Scanned pages/files
Request | Server response | Status |
http://nikenfljerseycn.com/ | HTTP/1.1 302 Moved Temporarily Connection: close Date: Mon, 09 Jun 2014 02:06:04 GMT Location: http://www.nfl.com/13-2572 Server: Apache-Coyote/1.1 Content-Length: 0 | clean |
http://www.nfl.com/13-2572 | 200 OK Content-Length: 1454 Content-Type: text/html | clean |
http://www.nfl.com/test404page.js | 404 Not Found Content-Length: 1318 Content-Type: text/html | clean |
http://static.nfl.com/static/site/scripts/analytics/s_code.js | 200 OK Content-Length: 57253 Content-Type: application/x-javascript | clean |
http://www.nfl.com/ | 200 OK Content-Length: 161821 Content-Type: text/html | clean |
http://combine.nflcdn.com/yui/min2/index.php?5.29194541030620143cbcd82055eb26a10a19ab521784d4e6a9c5e765&g=nflbase,nflui | 200 OK Content-Length: 161154 Content-Type: application/x-javascript | clean |
http://combine.nflcdn.com/yui/min2/index.php?5.29194541030620143cbcd82055eb26a10a19ab521784d4e6a9c5e765&b=yui3%2Fstatic%2F5.29%2Fscripts&f=home-2011/home.js,header-2012/header-2012.js | 200 OK Content-Length: 27680 Content-Type: application/x-javascript | clean |
http://www.nfl.com/{userLink} | 404 Not Found Content-Length: 1318 Content-Type: text/html | clean |
http://www.nfl.com/fans/settings | HTTP/1.1 302 Moved Temporarily Cache-Control: max-age=0, no-cache, no-store Connection: close Date: Mon, 09 Jun 2014 02:06:09 GMT Pragma: no-cache Location: https://id2.s.nfl.com/fans/login Server: Apache Content-Language: en-US Content-Length: 0 Expires: Mon, 09 Jun 2014 02:06:09 GMT Set-Cookie: JSESSIONID=4BAA47EBC0395A73D34D30B2D049B86C; Path=/; HttpOnly X-Akamai-Edgescape: country_code=LT | clean |
https://id2.s.nfl.com/fans/login | 200 OK Content-Length: 277360 Content-Type: text/html | clean |
https://id2.s.nfl.com//nfl.demdex.net/event?d_stuff=1&d_dst=1&d_rtbd=json&d_cts=1&d_cb=aam_tnt_cb/ | 404 Not Found Content-Length: 747 Content-Type: text/html | clean |
https://cdns.gigya.com/JS/socialize.js?apikey=2_kMCvXUlFCZJhwaNXbxzePaXPYb9T__rgiF5y7EnWuEM5a84cueVv-MkPRKjVFc31 | 200 OK Content-Length: 132757 Content-Type: text/javascript | clean |
http://www.nfl.com/fantasyfootball | 200 OK Content-Length: 112571 Content-Type: text/html | suspicious |
Hidden iFrame found. size: 0x0 src: http://www.imiclk.com/cgi/r.cgi?m=3&mid=fl5petpz&did=fantasy <iframe src="http://www.imiclk.com/cgi/r.cgi?m=3&mid=fl5petpz&did=fantasy" frameborder="0" scrolling="no" width="0" height="0"> | ||
http://s.nflcdn.com/static/site/5.29/scripts/header-2012/header-2012.js?5.29194541030620143cbcd82055eb26a10a19ab521784d4e6a9c5e765 | 200 OK Content-Length: 9725 Content-Type: application/x-javascript | clean |
http://s.nflcdn.com/static/site/5.29/scripts/fantasy/fantasy.js | 200 OK Content-Length: 30198 Content-Type: application/x-javascript | clean |
http://www.nfl.com/news | 200 OK Content-Length: 72578 Content-Type: text/html | clean |
http://www.nfl.com/videos | 200 OK Content-Length: 56595 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: nikenfljerseycn.com
Result:
HTTP/1.1 302 Moved Temporarily
Connection: close
Date: Mon, 09 Jun 2014 02:06:04 GMT
Location: http://www.nfl.com/13-2572
Server: Apache-Coyote/1.1
Content-Length: 0
...0 bytes of data.
GET / HTTP/1.1
Host: nikenfljerseycn.com
Result:
HTTP/1.1 302 Moved Temporarily
Connection: close
Date: Mon, 09 Jun 2014 02:06:04 GMT
Location: http://www.nfl.com/13-2572
Server: Apache-Coyote/1.1
Content-Length: 0
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: nikenfljerseycn.com
Referer: http://www.google.com/search?q=nikenfljerseycn.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: nikenfljerseycn.com
Referer: http://www.google.com/search?q=nikenfljerseycn.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=nikenfljerseycn.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://nikenfljerseycn.com/
Result: nikenfljerseycn.com is not infected or malware details are not published yet.
Result: nikenfljerseycn.com is not infected or malware details are not published yet.