Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: unlockmyiphone.com.au
Result:
HTTP/1.1 500 timeout
Content-Type: text/plain
GET / HTTP/1.1
Host: unlockmyiphone.com.au
Result:
HTTP/1.1 500 timeout
Content-Type: text/plain
Second query (visit from search engine):
GET / HTTP/1.1
Host: unlockmyiphone.com.au
Referer: http://www.google.com/search?q=unlockmyiphone.com.au
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: unlockmyiphone.com.au
Referer: http://www.google.com/search?q=unlockmyiphone.com.au
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://unlockmyiphone.com.au/ | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://unlockmyiphone.com.au/test404page.js | 404 Not Found Content-Length: 52456 Content-Type: text/html | clean |
http://unlockmyiphone.com.au/wp-includes/js/jquery/jquery.js?ver=1.11.1 | 200 OK Content-Length: 95807 Content-Type: application/javascript | clean |
http://unlockmyiphone.com.au/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://unlockmyiphone.com.au/wp-content/themes/dt-nimble/js/modernizr.js?ver=4.0.8 | 200 OK Content-Length: 11107 Content-Type: application/javascript | clean |
http://twitter.com/javascripts/blogger.js?ver=4.0.8 | HTTP/1.1 301 Moved Permanently Date: Sat, 26 Dec 2015 19:27:50 GMT Location: https://twitter.com/javascripts/blogger.js?ver=4.0.8 Server: tsa_b Content-Length: 0 Set-Cookie: ua=m2; Expires=Sat, 26 Dec 2015 20:27:50 UTC; Path=/; Domain=.twitter.com; Secure; HTTPOnly Set-Cookie: guest_id=v1%3A145115807018144912; Domain=.twitter.com; Path=/; Expires=Mon, 25-Dec-2017 19:27:50 UTC X-Connection-Hash: f2b05833e764a666db3df7f614c98d2f X-Response-Time: 3 | clean |
https://twitter.com/javascripts/blogger.js?ver=4.0.8 | HTTP/1.1 302 Found Date: Sat, 26 Dec 2015 19:27:50 GMT Location: https://mobile.twitter.com/javascripts/blogger.js?ver=4.0.8 Server: tsa_b Content-Length: 0 Set-Cookie: ua=m2; Expires=Sat, 26 Dec 2015 20:27:50 UTC; Path=/; Domain=.twitter.com; Secure; HTTPOnly Set-Cookie: guest_id=v1%3A145115807085048706; Domain=.twitter.com; Path=/; Expires=Mon, 25-Dec-2017 19:27:50 UTC Strict-Transport-Security: max-age=631138519 X-Connection-Hash: be17786b6b0092bf94e220012b87f918 X-Response-Time: 5 | clean |
https://mobile.twitter.com/javascripts/blogger.js?ver=4.0.8 | 404 Not Found Content-Length: 3975 Content-Type: text/html | clean |
https://ma.twimg.com/twitter-mobile/812fadffe5caa69679e6eb873aefc9e82dd9149f/assets/base.js | 200 OK Content-Length: 7452 Content-Type: application/javascript | clean |
http://twitter.com/ | HTTP/1.1 301 Moved Permanently Date: Sat, 26 Dec 2015 19:27:52 GMT Location: https://twitter.com/ Server: tsa_b Content-Length: 0 Set-Cookie: ua=m2; Expires=Sat, 26 Dec 2015 20:27:52 UTC; Path=/; Domain=.twitter.com; Secure; HTTPOnly Set-Cookie: guest_id=v1%3A145115807218783945; Domain=.twitter.com; Path=/; Expires=Mon, 25-Dec-2017 19:27:52 UTC X-Connection-Hash: 1062c9582daee5efe02fb61014573254 X-Response-Time: 3 | clean |
https://twitter.com/ | HTTP/1.1 302 Found Date: Sat, 26 Dec 2015 19:27:52 GMT Location: https://mobile.twitter.com/ Server: tsa_b Content-Length: 0 Set-Cookie: ua=m2; Expires=Sat, 26 Dec 2015 20:27:52 UTC; Path=/; Domain=.twitter.com; Secure; HTTPOnly Set-Cookie: guest_id=v1%3A145115807284804719; Domain=.twitter.com; Path=/; Expires=Mon, 25-Dec-2017 19:27:52 UTC Strict-Transport-Security: max-age=631138519 X-Connection-Hash: 0cdcc9d1c858e7ecb59ef8590a95a4d6 X-Response-Time: 3 | clean |
https://mobile.twitter.com/ | HTTP/1.1 302 Found Cache-Control: no-cache, no-store, must-revalidate, pre-check=0, post-check=0 Date: Sat, 26 Dec 2015 19:27:53 GMT Pragma: no-cache Location: https://mobile.twitter.com/i/guest Server: tsa_b Vary: Accept-Encoding Content-Language: en Content-Length: 0 Expires: Tue, 31 Mar 1981 05:00:00 GMT Last-Modified: Sat, 26 Dec 2015 19:27:53 GMT Content-Security-Policy: default-src 'self'; connect-src 'self'; font-src 'self' data:; frame-src https://*.twitter.com https://*.twimg.com twitter: https://www.google.com; img-src https://twitter.com https://*.twitter.com https://*.twimg.com https://maps.google.com https://www.google-analytics.com https://stats.g.doubleclick.net https://www.google.com