Scanned pages/files
Request | Server response | Status |
http://www.robertguerin.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 24 Sep 2014 02:18:20 GMT Location: http://robertguerin.com/ Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Pingback: http://robertguerin.com/xmlrpc.php X-Powered-By: PHP/5.2.17 | clean |
http://robertguerin.com/ | 200 OK Content-Length: 8509 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: HaCkEd By .: Criminal BD :. <html><head> <meta http-equiv="Content-Language" content="pt-br"> <meta http-equiv="Content-Type" content="text/html; charset=windows-1254"> <title> HaCkEd By .: Criminal BD :.</title> <link rel="shortcut icon" href="http://s13.postimg.org/d82nq5frb/UBHFinal1.png" /> <script language="Javascript1.2"> <!-- // please keep these lines on when you copy the source // made by: Criminal BD var mymessage = " .: Criminal Bd :D :. ...[10407 bytes skipped]... | ||
http://robertguerin.com/.js | 404 Not Found Content-Length: 13644 Content-Type: text/html | clean |
https://apis.google.com/js/plusone.js | 200 OK Content-Length: 12497 Content-Type: application/javascript | clean |
http://robertguerin.com/about/ | 200 OK Content-Length: 27521 Content-Type: text/html | clean |
http://robertguerin.com/wp-includes/js/jquery/jquery.js?ver=1.11.1 | 200 OK Content-Length: 95807 Content-Type: application/javascript | clean |
http://robertguerin.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://robertguerin.com/wp-content/themes/twentyeleven/js/showcase.js?ver=2011-04-28 | 200 OK Content-Length: 473 Content-Type: application/javascript | clean |
http://robertguerin.com/wp-includes/js/comment-reply.min.js?ver=4.0 | 200 OK Content-Length: 757 Content-Type: application/javascript | clean |
http://robertguerin.com/media/ | 200 OK Content-Length: 12590 Content-Type: text/html | clean |
http://robertguerin.com/media/audio/ | 200 OK Content-Length: 15131 Content-Type: text/html | clean |
http://robertguerin.com/media/video/ | 200 OK Content-Length: 16254 Content-Type: text/html | clean |
http://robertguerin.com/media/publications/ | 200 OK Content-Length: 32880 Content-Type: text/html | clean |
http://robertguerin.com/resume-2/ | 200 OK Content-Length: 12613 Content-Type: text/html | clean |
http://robertguerin.com/resume-2/sample-page/ | 200 OK Content-Length: 29893 Content-Type: text/html | clean |
http://robertguerin.com/resume-2/resume/ | 200 OK Content-Length: 30652 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: robertguerin.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 24 Sep 2014 02:18:22 GMT
Server: Apache
Content-Length: 8509
Content-Type: text/html; charset=UTF-8
X-Pingback: http://robertguerin.com/xmlrpc.php
X-Powered-By: PHP/5.2.17
...8509 bytes of data.
GET / HTTP/1.1
Host: robertguerin.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 24 Sep 2014 02:18:22 GMT
Server: Apache
Content-Length: 8509
Content-Type: text/html; charset=UTF-8
X-Pingback: http://robertguerin.com/xmlrpc.php
X-Powered-By: PHP/5.2.17
...8509 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: robertguerin.com
Referer: http://www.google.com/search?q=robertguerin.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: robertguerin.com
Referer: http://www.google.com/search?q=robertguerin.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=robertguerin.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://robertguerin.com/
Result: robertguerin.com is not infected or malware details are not published yet.
Result: robertguerin.com is not infected or malware details are not published yet.