Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=zeitzuhandeln.antifa.cc
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: zeitzuhandeln.antifa.cc
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 24 Feb 2015 22:33:44 GMT
Server: nginx
Vary: Accept-Encoding
Vary: Accept-Encoding,User-Agent
Content-Type: text/html; charset=UTF-8
Set-Cookie: PHPSESSID=7opovpa7c5g2mpefhru0jpdoa5; path=/
X-Content-Type-Options: nosniff
X-Pingback: http://zeitzuhandeln.antifa.cc/xmlrpc.php
X-Powered-By: PHP/5.2.17
X-XSS-Protection: 1; mode=block
GET / HTTP/1.1
Host: zeitzuhandeln.antifa.cc
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 24 Feb 2015 22:33:44 GMT
Server: nginx
Vary: Accept-Encoding
Vary: Accept-Encoding,User-Agent
Content-Type: text/html; charset=UTF-8
Set-Cookie: PHPSESSID=7opovpa7c5g2mpefhru0jpdoa5; path=/
X-Content-Type-Options: nosniff
X-Pingback: http://zeitzuhandeln.antifa.cc/xmlrpc.php
X-Powered-By: PHP/5.2.17
X-XSS-Protection: 1; mode=block
Second query (visit from search engine):
GET / HTTP/1.1
Host: zeitzuhandeln.antifa.cc
Referer: http://www.google.com/search?q=zeitzuhandeln.antifa.cc
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: zeitzuhandeln.antifa.cc
Referer: http://www.google.com/search?q=zeitzuhandeln.antifa.cc
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://zeitzuhandeln.antifa.cc/ | 200 OK Content-Length: 108328 Content-Type: text/html | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.4/jquery.min.js?ver=3.5.1 | 200 OK Content-Length: 78601 Content-Type: text/javascript | clean |
http://zeitzuhandeln.antifa.cc/wp-content/plugins/fancybox-for-wordpress/fancybox/jquery.fancybox.js?ver=1.3.4 | 200 OK Content-Length: 15667 Content-Type: application/javascript | clean |
http://double-way.de/wp-admin/js/bbcode.php | 200 OK Content-Length: 5 Content-Type: text/html | clean |
http://double-way.de/test404page.js | 404 Not Found Content-Length: 212 Content-Type: text/html | clean |