Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: tetniczenadcisnienieplucne.pl
Result:
HTTP/1.1 200 OK
Date: Wed, 13 Aug 2014 15:47:41 GMT
Server: IdeaWebServer/v0.80
Content-Type: text/html; charset=UTF-8
X-Pingback: http://www.tetniczenadcisnienieplucne.home.pl/tnp/xmlrpc.php
GET / HTTP/1.1
Host: tetniczenadcisnienieplucne.pl
Result:
HTTP/1.1 200 OK
Date: Wed, 13 Aug 2014 15:47:41 GMT
Server: IdeaWebServer/v0.80
Content-Type: text/html; charset=UTF-8
X-Pingback: http://www.tetniczenadcisnienieplucne.home.pl/tnp/xmlrpc.php
Second query (visit from search engine):
GET / HTTP/1.1
Host: tetniczenadcisnienieplucne.pl
Referer: http://www.google.com/search?q=tetniczenadcisnienieplucne.pl
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: tetniczenadcisnienieplucne.pl
Referer: http://www.google.com/search?q=tetniczenadcisnienieplucne.pl
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://tetniczenadcisnienieplucne.pl/ | HTTP/1.1 200 OK Date: Wed, 13 Aug 2014 15:47:41 GMT Server: IdeaWebServer/v0.80 Content-Type: text/html; charset=UTF-8 X-Pingback: http://www.tetniczenadcisnienieplucne.home.pl/tnp/xmlrpc.php | clean |
http://tetniczenadcisnienieplucne.pl//wp-content/themes/grandmag/styles/_ie/kill_ie6/ie6.html/ | 403 Forbidden Content-Length: 171 Content-Type: text/html | clean |
http://tetniczenadcisnienieplucne.pl/test404page.js | 404 Not Found Content-Length: 185 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=tetniczenadcisnienieplucne.pl
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://tetniczenadcisnienieplucne.pl/
Result: tetniczenadcisnienieplucne.pl is not infected or malware details are not published yet.
Result: tetniczenadcisnienieplucne.pl is not infected or malware details are not published yet.