Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=nikitavonjames.us
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://nikitavonjames.us/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: nikitavonjames.us
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Mon, 15 Sep 2014 07:46:35 GMT
Location: http://www.nikitavonjames.us/
Server: Apache
Content-Length: 0
Content-Type: text/html; charset=UTF-8
X-Pingback: http://www.nikitavonjames.us/xmlrpc.php
X-Powered-By: PHP/5.4.32
...0 bytes of data.
GET / HTTP/1.1
Host: nikitavonjames.us
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Mon, 15 Sep 2014 07:46:35 GMT
Location: http://www.nikitavonjames.us/
Server: Apache
Content-Length: 0
Content-Type: text/html; charset=UTF-8
X-Pingback: http://www.nikitavonjames.us/xmlrpc.php
X-Powered-By: PHP/5.4.32
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: nikitavonjames.us
Referer: http://www.google.com/search?q=nikitavonjames.us
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: nikitavonjames.us
Referer: http://www.google.com/search?q=nikitavonjames.us
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://nikitavonjames.us/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Mon, 15 Sep 2014 07:46:35 GMT Location: http://www.nikitavonjames.us/ Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Pingback: http://www.nikitavonjames.us/xmlrpc.php X-Powered-By: PHP/5.4.32 | clean |
http://www.nikitavonjames.us/ | 200 OK Content-Length: 26522 Content-Type: text/html | clean |
http://www.nikitavonjames.us/video.php | HTTP/1.1 301 Moved Permanently Connection: close Date: Mon, 15 Sep 2014 07:46:37 GMT Location: http://secure.nikitavonjames.com/track/NjQ1LjEuMzYuNzIuMC4wLjAuMC4w Server: Apache Content-Length: 0 Content-Type: text/html X-Powered-By: PHP/5.4.32 | clean |
http://secure.nikitavonjames.com/track/njq1ljeumzyunziumc4wljaumc4w | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Mon, 15 Sep 2014 07:46:37 GMT Pragma: no-cache Location: http://tour.nikitavonjames.com?nats=MC4wLjM2LjcyLjAuMC4wLjAuMA Server: Apache/2.2.16 (Debian) mod_ssl/2.2.16 OpenSSL/0.9.8o Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=38b63e1ae572b09cde0286dcca23a093; path=/ Set-Cookie: nats=MC4wLjM2LjcyLjAuMC4wLjAuMA; expires=Wed, 15-Oct-2014 07:46:37 GMT; path=/; domain=nikitavonjames.com; httponly Set-Cookie: nats_cookie=No%2BReferring%2BURL; expires=Wed, 15-Oct-2014 07:46:37 GMT; path=/; domain=nikitavonjames.com; httponly Set-Cookie: nats_unique=MC4wLjM2LjcyLjAuMC4wLjAuMA; expires=Tue, 16-Sep-2014 07:46:37 GMT; path=/; domain=nikitavonjames.com; httponly Set-Cookie: nats_sess=d076ce72260e0262272e802c8c06a81a; expires=Wed, 24-Dec-2014 08:46:37 GMT; path=/; domain=nikitavonjames.com; httponly | clean |
http://tour.nikitavonjames.com?nats=mc4wljm2ljcyljaumc4wljauma/ | 500 Can't connect to tour.nikitavonjames.com:80 (Bad hostname) Content-Length: 178 Content-Type: text/plain | clean |
http://tour.nikitavonjames.com?nats=mc4wljm2ljcyljaumc4wljauma/test404page.js | 500 Can't connect to tour.nikitavonjames.com:80 (Bad hostname) Content-Length: 178 Content-Type: text/plain | clean |