtech.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 20 Aug 2014 18:38:15 GMT Location: http://pccomtech.com/ Server: Apache/2.2.27 (Unix) mod_ssl/2.2.27 OpenSSL/0.9.8e-fips-rhel5 mod_bwlimited/1.4 Content-Length: 229 Content-Type: text/html; charset=iso-8859-1 | clean |
http://pccomtech.com/ | 200 OK Content-Length: 16942 Content-Type: text/html | clean |
http://pccomtech.com/wordpress/wp-content/themes/vacation_home/script.js | 200 OK Content-Length: 8241 Content-Type: application/javascript | clean |
http://netfamilynews.com/ourstaff.html | 200 OK Content-Length: 11962 Content-Type: text/html | clean |
http://netfamilynews.com/edit/edit.cgi?page=ourstaff.html | HTTP/1.1 301 Moved Permanently Cache-Control: max-age=315360000 Connection: close Date: Wed, 20 Aug 2014 18:38:24 GMT Location: http://netfamilynews.com/ Server: nginx/0.8.55 Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Thu, 31 Dec 2037 23:55:55 GMT X-Powered-By: PHP/5.1.6 | clean |
http://netfamilynews.com/redirect.php?url=mailto%3Ajim%40/ | HTTP/1.1 302 Found Cache-Control: max-age=315360000 Connection: close Date: Wed, 20 Aug 2014 18:38:24 GMT Location: http://mailto:jim@/ Server: nginx/0.8.55 Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Thu, 31 Dec 2037 23:55:55 GMT X-Powered-By: PHP/5.1.6 | clean |
http://mailto:jim@/ | 500 No Host option provided Content-Length: 73 Content-Type: text/plain | clean |
http://netfamilynews.com/redirect.php?url=mailto%3Amike%40/ | HTTP/1.1 302 Found Cache-Control: max-age=315360000 Connection: close Date: Wed, 20 Aug 2014 18:38:24 GMT Location: http://mailto:mike@/ Server: nginx/0.8.55 Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Thu, 31 Dec 2037 23:55:55 GMT X-Powered-By: PHP/5.1.6 | clean |
http://mailto:mike@/ | 500 No Host option provided Content-Length: 73 Content-Type: text/plain | clean |
http://netfamilynews.com/redirect.php?url=mailto%3Afred%40/ | HTTP/1.1 302 Found Cache-Control: max-age=315360000 Connection: close Date: Wed, 20 Aug 2014 18:38:24 GMT Location: http://mailto:fred@/ Server: nginx/0.8.55 Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Thu, 31 Dec 2037 23:55:55 GMT X-Powered-By: PHP/5.1.6 | clean |
http://mailto:fred@/ | 500 No Host option provided Content-Length: 73 Content-Type: text/plain | clean |
http://netfamilynews.com/lepc.html | 200 OK Content-Length: 16193 Content-Type: text/html | clean |
http://netfamilynews.com/edit/edit.cgi?page=lepc.html | HTTP/1.1 301 Moved Permanently Cache-Control: max-age=315360000 Connection: close Date: Wed, 20 Aug 2014 18:38:24 GMT Location: http://netfamilynews.com/ Server: nginx/0.8.55 Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Thu, 31 Dec 2037 23:55:55 GMT X-Powered-By: PHP/5.1.6 | clean |
http://netfamilynews.com/redirect.php?url=www.epa.state.oh.us%2Fdapc%2Fserc | HTTP/1.1 302 Found Cache-Control: max-age=315360000 Connection: close Date: Wed, 20 Aug 2014 18:38:24 GMT Location: http://www.epa.state.oh.us/dapc/serc Server: nginx/0.8.55 Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Thu, 31 Dec 2037 23:55:55 GMT X-Powered-By: PHP/5.1.6 | clean |
http://www.epa.state.oh.us/dapc/serc | 200 OK Content-Length: 97967 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=netfamilynews.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://netfamilynews.com/
Result: netfamilynews.com is not infected or malware details are not published yet.
Result: netfamilynews.com is not infected or malware details are not published yet.