Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: playzengo.com
Result:
HTTP/1.1 200 OK
Date: Tue, 03 Mar 2015 23:22:27 GMT
Server: Microsoft-IIS/6.0
Content-Length: 16289
Content-Type: text/html; charset=UTF-8
Link: <http://playzengo.com/?p=5>; rel=shortlink
X-Pingback: http://playzengo.com/xmlrpc.php
X-Powered-By: ASP.NET
X-Powered-By: PHP/5.3.28
...16289 bytes of data.
GET / HTTP/1.1
Host: playzengo.com
Result:
HTTP/1.1 200 OK
Date: Tue, 03 Mar 2015 23:22:27 GMT
Server: Microsoft-IIS/6.0
Content-Length: 16289
Content-Type: text/html; charset=UTF-8
Link: <http://playzengo.com/?p=5>; rel=shortlink
X-Pingback: http://playzengo.com/xmlrpc.php
X-Powered-By: ASP.NET
X-Powered-By: PHP/5.3.28
...16289 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: playzengo.com
Referer: http://www.google.com/search?q=playzengo.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: playzengo.com
Referer: http://www.google.com/search?q=playzengo.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://playzengo.com/ | 200 OK Content-Length: 16289 Content-Type: text/html | clean |
http://playzengo.com/wp-includes/js/jquery/jquery.js?ver=1.10.2 | HTTP/1.1 200 OK Date: Tue, 03 Mar 2015 23:22:28 GMT Accept-Ranges: bytes ETag: "02fc0db849ece1:27fa" Server: Microsoft-IIS/6.0 Content-Length: 93085 Content-Location: http://playzengo.com/wp-includes/js/jquery/jquery.js?ver=1.10.2 Content-Type: application/x-javascript Last-Modified: Wed, 21 Aug 2013 15:41:10 GMT X-Powered-By: ASP.NET | clean |
http://playzengo.com/test404page.js | 200 OK Content-Length: 570 Content-Type: text/html | clean |
http://playzengo.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | HTTP/1.1 200 OK Date: Tue, 03 Mar 2015 23:22:31 GMT Accept-Ranges: bytes ETag: "0496446b987ce1:27fa" Server: Microsoft-IIS/6.0 Content-Length: 7200 Content-Location: http://playzengo.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 Content-Type: application/x-javascript Last-Modified: Tue, 23 Jul 2013 15:28:26 GMT X-Powered-By: ASP.NET | clean |
http://playzengo.com/wp-content/plugins/contact-form-7/includes/js/jquery.form.min.js?ver=3.48.0-2013.12.28 | HTTP/1.1 200 OK Date: Tue, 03 Mar 2015 23:22:31 GMT Accept-Ranges: bytes ETag: "092dc8ca925cf1:27fa" Server: Microsoft-IIS/6.0 Content-Length: 15054 Content-Location: http://playzengo.com/wp-content/plugins/contact-form-7/includes/js/jquery.form.min.js?ver=3.48.0-2013.12.28 Content-Type: application/x-javascript Last-Modified: Sun, 09 Feb 2014 15:13:56 GMT X-Powered-By: ASP.NET | clean |
http://playzengo.com/wp-content/plugins/contact-form-7/includes/js/scripts.js?ver=3.7 | HTTP/1.1 200 OK Date: Tue, 03 Mar 2015 23:22:32 GMT Accept-Ranges: bytes ETag: "092dc8ca925cf1:27fa" Server: Microsoft-IIS/6.0 Content-Length: 8913 Content-Location: http://playzengo.com/wp-content/plugins/contact-form-7/includes/js/scripts.js?ver=3.7 Content-Type: application/x-javascript Last-Modified: Sun, 09 Feb 2014 15:13:56 GMT X-Powered-By: ASP.NET | clean |
http://playzengo.com/wp-content/themes/playzengo/js/functions.js?ver=2013-07-18 | HTTP/1.1 200 OK Date: Tue, 03 Mar 2015 23:22:32 GMT Accept-Ranges: bytes ETag: "0dc4b1b3c23cf1:27fa" Server: Microsoft-IIS/6.0 Content-Length: 2038 Content-Location: http://playzengo.com/wp-content/themes/playzengo/js/functions.js?ver=2013-07-18 Content-Type: application/x-javascript Last-Modified: Thu, 06 Feb 2014 13:05:28 GMT X-Powered-By: ASP.NET | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=playzengo.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://playzengo.com/
Result: playzengo.com is not infected or malware details are not published yet.
Result: playzengo.com is not infected or malware details are not published yet.