Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=tsalocks.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: tsalocks.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=3600
Connection: close
Date: Mon, 08 Sep 2014 23:25:30 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Expires: Tue, 09 Sep 2014 00:25:30 GMT
Link: <http://wp.me/49Txf>; rel=shortlink
X-Pingback: http://tsalocks.com/xmlrpc.php
GET / HTTP/1.1
Host: tsalocks.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=3600
Connection: close
Date: Mon, 08 Sep 2014 23:25:30 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Expires: Tue, 09 Sep 2014 00:25:30 GMT
Link: <http://wp.me/49Txf>; rel=shortlink
X-Pingback: http://tsalocks.com/xmlrpc.php
Second query (visit from search engine):
GET / HTTP/1.1
Host: tsalocks.com
Referer: http://www.google.com/search?q=tsalocks.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: tsalocks.com
Referer: http://www.google.com/search?q=tsalocks.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://tsalocks.com/ | 200 OK Content-Length: 33037 Content-Type: text/html | clean |
http://tsalocks.com/wp-includes/js/jquery/jquery.js?ver=1.10.2 | 200 OK Content-Length: 93085 Content-Type: application/x-javascript | clean |
http://tsalocks.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/x-javascript | clean |
http://tsalocks.com/wp-content/themes/gdminimal/cyberchimps/lib/js/jquery.slimbox.js?ver=1 | 200 OK Content-Length: 4428 Content-Type: application/x-javascript | clean |
http://tsalocks.com/wp-content/themes/gdminimal/cyberchimps/lib/js/jquery.jcarousel.min.js?ver=1 | 200 OK Content-Length: 15666 Content-Type: application/x-javascript | clean |
http://tsalocks.com/wp-content/themes/gdminimal/cyberchimps/lib/js/custom.js?ver=1 | 200 OK Content-Length: 1253 Content-Type: application/x-javascript | clean |
http://tsalocks.com/wp-content/themes/gdminimal/cyberchimps/lib/js/jquery.mobile.custom.min.js?ver=3.7.4 | 200 OK Content-Length: 6194 Content-Type: application/x-javascript | clean |
http://tsalocks.com/wp-content/themes/gdminimal/cyberchimps/lib/js/swipe-call.js?ver=3.7.4 | 200 OK Content-Length: 445 Content-Type: application/x-javascript | clean |
http://tsalocks.com/wp-content/themes/gdminimal/cyberchimps/lib/js/video.js?ver=3.7.4 | 200 OK Content-Length: 821 Content-Type: application/x-javascript | clean |
http://tsalocks.com/wp-content/themes/gdminimal/elements/lib/js/elements.js?ver=3.7.4 | 200 OK Content-Length: 1133 Content-Type: application/x-javascript | clean |
http://www.statcounter.com/counter/counter_xhtml.js | 200 OK Content-Length: 15530 Content-Type: application/x-javascript | clean |
http://s0.wp.com/wp-content/js/devicepx-jetpack.js?ver=201437 | 200 OK Content-Length: 9301 Content-Type: application/x-javascript | clean |
http://s.gravatar.com/js/gprofiles.js?ver=2014Sepaa | 200 OK Content-Length: 21442 Content-Type: application/x-javascript | clean |
http://tsalocks.com/wp-content/plugins/jetpack/modules/wpgroho.js?ver=3.7.4 | 200 OK Content-Length: 930 Content-Type: application/x-javascript | clean |
http://tsalocks.com/wp-content/themes/gdminimal/cyberchimps/lib/bootstrap/js/bootstrap.min.js?ver=2.0.4 | 200 OK Content-Length: 31601 Content-Type: application/x-javascript | clean |