Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=newportnewstimes.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://newportnewstimes.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: newportnewstimes.com
Result:
HTTP/1.1 302 Found
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Wed, 20 Aug 2014 23:45:21 GMT
Pragma: no-cache
Location: v2_main_page.php
Server: Apache/2.2.14 (FreeBSD) mod_ssl/2.2.14 OpenSSL/0.9.8k DAV/2 PHP/5.2.11 with Suhosin-Patch
Content-Length: 0
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=4c409993928c1320cb167694e6c74def; path=/
X-Powered-By: PHP/5.2.11
...0 bytes of data.
GET / HTTP/1.1
Host: newportnewstimes.com
Result:
HTTP/1.1 302 Found
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Wed, 20 Aug 2014 23:45:21 GMT
Pragma: no-cache
Location: v2_main_page.php
Server: Apache/2.2.14 (FreeBSD) mod_ssl/2.2.14 OpenSSL/0.9.8k DAV/2 PHP/5.2.11 with Suhosin-Patch
Content-Length: 0
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=4c409993928c1320cb167694e6c74def; path=/
X-Powered-By: PHP/5.2.11
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: newportnewstimes.com
Referer: http://www.google.com/search?q=newportnewstimes.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: newportnewstimes.com
Referer: http://www.google.com/search?q=newportnewstimes.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://newportnewstimes.com/ | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Wed, 20 Aug 2014 23:45:21 GMT Pragma: no-cache Location: v2_main_page.php Server: Apache/2.2.14 (FreeBSD) mod_ssl/2.2.14 OpenSSL/0.9.8k DAV/2 PHP/5.2.11 with Suhosin-Patch Content-Length: 0 Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=4c409993928c1320cb167694e6c74def; path=/ X-Powered-By: PHP/5.2.11 | clean |
http://newportnewstimes.com/v2_main_page.php | 200 OK Content-Length: 47622 Content-Type: text/html | clean |
http://newportnewstimes.com/JS_CookieFunc.js | 200 OK Content-Length: 2766 Content-Type: application/javascript | clean |
http://newportnewstimes.com/mediaplayer/jwplayer.js | 200 OK Content-Length: 111483 Content-Type: application/javascript | clean |
http://newportnewstimes.com/core.js | 200 OK Content-Length: 1185 Content-Type: application/javascript | clean |
http://www.newportnewstimes.com/flash_detect.js | 200 OK Content-Length: 7049 Content-Type: application/javascript | clean |
http://www.newportnewstimes.com/AC_OETags.js | 200 OK Content-Length: 8086 Content-Type: application/javascript | clean |
http://embed.newsinc.com/thumbnail/embed.js?wid=17875&parent=ndn_launcher_17875 | HTTP/1.1 302 Found Cache-Control: private, no-store, proxy-revalidate Connection: Close Date: Wed, 20 Aug 2014 23:45:29 GMT Location: http://launch.newsinc.com/js/legacy-migration.js?wid=17875&parent=ndn_launcher_17875 Server: Microsoft-IIS/7.0 Content-Length: 205 NDN-Server: PS-EMBED-ED03 NDN-Services-Ver: 121126 P3P: CP="CAO PSA OUR" X-Powered-By: ASP.NET | clean |
http://launch.newsinc.com/js/legacy-migration.js?wid=17875&parent=ndn_launcher_17875 | HTTP/1.1 307 Temporary Redirect Cache-Control: max-age=0, no-cache, no-store Connection: close Date: Wed, 20 Aug 2014 23:45:30 GMT Pragma: no-cache ETag: "d41d8cd98f00b204e9800998ecf8427e" Location: /52/js/legacy-migration.js?wid=17875&parent=ndn_launcher_17875 Server: Apache/2.4.9 (Amazon) mod_wsgi/3.4 Python/2.7.5 Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Wed, 20 Aug 2014 23:45:30 GMT X-Ndn-Redirect-Proxy: S3Upstream cache Hit from: i-38f93215 | clean |
http://launch.newsinc.com/52/js/legacy-migration.js?wid=17875&parent=ndn_launcher_17875 | 200 OK Content-Length: 671 Content-Type: application/javascript | clean |
http://netweather.accuweather.com/adcbin/netweather_v2/netweatherV2.asp?tStyle=whteYell&logo=0&zipcode=97365&lang=eng&size=9&theme=&metric=0&target=_blank | 200 OK Content-Length: 8273 Content-Type: text/javascript | clean |
http://www.google.com/cse/brand?form=cse-search-box&lang=en | 200 OK Content-Length: 2504 Content-Type: text/javascript | clean |
http://pagead2.googlesyndication.com/pagead/show_ads.js | 200 OK Content-Length: 21183 Content-Type: text/javascript | clean |
http://newportnewstimes.com/v2_search_archives.php?heading=3 | 200 OK Content-Length: 15550 Content-Type: text/html | clean |
http://newportnewstimes.com/v2_contact_us.php?heading=4 | 200 OK Content-Length: 22269 Content-Type: text/html | clean |
http://newportnewstimes.com/v2_talkback.php?heading=5 | 200 OK Content-Length: 10278 Content-Type: text/html | clean |
http://newportnewstimes.com/v2_sign_up.php?heading=6 | 200 OK Content-Length: 10650 Content-Type: text/html | clean |
http://newportnewstimes.com/v2_edit_user_profile.php?heading=7 | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Wed, 20 Aug 2014 23:45:36 GMT Pragma: no-cache Location: v2_fe_login.php?heading=7 Server: Apache/2.2.14 (FreeBSD) mod_ssl/2.2.14 OpenSSL/0.9.8k DAV/2 PHP/5.2.11 with Suhosin-Patch Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=e6a4f51d3394361d7863e5be3d9c5f77; path=/ X-Powered-By: PHP/5.2.11 | clean |
http://newportnewstimes.com/v2_fe_login.php?heading=7 | 200 OK Content-Length: 17041 Content-Type: text/html | clean |