Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=photos.jcox3.net
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://photos.jcox3.net/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://photos.jcox3.net/ | 200 OK Content-Length: 35999 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: jcox3.net ...[2078 bytes skipped]... &c>0&&(c-=1)}),i.on("internal-error",function(ruary 25, 2014","DateModified":"1393324710","DateModifiedDisplay":"February 25, 2014","PasswordProtected":false,"IsPasswordUnlocked":false,"PrivacyLevel":1,"NodePrivacyLevel":1,"IsOwner":false,"HasChildren":false,"Depth":1,"Description":"","Keywords":"","SmugSearchable":1,"WorldSearchable":1,"SortIndex":"1393324710","ParentPrivacyLevel":1}},"label":"Gallery","url":"http:\/\/photos.jcox3.net\/browse"},{"children":[],"data":{"type":"node","typeInfo":{"NodeID":"svrZL","ParentID":"4g6Pn","RemoteID":"","Type":16,"Name":"search","UrlName":"search","UrlPath":"\/search","Url":"http:\/\/photos.jcox3.net\/search","IDPath":"4g6Pn","HLSetting":0,"HLImageID":0,"DateAdded":"1393324710","DateAddedDisplay":"February 25, 2014","DateModified":"1393324710","DateModifiedDisplay":"February 25, 2014","PasswordProtected":false,"IsPasswordUnlocked":false,"PrivacyLevel":1,"NodePrivacyLevel":1," ...[1158 bytes skipped]... | ||
http://cdn.smugmug.com/include/js/html5shiv/html5shiv-20140219173927.js | 200 OK Content-Length: 1484 Content-Type: application/javascript | clean |
http://cdn.smugmug.com/include/js/smugpage/core-top-8bffa7b15f7fe9fa22f3e5794ce7bcf0.js | 200 OK Content-Length: 108666 Content-Type: application/javascript | clean |
http://cdn.smugmug.com/include/js/smugpage/core-config-4fe1bf02c59b8182dde291c151e7ceab.js | 200 OK Content-Length: 94752 Content-Type: application/javascript | clean |
http://cdn.smugmug.com/include/js/bundles/nodepagewithwidgets-d796fa3dd49bdbc89806d9ea448cb7ab.js | 200 OK Content-Length: 302228 Content-Type: application/javascript | clean |
http://photos.jcox3.net/test404page.js | 404 Not Found Content-Length: 28989 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: jcox3.net ...[3042 bytes skipped]... me: 'contactOwner', uniqueID: 'Footer', ownerNickName: 'Jcox3', uniqueID: 'Footer', width: '755px', albumID: '', additionalParams: 'FooterContact'});}catch(e){}"><a href="#" onclick="return false;" id="contactUsButtonFooter" class="nav" style="">Contact</a></span> · <a rel="nofollow" onmousedown="changeRedirectForAjax(this);" href="https://secure.smugmug.com/login.mg?goTo=http%3A%2F%2Fphotos.jcox3.net%2Ftest404page.js" class="nav">Login</a> <br/> <span class="text">© 2014 SmugMug, Inc.</span> <!-- !!AWSome!! --> </div> </div> <div class="sm-overlay-container sm-nui"></div> <!-- End Footer --> <div class="sm-overlay-container sm-nui"></div> <script type="text/javascript" ...[412 bytes skipped]... | ||
http://cdn.smugmug.com/include/js/yui_core-241a394b6630ba50220a64418df22a4e.js | 200 OK Content-Length: 302481 Content-Type: application/javascript | clean |
http://cdn.smugmug.com/include/js/smugmug_core-00e0ae5afe96a74b248aea4d321e8086.js | 200 OK Content-Length: 207065 Content-Type: application/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: photos.jcox3.net
Result:
HTTP/1.1 200 OK
Cache-Control: private, max-age=1, must-revalidate
Connection: close
Date: Sat, 20 Dec 2014 19:10:34 GMT
Server: cloudflare-nginx
Vary: Accept-Encoding
Content-Type: text/html; charset=utf-8
Expires: Sat, 20 Dec 2014 19:10:36 GMT
CF-RAY: 19be2408b1720af0-WAW
P3P: CP="This is not a P3P policy. SmugMug respects your privacy. Learn more at http://smugmug.com/about/privacy"
Set-Cookie: __cfduid=d16be7784e53b2d58ac906ecfbef216a11419102634; expires=Sun, 20-Dec-15 19:10:34 GMT; path=/; domain=.jcox3.net; HttpOnly
Set-Cookie: ihy=%7B%22eu%22%3A1%7D; expires=Sun, 20-Dec-2015 19:10:35 GMT; Max-Age=31536001; path=/; domain=.jcox3.net; httponly
Smug-Env: live, www, us-east-1d, i-753a8b99
X-Powered-By: SmugMug/1.0
X-S: 100.10.234:20361
X-SmugMug-Hiring: How to love what you do: http://jobs.smugmug.com/
X-SmugMug-Values: 2/4 - Love your employees
X-TTFB: 0.0674
X-TTFB-L: 9673
X-UA-Compatible: IE=edge
GET / HTTP/1.1
Host: photos.jcox3.net
Result:
HTTP/1.1 200 OK
Cache-Control: private, max-age=1, must-revalidate
Connection: close
Date: Sat, 20 Dec 2014 19:10:34 GMT
Server: cloudflare-nginx
Vary: Accept-Encoding
Content-Type: text/html; charset=utf-8
Expires: Sat, 20 Dec 2014 19:10:36 GMT
CF-RAY: 19be2408b1720af0-WAW
P3P: CP="This is not a P3P policy. SmugMug respects your privacy. Learn more at http://smugmug.com/about/privacy"
Set-Cookie: __cfduid=d16be7784e53b2d58ac906ecfbef216a11419102634; expires=Sun, 20-Dec-15 19:10:34 GMT; path=/; domain=.jcox3.net; HttpOnly
Set-Cookie: ihy=%7B%22eu%22%3A1%7D; expires=Sun, 20-Dec-2015 19:10:35 GMT; Max-Age=31536001; path=/; domain=.jcox3.net; httponly
Smug-Env: live, www, us-east-1d, i-753a8b99
X-Powered-By: SmugMug/1.0
X-S: 100.10.234:20361
X-SmugMug-Hiring: How to love what you do: http://jobs.smugmug.com/
X-SmugMug-Values: 2/4 - Love your employees
X-TTFB: 0.0674
X-TTFB-L: 9673
X-UA-Compatible: IE=edge
Second query (visit from search engine):
GET / HTTP/1.1
Host: photos.jcox3.net
Referer: http://www.google.com/search?q=photos.jcox3.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: photos.jcox3.net
Referer: http://www.google.com/search?q=photos.jcox3.net
Result:
The result is similar to the first query. There are no suspicious redirects found.