Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=yohoho.me
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://yohoho.me/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: yohoho.me
Result:
HTTP/1.1 301 Moved Permanently
Cache-Control: max-age=1209600
Connection: close
Date: Sun, 05 Oct 2014 02:45:26 GMT
Location: http://www.yohoho.me/
Server: nginx/1.7.4
Content-Length: 229
Content-Type: text/html; charset=iso-8859-1
Expires: Sun, 19 Oct 2014 02:45:26 GMT
...229 bytes of data.
GET / HTTP/1.1
Host: yohoho.me
Result:
HTTP/1.1 301 Moved Permanently
Cache-Control: max-age=1209600
Connection: close
Date: Sun, 05 Oct 2014 02:45:26 GMT
Location: http://www.yohoho.me/
Server: nginx/1.7.4
Content-Length: 229
Content-Type: text/html; charset=iso-8859-1
Expires: Sun, 19 Oct 2014 02:45:26 GMT
...229 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: yohoho.me
Referer: http://www.google.com/search?q=yohoho.me
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: yohoho.me
Referer: http://www.google.com/search?q=yohoho.me
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://yohoho.me/ | HTTP/1.1 301 Moved Permanently Cache-Control: max-age=1209600 Connection: close Date: Sun, 05 Oct 2014 02:45:26 GMT Location: http://www.yohoho.me/ Server: nginx/1.7.4 Content-Length: 229 Content-Type: text/html; charset=iso-8859-1 Expires: Sun, 19 Oct 2014 02:45:26 GMT | clean |
http://www.yohoho.me/ | 200 OK Content-Length: 25692 Content-Type: text/html | clean |
http://www.yohoho.me/sites/default/files/js/js_614893423904bc0046f9e6094dfdf0eb.js | 200 OK Content-Length: 69629 Content-Type: application/x-javascript | clean |
http://counter.rambler.ru/top100.jcn?2316776 | 200 OK Content-Length: 6853 Content-Type: application/x-javascript | clean |
http://yohoho.me//mc.yandex.ru/metrika/watch.js/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 05 Oct 2014 02:45:28 GMT Location: http://www.yohoho.me/index.php?q=mc.yandex.ru/metrika/watch.js/ Server: nginx/1.7.4 Content-Length: 271 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.yohoho.me/index.php?q=mc.yandex.ru/metrika/watch.js/ | 404 Not Found Content-Length: 5557 Content-Type: text/html | clean |
http://www.yohoho.me//mc.yandex.ru/metrika/watch.js/ | 404 Not Found Content-Length: 5546 Content-Type: text/html | clean |
http://www.yohoho.me/sites/default/files/js/js_0efdf7c8f1b7e7cd8ccf3c9e6bf2007b.js | 200 OK Content-Length: 1810 Content-Type: application/x-javascript | clean |
http://www.yohoho.me/test404page.js | 404 Not Found Content-Length: 5529 Content-Type: text/html | clean |
http://yohoho.me/sites/default/files/js/js_0efdf7c8f1b7e7cd8ccf3c9e6bf2007b.js | HTTP/1.1 301 Moved Permanently Cache-Control: max-age=1209600 Connection: close Date: Sun, 05 Oct 2014 02:45:29 GMT Location: http://www.yohoho.me/sites/default/files/js/js_0efdf7c8f1b7e7cd8ccf3c9e6bf2007b.js Server: nginx/1.7.4 Content-Length: 290 Content-Type: text/html; charset=iso-8859-1 Expires: Sun, 19 Oct 2014 02:45:29 GMT | clean |