Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://northernhillspharmacy.com/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: northernhillspharmacy.com Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 301 Moved Permanently Connection: close Date: Tue, 26 Aug 2014 21:10:06 GMT Location: http://2011-service.ru/in.cgi?9 Server: Apache Vary: Accept-Encoding Content-Length: 239 Content-Type: text/html; charset=iso-8859-1 | malicious |
Scanned pages/files
Request | Server response | Status |
http://northernhillspharmacy.com/ | 200 OK Content-Length: 9369 Content-Type: text/html | clean |
http://northernhillspharmacy.com/?page_id=2 | 200 OK Content-Length: 11049 Content-Type: text/html | clean |
http://northernhillspharmacy.com/?feed=rss2 | 200 OK Content-Length: 1673 Content-Type: text/xml | clean |
http://northernhillspharmacy.com/test404page.js | HTTP/1.1 302 Found Connection: close Date: Tue, 26 Aug 2014 21:10:09 GMT Location: http://2011-service.ru/in.cgi?9 Server: Apache Vary: Accept-Encoding Content-Length: 215 Content-Type: text/html; charset=iso-8859-1 | clean |
http://2011-service.ru/in.cgi?9 | 500 Can't connect to 2011-service.ru:80 (Bad hostname) Content-Length: 162 Content-Type: text/plain | clean |
http://2011-service.ru/test404page.js | 500 Can't connect to 2011-service.ru:80 (Bad hostname) Content-Length: 162 Content-Type: text/plain | clean |
http://northernhillspharmacy.com/?cat=1 | 200 OK Content-Length: 8903 Content-Type: text/html | clean |
http://northernhillspharmacy.com/?p=1 | 200 OK Content-Length: 12477 Content-Type: text/html | clean |
http://northernhillspharmacy.com/wp-trackback.php?p=1 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Tue, 26 Aug 2014 21:10:12 GMT Location: http://northernhillspharmacy.com/?p=1 Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Pingback: http://northernhillspharmacy.com/xmlrpc.php | clean |
http://northernhillspharmacy.com/?p=1&replytocom=1 | 200 OK Content-Length: 12544 Content-Type: text/html | clean |
http://northernhillspharmacy.com/?m=201206 | 200 OK Content-Length: 8626 Content-Type: text/html | clean |
http://northernhillspharmacy.com/wp-login.php | 200 OK Content-Length: 2731 Content-Type: text/html | clean |
http://northernhillspharmacy.com/wp-login.php?action=lostpassword | 200 OK Content-Length: 2370 Content-Type: text/html | clean |
http://northernhillspharmacy.com/?feed=comments-rss2 | 200 OK Content-Length: 1499 Content-Type: text/xml | clean |
http://northernhillspharmacy.com/wp-admin/ | HTTP/1.1 302 Moved Temporarily Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Tue, 26 Aug 2014 21:10:17 GMT Pragma: no-cache Location: http://northernhillspharmacy.com/wp-login.php?redirect_to=http%3A%2F%2Fnorthernhillspharmacy.com%2Fwp-admin%2F&reauth=1 Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Expires: Wed, 11 Jan 1984 05:00:00 GMT | clean |
http://northernhillspharmacy.com/wp-login.php?redirect_to=http%3a%2f%2fnorthernhillspharmacy.com%2fwp-admin%2f&reauth=1 | 200 OK Content-Length: 2731 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=northernhillspharmacy.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://northernhillspharmacy.com/
Result: northernhillspharmacy.com is not infected or malware details are not published yet.
Result: northernhillspharmacy.com is not infected or malware details are not published yet.