Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=unidance.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://unidance.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: unidance.com
Result:
HTTP/1.1 301 Moved Permanently
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Tue, 26 Aug 2014 19:30:29 GMT
Pragma: no-cache
Location: http://www.unidance.com/
Server: nginx/1.4.4
Content-Length: 1554
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=ajkh3p3mkibuo82ghrv4k6lrk7; path=/
X-Pingback: http://www.unidance.com/xmlrpc.php
X-Powered-By: PHP/5.3.27-pl0-gentoo
...1554 bytes of data.
GET / HTTP/1.1
Host: unidance.com
Result:
HTTP/1.1 301 Moved Permanently
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Tue, 26 Aug 2014 19:30:29 GMT
Pragma: no-cache
Location: http://www.unidance.com/
Server: nginx/1.4.4
Content-Length: 1554
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=ajkh3p3mkibuo82ghrv4k6lrk7; path=/
X-Pingback: http://www.unidance.com/xmlrpc.php
X-Powered-By: PHP/5.3.27-pl0-gentoo
...1554 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: unidance.com
Referer: http://www.google.com/search?q=unidance.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: unidance.com
Referer: http://www.google.com/search?q=unidance.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://unidance.com/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Tue, 26 Aug 2014 19:30:29 GMT Pragma: no-cache Location: http://www.unidance.com/ Server: nginx/1.4.4 Content-Length: 1554 Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=ajkh3p3mkibuo82ghrv4k6lrk7; path=/ X-Pingback: http://www.unidance.com/xmlrpc.php X-Powered-By: PHP/5.3.27-pl0-gentoo | clean |
http://www.unidance.com/ | 200 OK Content-Length: 19749 Content-Type: text/html | clean |
http://www.unidance.com/wp-content/plugins/proplayer/js/swfobject.js | 200 OK Content-Length: 10250 Content-Type: application/x-javascript | clean |
http://www.unidance.com/wp-includes/js/jquery/jquery.js?ver=1.11.0 | HTTP/1.1 302 Found Connection: close Date: Tue, 26 Aug 2014 19:30:32 GMT Location: http://myfeya.com?ver=1.11.0 Server: nginx/1.4.4 Content-Length: 381 Content-Type: text/html; charset=iso-8859-1 | clean |
http://myfeya.com?ver=1.11.0/ | 500 Can't connect to myfeya.com:80 (Bad hostname) Content-Length: 152 Content-Type: text/plain | clean |
http://myfeya.com?ver=1.11.0/test404page.js | 500 Can't connect to myfeya.com:80 (Bad hostname) Content-Length: 152 Content-Type: text/plain | clean |
http://www.unidance.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | HTTP/1.1 302 Found Connection: close Date: Tue, 26 Aug 2014 19:30:32 GMT Location: http://myfeya.com?ver=1.2.1 Server: nginx/1.4.4 Content-Length: 380 Content-Type: text/html; charset=iso-8859-1 | clean |
http://myfeya.com?ver=1.2.1/ | 500 Can't connect to myfeya.com:80 (Bad hostname) Content-Length: 152 Content-Type: text/plain | clean |
http://www.unidance.com/wp-content/plugins/wwa-advanced-wp-security/js/anti-spam.js?ver=3.9 | 200 OK Content-Length: 674 Content-Type: application/x-javascript | clean |
http://www.unidance.com/wp-content/plugins/vslider/js/vslider.js?ver=3.9 | 200 OK Content-Length: 14825 Content-Type: application/x-javascript | clean |
http://www.unidance.com/wp-includes/js/comment-reply.min.js?ver=3.9 | HTTP/1.1 302 Found Connection: close Date: Tue, 26 Aug 2014 19:30:33 GMT Location: http://myfeya.com?ver=3.9 Server: nginx/1.4.4 Content-Length: 378 Content-Type: text/html; charset=iso-8859-1 | clean |
http://myfeya.com?ver=3.9/ | 500 Can't connect to myfeya.com:80 (Bad hostname) Content-Length: 152 Content-Type: text/plain | clean |
http://www.unidance.com/wp-content/plugins/contact-form-7/includes/js/jquery.form.min.js?ver=3.50.0-2014.02.05 | 200 OK Content-Length: 16305 Content-Type: application/x-javascript | clean |
http://www.unidance.com/wp-content/plugins/contact-form-7/includes/js/scripts.js?ver=3.8 | 200 OK Content-Length: 9630 Content-Type: application/x-javascript | clean |
http://www.unidance.com/wp-content/plugins/lightbox-plus/js/jquery.colorbox.1.3.32.js?ver=1.3.32 | 200 OK Content-Length: 26029 Content-Type: application/x-javascript | clean |