Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=vreugdenhilresearch.nl
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://vreugdenhilresearch.nl/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: vreugdenhilresearch.nl
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 01 Oct 2014 17:19:28 GMT
Server: Apache/2
Vary: Accept-Encoding,User-Agent
Content-Type: text/html; charset=UTF-8
Set-Cookie: slimstat_tracking_code=31c343950f7ace361202cee568f78f67; expires=Wed, 01-Oct-2014 17:49:29 GMT; path=/
X-Pingback: http://vreugdenhilresearch.nl/xmlrpc.php
X-Powered-By: PHP/5.2.17
GET / HTTP/1.1
Host: vreugdenhilresearch.nl
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 01 Oct 2014 17:19:28 GMT
Server: Apache/2
Vary: Accept-Encoding,User-Agent
Content-Type: text/html; charset=UTF-8
Set-Cookie: slimstat_tracking_code=31c343950f7ace361202cee568f78f67; expires=Wed, 01-Oct-2014 17:49:29 GMT; path=/
X-Pingback: http://vreugdenhilresearch.nl/xmlrpc.php
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: vreugdenhilresearch.nl
Referer: http://www.google.com/search?q=vreugdenhilresearch.nl
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: vreugdenhilresearch.nl
Referer: http://www.google.com/search?q=vreugdenhilresearch.nl
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://vreugdenhilresearch.nl/ | 200 OK Content-Length: 25629 Content-Type: text/html | clean |
http://vreugdenhilresearch.nl/wp-includes/js/tw-sack.js?ver=1.6.1 | 200 OK Content-Length: 3619 Content-Type: application/javascript | clean |
http://vreugdenhilresearch.nl/about/ | 200 OK Content-Length: 7282 Content-Type: text/html | clean |
http://vreugdenhilresearch.nl/fuzzing/ | 200 OK Content-Length: 7484 Content-Type: text/html | clean |
http://vreugdenhilresearch.nl/published/ | 200 OK Content-Length: 10310 Content-Type: text/html | clean |
http://vreugdenhilresearch.nl/upcomming/ | 200 OK Content-Length: 7213 Content-Type: text/html | clean |
http://vreugdenhilresearch.nl/feed/ | 200 OK Content-Length: 10010 Content-Type: text/xml | clean |
http://vreugdenhilresearch.nl/test404page.js | 404 Not Found Content-Length: 6356 Content-Type: text/html | clean |
http://vreugdenhilresearch.nl/2011/06/ | 200 OK Content-Length: 6752 Content-Type: text/html | clean |
http://vreugdenhilresearch.nl/windbg-scripting-finding-rop-gadgets/ | 200 OK Content-Length: 14026 Content-Type: text/html | clean |
http://vreugdenhilresearch.nl/topics/research/ | 200 OK Content-Length: 7536 Content-Type: text/html | clean |
http://vreugdenhilresearch.nl/poc-for-ms10-071/ | 200 OK Content-Length: 9903 Content-Type: text/html | clean |
http://vreugdenhilresearch.nl/pocs/ms10-071.txt | 200 OK Content-Length: 17807 Content-Type: text/plain | clean |
http://vreugdenhilresearch.nl/pocs/heapLib.js | 404 Not Found Content-Length: 6356 Content-Type: text/html | clean |
http://vreugdenhilresearch.nl/2011/04/ | 200 OK Content-Length: 6693 Content-Type: text/html | clean |