Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: xytheory.com
Result:
HTTP/1.1 301 Moved Permanently
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Tue, 03 Sep 2013 02:34:03 GMT
Pragma: no-cache
Location: http://www.xytheory.com/
Server: Apache
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=e2b3b3e68df94f1510d0313cb6fd2beb; path=/
X-Pingback: http://www.xytheory.com/xmlrpc.php
...0 bytes of data.
GET / HTTP/1.1
Host: xytheory.com
Result:
HTTP/1.1 301 Moved Permanently
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Tue, 03 Sep 2013 02:34:03 GMT
Pragma: no-cache
Location: http://www.xytheory.com/
Server: Apache
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=e2b3b3e68df94f1510d0313cb6fd2beb; path=/
X-Pingback: http://www.xytheory.com/xmlrpc.php
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: xytheory.com
Referer: http://www.google.com/search?q=xytheory.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: xytheory.com
Referer: http://www.google.com/search?q=xytheory.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://xytheory.com/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Tue, 03 Sep 2013 02:34:03 GMT Pragma: no-cache Location: http://www.xytheory.com/ Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=e2b3b3e68df94f1510d0313cb6fd2beb; path=/ X-Pingback: http://www.xytheory.com/xmlrpc.php | clean |
http://www.xytheory.com/ | 200 OK Content-Length: 6748 Content-Type: text/html | clean |
http://www.xytheory.com/wp-includes/js/jquery/jquery.js?ver=1.7.2 | 200 OK Content-Length: 94861 Content-Type: application/javascript | clean |
http://www.xytheory.com/wp-content/plugins/marketpress/marketpress-includes/js/ajax-cart.js?ver=2.5.9 | 200 OK Content-Length: 1928 Content-Type: application/javascript | clean |
http://www.xytheory.com/wp-includes/js/comment-reply.js?ver=3.4.1 | 200 OK Content-Length: 786 Content-Type: application/javascript | clean |
http://xytheory.com/test404page.js | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Tue, 03 Sep 2013 02:34:07 GMT Pragma: no-cache Location: http://www.xytheory.com/test404page.js Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Last-Modified: Tue, 03 Sep 2013 02:34:07 GMT Set-Cookie: PHPSESSID=df14502b6ef91287a6a0614a0d85b87a; path=/ X-Pingback: http://www.xytheory.com/xmlrpc.php | clean |
http://www.xytheory.com/test404page.js | 404 Not Found Content-Length: 5439 Content-Type: text/html | clean |
http://www.xytheory.com/xy-store/ | 200 OK Content-Length: 9535 Content-Type: text/html | clean |
http://www.xytheory.com/attend-a-workshop/ | 200 OK Content-Length: 7628 Content-Type: text/html | clean |
http://www.xytheory.com/contact-the-author/ | 200 OK Content-Length: 7869 Content-Type: text/html | clean |
http://www.xytheory.com/online-workshops/ | 200 OK Content-Length: 8634 Content-Type: text/html | clean |
http://www.xytheory.com/become-an-affiliate/ | 200 OK Content-Length: 6024 Content-Type: text/html | clean |
http://www.xytheory.com/store/shopping-cart/ | 200 OK Content-Length: 5425 Content-Type: text/html | clean |
http://www.xytheory.com/wp-content/plugins/marketpress/marketpress-includes/js/store.js?ver=2.5.9 | 200 OK Content-Length: 1619 Content-Type: application/javascript | clean |
http://www.xytheory.com/store/products/ | 200 OK Content-Length: 8896 Content-Type: text/html | clean |
http://www.xytheory.com/store/products/xy-theory-book-i/ | 200 OK Content-Length: 7145 Content-Type: text/html | clean |
http://www.xytheory.com/wp-content/plugins/marketpress/marketpress-includes/lightbox/js/jquery.lumebox.min.js?ver=2.5.9 | 200 OK Content-Length: 12020 Content-Type: application/javascript | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=xytheory.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://xytheory.com/
Result: xytheory.com is not infected or malware details are not published yet.
Result: xytheory.com is not infected or malware details are not published yet.