Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: aoneloans.co.uk
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Mon, 24 Nov 2014 11:13:00 GMT
Via: 1.1 varnish-v4
Age: 0
Location: http://www.aoneloans.co.uk/
Server: cloudflare-nginx
Content-Type: text/html; charset=UTF-8
CF-RAY: 18e52cbb641405cf-WAW
Set-Cookie: __cfduid=d98f5e9d1daa0ad50e6183adfe66124bf1416827580; expires=Tue, 24-Nov-15 11:13:00 GMT; path=/; domain=.aoneloans.co.uk; HttpOnly
Set-Cookie: wfvt_3314070139=547312bcc0723; expires=Mon, 24-Nov-2014 11:43:00 GMT; Max-Age=1800; path=/; httponly
X-Pingback: http://www.aoneloans.co.uk/xmlrpc.php
X-Powered-By: PHP/5.5.12-2ubuntu4.1
X-Varnish: 1933375
GET / HTTP/1.1
Host: aoneloans.co.uk
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Mon, 24 Nov 2014 11:13:00 GMT
Via: 1.1 varnish-v4
Age: 0
Location: http://www.aoneloans.co.uk/
Server: cloudflare-nginx
Content-Type: text/html; charset=UTF-8
CF-RAY: 18e52cbb641405cf-WAW
Set-Cookie: __cfduid=d98f5e9d1daa0ad50e6183adfe66124bf1416827580; expires=Tue, 24-Nov-15 11:13:00 GMT; path=/; domain=.aoneloans.co.uk; HttpOnly
Set-Cookie: wfvt_3314070139=547312bcc0723; expires=Mon, 24-Nov-2014 11:43:00 GMT; Max-Age=1800; path=/; httponly
X-Pingback: http://www.aoneloans.co.uk/xmlrpc.php
X-Powered-By: PHP/5.5.12-2ubuntu4.1
X-Varnish: 1933375
Second query (visit from search engine):
GET / HTTP/1.1
Host: aoneloans.co.uk
Referer: http://www.google.com/search?q=aoneloans.co.uk
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: aoneloans.co.uk
Referer: http://www.google.com/search?q=aoneloans.co.uk
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://aoneloans.co.uk/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Mon, 24 Nov 2014 11:13:00 GMT Via: 1.1 varnish-v4 Age: 0 Location: http://www.aoneloans.co.uk/ Server: cloudflare-nginx Content-Type: text/html; charset=UTF-8 CF-RAY: 18e52cbb641405cf-WAW Set-Cookie: __cfduid=d98f5e9d1daa0ad50e6183adfe66124bf1416827580; expires=Tue, 24-Nov-15 11:13:00 GMT; path=/; domain=.aoneloans.co.uk; HttpOnly Set-Cookie: wfvt_3314070139=547312bcc0723; expires=Mon, 24-Nov-2014 11:43:00 GMT; Max-Age=1800; path=/; httponly X-Pingback: http://www.aoneloans.co.uk/xmlrpc.php X-Powered-By: PHP/5.5.12-2ubuntu4.1 X-Varnish: 1933375 | clean |
http://www.aoneloans.co.uk/ | 200 OK Content-Length: 51531 Content-Type: text/html | clean |
http://www.aoneloans.co.uk/wp-includes/js/jquery/jquery.js?ver=1.11.1 | 200 OK Content-Length: 95807 Content-Type: application/javascript | clean |
http://www.aoneloans.co.uk/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://www.aoneloans.co.uk/wp-content/plugins/photo-gallery/js/bwg_frontend.js?ver=1.2.6 | 200 OK Content-Length: 3757 Content-Type: application/javascript | clean |
http://www.aoneloans.co.uk/wp-content/plugins/photo-gallery/js/jquery.mobile.js?ver=1.2.6 | 200 OK Content-Length: 6419 Content-Type: application/javascript | clean |
http://www.aoneloans.co.uk/wp-content/plugins/photo-gallery/js/jquery.mCustomScrollbar.concat.min.js?ver=1.2.6 | 200 OK Content-Length: 25171 Content-Type: application/javascript | clean |
http://www.aoneloans.co.uk/wp-content/plugins/photo-gallery/js/jquery.fullscreen-0.4.1.js?ver=0.4.1 | 200 OK Content-Length: 0 Content-Type: application/javascript | clean |
http://www.aoneloans.co.uk/wp-content/plugins/photo-gallery/js/bwg_gallery_box.js?ver=1.2.6 | 200 OK Content-Length: 6698 Content-Type: application/javascript | clean |
http://www.aoneloans.co.uk/wp-includes/js/comment-reply.min.js?ver=4.0 | 200 OK Content-Length: 757 Content-Type: application/javascript | clean |
http://www.aoneloans.co.uk/wp-content/themes/Divi/js/jquery.fitvids.js?ver=4.0 | 200 OK Content-Length: 2943 Content-Type: application/javascript | clean |
http://www.aoneloans.co.uk/wp-content/themes/Divi/js/jquery-ui.min.js?ver=4.0 | 200 OK Content-Length: 40015 Content-Type: application/javascript | clean |
http://www.aoneloans.co.uk/wp-content/themes/Divi/js/jquery.validate.min.js?ver=4.0 | 200 OK Content-Length: 21525 Content-Type: application/javascript | clean |
http://www.aoneloans.co.uk/wp-content/themes/Divi/js/waypoints.min.js?ver=4.0 | 200 OK Content-Length: 8051 Content-Type: application/javascript | clean |
http://www.aoneloans.co.uk/wp-content/themes/Divi/js/jquery.magnific-popup.js?ver=4.0 | 200 OK Content-Length: 47718 Content-Type: application/javascript | clean |
http://www.aoneloans.co.uk/wp-content/themes/Divi/js/custom.js?ver=4.0 | 200 OK Content-Length: 77337 Content-Type: application/javascript | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=aoneloans.co.uk
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://aoneloans.co.uk/
Result: aoneloans.co.uk is not infected or malware details are not published yet.
Result: aoneloans.co.uk is not infected or malware details are not published yet.