data:; media-src https://*.twitter.com https://*.twimg.com https://*.cdn.vine.co; object-src 'self'; script-src 'unsafe-inline' 'unsafe-eval' https://*.twitter.com https://*.twimg.com https://www.google.com https://www.google-analytics.com https://stats.g.doubleclick.net; style-src 'unsafe-inline' https://*.twitter.com https://*.twimg.com; report-uri https://twitter.com/i/csp_report?a=O5SWEZTPOJQWY3A%3D&ro=false; Set-Cookie: _mobile_sess=BAh7ByIKZmxhc2hJQzonQWN0aW9uQ29udHJvbGxlcjo6Rmxhc2g6OkZsYXNoSGFzaHsABjoKQHVzZWR7ADoQX2NzcmZfdG9rZW4iJTJmNmQ2ZWQwNDEwOTEyNzViMDlkOWYxMzZhZTVlNmVk--87dc98480ad1c3295b3771f7af93ebd3932b4f0c; Expires=Wed, 24 Feb 2016 19:27:53 UTC; Path=/; Domain=.twitter.com; Secure; HTTPOnly Set-Cookie: _twitter_sess=BAh7CCIKZmxhc2hJQzonQWN0aW9uQ29udHJvbGxlcjo6Rmxhc2g6OkZsYXNo%250ASGFzaHsABjoKQHVzZWR7ADoPY3JlYXRlZF9hdGwrCL%252Fwwt9RAToHaWQiJTVl%250AZGQ5Y2QyMDY3NmQwZjI3YTBjY2U0MGViZjU4ZGNj--c1aac7fda1b07e4a9bf93569130ef58023b23826; Path=/; Domain=.twitter.com; Secure; HTTPOnly Set-Cookie: d=32; Expires=Sun, 25 Dec 2016 19:27:53 UTC; Path=/; Domain=.twitter.com; Secure Set-Cookie: mobile_metrics_token=145115807386190353; Expires=Mon, 25 Dec 2017 19:27:53 UTC; Path=/; Domain=.twitter.com; Secure; HTTPOnly Set-Cookie: ua=m2; Expires=Sat, 26 Dec 2015 20:27:53 UTC; Path=/; Domain=.twitter.com; Secure; HTTPOnly Set-Cookie: zrca=5; Expires=Mon, 25 Jan 2016 19:27:53 UTC; Path=/; Domain=.twitter.com; Secure; HTTPOnly Set-Cookie: guest_id=v1%3A145115807352979726; Domain=.twitter.com; Path=/; Expires=Mon, 25-Dec-2017 19:27:53 UTC Strict-Transport-Security: max-age=631138519 X-Connection-Hash: f34621bfedd8d6874500fcaa71d05440 X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-Response-Time: 8 X-Transaction: e3dff386dbe86c7b X-Twitter-Response-Tags: BouncerCompliant X-Xss-Protection: 1; mode=block | clean |
https://mobile.twitter.com/i/guest | 200 OK Content-Length: 4692 Content-Type: text/html | clean |
https://ma.twimg.com/twitter-mobile/812fadffe5caa69679e6eb873aefc9e82dd9149f/javascripts/framebust.js | 200 OK Content-Length: 238 Content-Type: application/javascript | clean |
http://twitter.com/session/new | HTTP/1.1 301 Moved Permanently Date: Sat, 26 Dec 2015 19:27:54 GMT Location: https://twitter.com/session/new Server: tsa_b Content-Length: 0 Set-Cookie: ua=m2; Expires=Sat, 26 Dec 2015 20:27:54 UTC; Path=/; Domain=.twitter.com; Secure; HTTPOnly Set-Cookie: guest_id=v1%3A145115807485007968; Domain=.twitter.com; Path=/; Expires=Mon, 25-Dec-2017 19:27:54 UTC X-Connection-Hash: 06206b7886f868679a47f20ff821c4c2 X-Response-Time: 3 | clean |
https://twitter.com/session/new | HTTP/1.1 302 Found Date: Sat, 26 Dec 2015 19:27:55 GMT Location: https://mobile.twitter.com/session/new Server: tsa_b Content-Length: 0 Set-Cookie: ua=m2; Expires=Sat, 26 Dec 2015 20:27:55 UTC; Path=/; Domain=.twitter.com; Secure; HTTPOnly Set-Cookie: guest_id=v1%3A145115807551590393; Domain=.twitter.com; Path=/; Expires=Mon, 25-Dec-2017 19:27:55 UTC Strict-Transport-Security: max-age=631138519 X-Connection-Hash: 12fa821c22788a4205ed4439a7b071b1 X-Response-Time: 3 | clean |
https://mobile.twitter.com/session/new | 200 OK Content-Length: 4245 Content-Type: text/html | clean |
https://mobile.twitter.com/signup | 200 OK Content-Length: 4485 Content-Type: text/html | clean |
https://ma.twimg.com/twitter-mobile/812fadffe5caa69679e6eb873aefc9e82dd9149f/assets/m2_signup.js | 200 OK Content-Length: 7700 Content-Type: application/javascript | clean |
https://mobile.twitter.com/i/js_inst?input_id=ui_metrics | 200 OK Content-Length: 10487 Content-Type: text/javascript | clean |
https://mobile.twitter.com/tos?lang=en | 200 OK Content-Length: 33849 Content-Type: text/html | clean |
https://g.twimg.com/js/a2abc3c/js_vfYxksVW063mUalw283vtuXLHCZXQIf9HE4YvMjpsbw.js | 200 OK Content-Length: 198505 Content-Type: application/javascript | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=unlockmyiphone.com.au
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://unlockmyiphone.com.au/
Result: unlockmyiphone.com.au is not infected or malware details are not published yet.
Result: unlockmyiphone.com.au is not infected or malware details are not published yet.