Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=wordpressplaza.com
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://wordpressplaza.com/ | 200 OK Content-Length: 272 Content-Type: text/html | clean |
http://wordpressplaza.com/test404page.js | HTTP/1.1 302 Found Date: Thu, 10 Apr 2014 14:04:18 GMT Location: http://pagesinxt.com/?dn=wordpressplaza.com&flrdr=yes&nxte=js Server: Apache/2.2.3 (Red Hat) Vary: Accept-Encoding,User-Agent Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Cnection: close X-Powered-By: PHP/5.3.21 | clean |
http://pagesinxt.com/?dn=wordpressplaza.com&flrdr=yes&nxte=js | HTTP/1.1 302 Found Date: Thu, 10 Apr 2014 14:04:18 GMT Location: http://mypageresults.com/?dn=wordpressplaza.com&flrdr=yes&nxte=js Server: Apache/2.2.3 (Red Hat) Vary: Accept-Encoding Content-Length: 336 Content-Type: text/html; charset=iso-8859-1 X-Cnection: close | clean |
http://mypageresults.com/?dn=wordpressplaza.com&flrdr=yes&nxte=js | 200 OK Content-Length: 2549 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: wordpressplaza.com <!--
top.location="http://mypageresults.com/?dn=wordpressplaza.com&fp=6SZQ4DD27mG9rxdhrs6fZSCu%2FhKC%2FZd%2BoLzsjJCevLTcB3HT8pP4PQ0zUhci%2B1sudYbe7pObNJHETuCSccaFmw%3D%3D&prvtof=5CidwUpPPtHGQK3Ny2hdjuKTc4IKm%2FKl1E7BsNsA5OY%3D&poru=nPjtiQ%2FGOS2WQj40hI0cI68vD2PiIZ46UfuWnMRXAHqnFQfjzglOZRqwyNDyqXZoakRj6JQWWe2r3P9U%2F%2BvFkWy%2BdVzfNVUBqvxoW99so5Y%3D&cifr=1&flrdr=yes&nxte=js"; /* --> <script type="text/javascript"> <!-- dimensionUpdated = 0; ...[2404 bytes skipped]... | ||
http://mypageresults.com/?dn=wordpressplaza.com&fp=6SZQ4DD27mG9rxdhrs6fZSCu%2FhKC%2FZd%2BoLzsjJCevLTcB3HT8pP4PQ0zUhci%2B1sudYbe7pObNJHETuCSccaFmw%3D%3D&prvtof=Ok%2BBy0iM9Tk1PfLCgd%2F0KZnKQeaGifCTQuNmDIosP%2Bc%3D&poru=NZrLZfUsMDA22x%2FGoARxbkwR3Rw%2BMDXNbIu5RSYbZUKwuBtD52Xr8E7g0eK05Elhx%2FO9A82g1hb%2FECEB%2BGUBH55lXCItwDd9fvve1RaD0Ck%3D&flrdr=yes&nxte=js | 200 OK Content-Length: 271 Content-Type: text/html | clean |
http://mypageresults.com/test404page.js | HTTP/1.1 302 Found Date: Thu, 10 Apr 2014 14:04:20 GMT Location: http://pagesinxt.com/?dn=mypageresults.com&flrdr=yes&nxte=js Server: Apache/2.2.3 (CentOS) Vary: Accept-Encoding,User-Agent Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Cnection: close X-Powered-By: PHP/5.3.21 | clean |
http://pagesinxt.com/?dn=mypageresults.com&flrdr=yes&nxte=js | HTTP/1.1 302 Found Date: Thu, 10 Apr 2014 14:04:20 GMT Location: http://mypageresults.com/?dn=mypageresults.com&flrdr=yes&nxte=js Server: Apache/2.2.3 (CentOS) Vary: Accept-Encoding Content-Length: 334 Content-Type: text/html; charset=iso-8859-1 X-Cnection: close | clean |
http://mypageresults.com/?dn=mypageresults.com&flrdr=yes&nxte=js | 200 OK Content-Length: 2531 Content-Type: text/html | clean |
http://mypageresults.com/?dn=mypageresults.com&fp=h9lxdmNEm3screZyXjnETIdjA4dXrWq%2FQtUt7jmoS5VP4%2B4GRqUJ7AMmamfxoxEm8H3NQrXivTDjMZdb%2FmrKiA%3D%3D&prvtof=R7DZEA2B1L4Wi%2FxZtsOMKMStRikhC30GmFAuNiE0Caw%3D&poru=YVaqHSAM7SS4CO%2FGyjSeNwSHLKbcgA91FqyZ%2FJxCC1S7nrvlOv8P3nHRKayEAiiALwEWK4yFN9sfymIaAExb78hmtzdALu3xuu4V5izsMxw%3D&flrdr=yes&nxte=js | 200 OK Content-Length: 272 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: wordpressplaza.com
Result:
HTTP/1.1 200 OK
Date: Thu, 10 Apr 2014 14:04:18 GMT
Server: Apache/2.2.3 (CentOS)
Vary: Accept-Encoding,User-Agent
Content-Length: 272
Content-Type: text/html; charset=UTF-8
Set-Cookie: vsid=914vr1446842580516374; expires=Tue, 09-Apr-2019 14:04:18 GMT; path=/; domain=wordpressplaza.com; httponly
X-Cnection: close
X-Powered-By: PHP/5.3.21
...272 bytes of data.
GET / HTTP/1.1
Host: wordpressplaza.com
Result:
HTTP/1.1 200 OK
Date: Thu, 10 Apr 2014 14:04:18 GMT
Server: Apache/2.2.3 (CentOS)
Vary: Accept-Encoding,User-Agent
Content-Length: 272
Content-Type: text/html; charset=UTF-8
Set-Cookie: vsid=914vr1446842580516374; expires=Tue, 09-Apr-2019 14:04:18 GMT; path=/; domain=wordpressplaza.com; httponly
X-Cnection: close
X-Powered-By: PHP/5.3.21
...272 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: wordpressplaza.com
Referer: http://www.google.com/search?q=wordpressplaza.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: wordpressplaza.com
Referer: http://www.google.com/search?q=wordpressplaza.com
Result:
The result is similar to the first query. There are no suspicious redirects found.