Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: tprissy.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 05 Oct 2014 04:14:38 GMT
Server: Apache
Content-Type: text/html; charset=UTF-8
Link: <http://wp.me/ULEw>; rel=shortlink
X-Pingback: http://tprissy.com/xmlrpc.php
X-Powered-By: PHP/5.2.17
GET / HTTP/1.1
Host: tprissy.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 05 Oct 2014 04:14:38 GMT
Server: Apache
Content-Type: text/html; charset=UTF-8
Link: <http://wp.me/ULEw>; rel=shortlink
X-Pingback: http://tprissy.com/xmlrpc.php
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: tprissy.com
Referer: http://www.google.com/search?q=tprissy.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: tprissy.com
Referer: http://www.google.com/search?q=tprissy.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://www.tprissy.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 05 Oct 2014 04:14:37 GMT Location: http://tprissy.com/ Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Pingback: http://tprissy.com/xmlrpc.php X-Powered-By: PHP/5.2.17 | clean |
http://tprissy.com/ | 200 OK Content-Length: 35818 Content-Type: text/html | clean |
http://tprissy.com/wp-includes/js/jquery/jquery.js?ver=1.11.0 | 200 OK Content-Length: 96402 Content-Type: application/javascript | clean |
http://tprissy.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://www.google.com/friendconnect/script/friendconnect.js | 200 OK Content-Length: 89179 Content-Type: text/javascript | clean |
http://tprissy.com/wp-content/plugins/wp-spamfree/js/wpsf-js.php | 200 OK Content-Length: 1526 Content-Type: application/x-javascript | clean |
http://tprissy.com/wp-includes/js/jquery/ui/jquery.ui.core.min.js?ver=1.10.4 | 200 OK Content-Length: 4289 Content-Type: application/javascript | clean |
http://tprissy.com/wp-includes/js/jquery/ui/jquery.ui.widget.min.js?ver=1.10.4 | 200 OK Content-Length: 6521 Content-Type: application/javascript | clean |
http://tprissy.com/wp-includes/js/jquery/ui/jquery.ui.accordion.min.js?ver=1.10.4 | 200 OK Content-Length: 8366 Content-Type: application/javascript | clean |
http://tprissy.com/wp-content/themes/lorencia/js/script.js?ver=3.9.2 | 200 OK Content-Length: 4497 Content-Type: application/javascript | clean |
http://tprissy.com/wp-content/themes/lorencia/js/jquery.easing.1.3.js?ver=3.9.2 | 200 OK Content-Length: 8301 Content-Type: application/javascript | clean |
http://tprissy.com/wp-content/themes/lorencia/js/jquery.isotope.min.js?ver=3.9.2 | 200 OK Content-Length: 16045 Content-Type: application/javascript | clean |
http://tprissy.com/wp-content/themes/lorencia/js/flex-slider/jquery.flexslider-min.js?ver=3.9.2 | 200 OK Content-Length: 41110 Content-Type: application/javascript | clean |
http://tprissy.com/wp-content/themes/lorencia/js/prettyPhoto/js/jquery.prettyPhoto.js?ver=3.9.2 | 200 OK Content-Length: 35241 Content-Type: application/javascript | clean |
http://stats.wordpress.com/e-201440.js | 200 OK Content-Length: 824 Content-Type: application/x-javascript | clean |
http://www.tprissy.com/ http://tprissy.com/feed/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Sun, 05 Oct 2014 04:14:51 GMT Pragma: no-cache Location: http://tprissy.com/%20http:/tprissy.com/feed/ Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Pingback: http://tprissy.com/xmlrpc.php X-Powered-By: PHP/5.2.17 | clean |
http://tprissy.com/%20http:/tprissy.com/feed/ | 404 Not Found Content-Length: 920 Content-Type: text/xml | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=tprissy.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://tprissy.com/
Result: tprissy.com is not infected or malware details are not published yet.
Result: tprissy.com is not infected or malware details are not published yet.