Scanned pages/files
Request | Server response | Status |
http://valvola.org/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 25 Jul 2014 09:08:03 GMT Location: http://www.valvola.org/ Server: Apache Content-Length: 231 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.valvola.org/ | 200 OK Content-Length: 54850 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.nonrassegnatastampa.it <!-- <link rel="shortcut icon" href="/favicon.ico" type="image/x-icon" /> --> <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"> <html xmlns="http://www.w3.org/1999/xhtml"> <head profile="http://gmpg.org/xfn/11"> <meta http-equiv="Content-Type" content="text/html; charset=UTF-8" /> <meta name="verify-v1" content="5pTZdgW5/YCl ...[4249 bytes skipped]... | ||
http://www.valvola.org/wp/wp-includes/js/jquery/jquery.js?ver=1.10.2 | 200 OK Content-Length: 93085 Content-Type: application/javascript | clean |
http://www.valvola.org/wp/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://www.valvola.org/wp/wp-content/plugins/wordpress-comment-images/js/comment-images.js?ver=1.4 | 200 OK Content-Length: 250 Content-Type: application/javascript | clean |
http://www.valvola.org/wp/wp-content/plugins/anarchy_media/anarchy_media_player.php?anarchy.js | 200 OK Content-Length: 24988 Content-Type: text/javascript | clean |
http://codice.shinystat.com/cgi-bin/getcod.cgi?USER=valvolog | 200 OK Content-Length: 2859 Content-Type: application/x-javascript | clean |
http://www.google-analytics.com/urchin.js | 200 OK Content-Length: 22678 Content-Type: text/javascript | clean |
http://www.valvola.org/wp/wp-content/plugins/contact-form-7/includes/js/jquery.form.min.js?ver=3.50.0-2014.02.05 | 200 OK Content-Length: 16305 Content-Type: application/javascript | clean |
http://www.valvola.org/wp/wp-content/plugins/contact-form-7/includes/js/scripts.js?ver=3.8 | 200 OK Content-Length: 9630 Content-Type: application/javascript | clean |
http://valvola.org/wp/wp-content/uploads/Fatto.jpg | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 25 Jul 2014 09:08:06 GMT Location: http://www.valvola.org/wp/wp-content/uploads/Fatto.jpg Server: Apache Content-Length: 262 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.valvola.org/wp/wp-content/uploads/fatto.jpg | 404 Not Found Content-Length: 229 Content-Type: text/html | clean |
http://www.valvola.org/test404page.js | 404 Not Found Content-Length: 36346 Content-Type: text/html | clean |
http://www.valvola.org/contattami/ | 200 OK Content-Length: 43912 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.nonrassegnatastampa.it <!-- <link rel="shortcut icon" href="/favicon.ico" type="image/x-icon" /> --> <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"> <html xmlns="http://www.w3.org/1999/xhtml"> <head profile="http://gmpg.org/xfn/11"> <meta http-equiv="Content-Type" content="text/html; charset=UTF-8" /> <meta name="verify-v1" content="5pTZdgW5/YCl ...[4253 bytes skipped]... | ||
http://www.valvola.org/wp/wp-content/plugins/ckeditor-for-wordpress/ckeditor/ckeditor.js?t=CBDD&ver=3.8.3 | 200 OK Content-Length: 300922 Content-Type: application/javascript | clean |
http://www.valvola.org/wp/wp-content/plugins/ckeditor-for-wordpress/includes/ckeditor.utils.js?ver=3.8.3 | 200 OK Content-Length: 16591 Content-Type: application/javascript | clean |
http://static.ak.fbcdn.net/connect.php/js/FB.Share | 200 OK Content-Length: 170936 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: valvola.org
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Fri, 25 Jul 2014 09:08:03 GMT
Location: http://www.valvola.org/
Server: Apache
Content-Length: 231
Content-Type: text/html; charset=iso-8859-1
...231 bytes of data.
GET / HTTP/1.1
Host: valvola.org
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Fri, 25 Jul 2014 09:08:03 GMT
Location: http://www.valvola.org/
Server: Apache
Content-Length: 231
Content-Type: text/html; charset=iso-8859-1
...231 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: valvola.org
Referer: http://www.google.com/search?q=valvola.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: valvola.org
Referer: http://www.google.com/search?q=valvola.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=valvola.org
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://valvola.org/
Result: valvola.org is not infected or malware details are not published yet.
Result: valvola.org is not infected or malware details are not published yet.