Scanned pages/files
Request | Server response | Status |
http://thepeoplescube.com/ | 200 OK Content-Length: 122778 Content-Type: text/html | suspicious |
Deface/Content modification. The following signature was found: New York Times hacked by Chinese government, Paul Krugman ...[74205 bytes skipped]... rs-to-chicago-t10671.html"><img src="http://tpc.pc2.netdna-cdn.com/images/various_uploads/Talibam_Chicago_Time_Cover_160.png" alt="Taliban Sensd Peacekeeping Advisers to Chicago Time mag cover parody" width=160 height=210 class=img_left_10 /></a>White House releases new exciting photos of Obama standing, sitting, looking thoughtful, and even breathing in and out</p> <p>New York Times hacked by Chinese government, Paul Krugman's economic policies stolen</p> <p>White House: when President shoots skeet, he donates the meat to food banks that feed the middle class</p> <p>To prove he is serious, Obama eliminates armed guard protection for President, Vice-President, and their families; establishes Gun-Free Zones around them instead</p><a href="/peoples-blog/flyboys-obama-and-bush-t10625.html"><img src="http://tpc.pc2.netdna-cdn.com/ima ...[66158 bytes skipped]... | ||
http://c5.zedo.com/jsc/c5/fo.js | HTTP/1.1 302 Moved Temporarily Connection: close Date: Mon, 16 Mar 2015 02:13:12 GMT Location: http://z1.zedo.com/jsc/c5/fo.js Server: AkamaiGHost Content-Length: 0 | clean |
http://z1.zedo.com/jsc/c5/fo.js | 200 OK Content-Length: 9550 Content-Type: application/x-javascript | clean |
http://ap.lijit.com///www/delivery/fpi.js?z=216308&u=redsquare&width=300&height=250/ | 200 OK Content-Length: 5297 Content-Type: text/javascript | clean |
http://tpc.pc2.netdna-cdn.com/Scripts/KMTClinks.js | 200 OK Content-Length: 656 Content-Type: application/javascript | clean |
https://cdn.nmcdn.us/js/connectV3.js | 200 OK Content-Length: 6288 Content-Type: application/x-javascript | clean |
http://tpc.pc2.netdna-cdn.com/RandomFacts_160.js | 200 OK Content-Length: 9169 Content-Type: application/javascript | clean |
http://ap.lijit.com///www/delivery/fpi.js?z=216309&u=redsquare&width=300&height=250/ | 200 OK Content-Length: 5297 Content-Type: text/javascript | clean |
http://ap.lijit.com///www/delivery/fpi.js?z=216312&u=redsquare&width=160&height=600/ | 200 OK Content-Length: 5297 Content-Type: text/javascript | clean |
http://ap.lijit.com///www/delivery/fpi.js?z=216315&u=redsquare&width=160&height=600/ | 200 OK Content-Length: 5297 Content-Type: text/javascript | clean |
http://ap.lijit.com///www/delivery/fpi.js?z=216313&u=redsquare&width=160&height=600/ | 200 OK Content-Length: 5297 Content-Type: text/javascript | clean |
http://ap.lijit.com///www/delivery/fpi.js?z=216314&u=redsquare&width=160&height=600/ | 200 OK Content-Length: 5297 Content-Type: text/javascript | clean |
http://www.google-analytics.com/ga.js | 200 OK Content-Length: 40916 Content-Type: text/javascript | clean |
http://thepeoplescube.com/peoples-blog/what-sort-of-tyrant-uses-exclusive-cube-club-e-mail-server-services-t16046.html | 200 OK Content-Length: 116955 Content-Type: text/html | clean |
http://w.sharethis.com/button/buttons.js | 200 OK Content-Length: 146778 Content-Type: application/x-javascript | clean |
http://thepeoplescube.com/peoples-blog/ | 200 OK Content-Length: 211651 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: thepeoplescube.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=603
Connection: close
Date: Mon, 16 Mar 2015 02:13:11 GMT
Accept-Ranges: bytes
Server: Apache
Vary: Accept-Encoding
Content-Length: 122778
Content-Type: text/html
Expires: Mon, 16 Mar 2015 02:23:14 GMT
...122778 bytes of data.
GET / HTTP/1.1
Host: thepeoplescube.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=603
Connection: close
Date: Mon, 16 Mar 2015 02:13:11 GMT
Accept-Ranges: bytes
Server: Apache
Vary: Accept-Encoding
Content-Length: 122778
Content-Type: text/html
Expires: Mon, 16 Mar 2015 02:23:14 GMT
...122778 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: thepeoplescube.com
Referer: http://www.google.com/search?q=thepeoplescube.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: thepeoplescube.com
Referer: http://www.google.com/search?q=thepeoplescube.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=thepeoplescube.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://thepeoplescube.com/
Result: thepeoplescube.com is not infected or malware details are not published yet.
Result: thepeoplescube.com is not infected or malware details are not published yet.