Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=yiwunovelty.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://yiwunovelty.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: yiwunovelty.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Sat, 04 Oct 2014 19:10:32 GMT
Location: http://www.yiwunovelty.com/
Server: Apache
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Set-Cookie: qtrans_cookie_test=qTranslate+Cookie+Test; path=/; domain=yiwunovelty.com
Set-Cookie: wordpress_3b2bce3edf2ab71dbe32547833674db7=%7C1413659433%7C0bfa46903fffba31e21ab22ae1e0731b; expires=Sun, 19-Oct-2014 07:10:33 GMT; path=/wp-content/plugins; httponly
Set-Cookie: wordpress_3b2bce3edf2ab71dbe32547833674db7=%7C1413659433%7C0bfa46903fffba31e21ab22ae1e0731b; expires=Sun, 19-Oct-2014 07:10:33 GMT; path=/wp-admin; httponly
Set-Cookie: wordpress_logged_in_3b2bce3edf2ab71dbe32547833674db7=%7C1413659433%7Cea534c33dd6d805e9961dd804b68e3cd; expires=Sun, 19-Oct-2014 07:10:33 GMT; path=/; httponly
X-Pingback: http://www.yiwunovelty.com/xmlrpc.php
...0 bytes of data.
GET / HTTP/1.1
Host: yiwunovelty.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Sat, 04 Oct 2014 19:10:32 GMT
Location: http://www.yiwunovelty.com/
Server: Apache
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Set-Cookie: qtrans_cookie_test=qTranslate+Cookie+Test; path=/; domain=yiwunovelty.com
Set-Cookie: wordpress_3b2bce3edf2ab71dbe32547833674db7=%7C1413659433%7C0bfa46903fffba31e21ab22ae1e0731b; expires=Sun, 19-Oct-2014 07:10:33 GMT; path=/wp-content/plugins; httponly
Set-Cookie: wordpress_3b2bce3edf2ab71dbe32547833674db7=%7C1413659433%7C0bfa46903fffba31e21ab22ae1e0731b; expires=Sun, 19-Oct-2014 07:10:33 GMT; path=/wp-admin; httponly
Set-Cookie: wordpress_logged_in_3b2bce3edf2ab71dbe32547833674db7=%7C1413659433%7Cea534c33dd6d805e9961dd804b68e3cd; expires=Sun, 19-Oct-2014 07:10:33 GMT; path=/; httponly
X-Pingback: http://www.yiwunovelty.com/xmlrpc.php
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: yiwunovelty.com
Referer: http://www.google.com/search?q=yiwunovelty.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: yiwunovelty.com
Referer: http://www.google.com/search?q=yiwunovelty.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://yiwunovelty.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Sat, 04 Oct 2014 19:10:32 GMT Location: http://www.yiwunovelty.com/ Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Set-Cookie: qtrans_cookie_test=qTranslate+Cookie+Test; path=/; domain=yiwunovelty.com Set-Cookie: wordpress_3b2bce3edf2ab71dbe32547833674db7=%7C1413659433%7C0bfa46903fffba31e21ab22ae1e0731b; expires=Sun, 19-Oct-2014 07:10:33 GMT; path=/wp-content/plugins; httponly Set-Cookie: wordpress_3b2bce3edf2ab71dbe32547833674db7=%7C1413659433%7C0bfa46903fffba31e21ab22ae1e0731b; expires=Sun, 19-Oct-2014 07:10:33 GMT; path=/wp-admin; httponly Set-Cookie: wordpress_logged_in_3b2bce3edf2ab71dbe32547833674db7=%7C1413659433%7Cea534c33dd6d805e9961dd804b68e3cd; expires=Sun, 19-Oct-2014 07:10:33 GMT; path=/; httponly X-Pingback: http://www.yiwunovelty.com/xmlrpc.php | clean |
http://www.yiwunovelty.com/ | 200 OK Content-Length: 19443 Content-Type: text/html | clean |
http://www.yiwunovelty.com/wp-content/themes/WPEnterprise-Blue/js/jquery.js | 200 OK Content-Length: 31033 Content-Type: application/x-javascript | clean |
http://www.yiwunovelty.com/wp-includes/js/jquery/jquery.js?ver=1.10.2 | 200 OK Content-Length: 93085 Content-Type: application/x-javascript | clean |
http://www.yiwunovelty.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/x-javascript | clean |
http://www.yiwunovelty.com/wp-content/plugins/contact-form-7/includes/js/jquery.form.min.js?ver=3.50.0-2014.02.05 | 200 OK Content-Length: 16305 Content-Type: application/x-javascript | clean |
http://www.yiwunovelty.com/wp-content/plugins/contact-form-7/includes/js/scripts.js?ver=3.7.2 | 200 OK Content-Length: 8913 Content-Type: application/x-javascript | clean |
http://s14.cnzz.com/stat.php?id=2499147&web_id=2499147&show=pic | 200 OK Content-Length: 9325 Content-Type: application/javascript | clean |
http://chat32.live800.com/live800/chatClient/floatButton.js?jid=3590533231&companyID=134320&configID=18397&codeType=custom | 200 OK Content-Length: 1290 Content-Type: application/x-javascript | clean |
http://chat32.live800.com/live800/chatClient/monitor.js?jid=3590533231&companyID=134320&configID=18125&codeType=custom | 200 OK Content-Length: 17 Content-Type: application/x-javascript | clean |
http://yiwunovelty.com/test404page.js | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Sat, 04 Oct 2014 19:10:44 GMT Pragma: no-cache Location: http://www.yiwunovelty.com/test404page.js Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Set-Cookie: qtrans_cookie_test=qTranslate+Cookie+Test; path=/; domain=yiwunovelty.com Set-Cookie: wordpress_3b2bce3edf2ab71dbe32547833674db7=%7C1413659444%7C3de1d4eee518a8cf75a34b6e6fe0b8f5; expires=Sun, 19-Oct-2014 07:10:44 GMT; path=/wp-content/plugins; httponly Set-Cookie: wordpress_3b2bce3edf2ab71dbe32547833674db7=%7C1413659444%7C3de1d4eee518a8cf75a34b6e6fe0b8f5; expires=Sun, 19-Oct-2014 07:10:44 GMT; path=/wp-admin; httponly Set-Cookie: wordpress_logged_in_3b2bce3edf2ab71dbe32547833674db7=%7C1413659444%7C3dbbf47e82e41b0224e0efa2757701bc; expires=Sun, 19-Oct-2014 07:10:44 GMT; path=/; httponly X-Pingback: http://www.yiwunovelty.com/xmlrpc.php | clean |
http://www.yiwunovelty.com/test404page.js | 404 Not Found Content-Length: 15253 Content-Type: text/html | clean |
http://www.yiwunovelty.com/es | 200 OK Content-Length: 19723 Content-Type: text/html | clean |
http://www.yiwunovelty.com/es/ | 200 OK Content-Length: 19723 Content-Type: text/html | clean |
http://www.yiwunovelty.com/es/yiwu-agent/ | 200 OK Content-Length: 16565 Content-Type: text/html | clean |
http://www.yiwunovelty.com/wp-includes/js/comment-reply.min.js?ver=3.8.4 | 200 OK Content-Length: 757 Content-Type: application/x-javascript | clean |
http://www.yiwunovelty.com/es/yiwu-agent-service/ | 200 OK Content-Length: 16612 Content-Type: text/html | clean |