Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: baskettieons.com
Result:
HTTP/1.1 302 Found
Connection: close
Date: Fri, 05 Sep 2014 07:53:21 GMT
Location: http://stores.ebay.com/BASKETS-SHOWCASE
Server: Apache/2.2.22 (Debian)
Content-Length: 305
Content-Type: text/html; charset=iso-8859-1
...305 bytes of data.
GET / HTTP/1.1
Host: baskettieons.com
Result:
HTTP/1.1 302 Found
Connection: close
Date: Fri, 05 Sep 2014 07:53:21 GMT
Location: http://stores.ebay.com/BASKETS-SHOWCASE
Server: Apache/2.2.22 (Debian)
Content-Length: 305
Content-Type: text/html; charset=iso-8859-1
...305 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: baskettieons.com
Referer: http://www.google.com/search?q=baskettieons.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: baskettieons.com
Referer: http://www.google.com/search?q=baskettieons.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://baskettieons.com/ | HTTP/1.1 302 Found Connection: close Date: Fri, 05 Sep 2014 07:53:21 GMT Location: http://stores.ebay.com/BASKETS-SHOWCASE Server: Apache/2.2.22 (Debian) Content-Length: 305 Content-Type: text/html; charset=iso-8859-1 | clean |
http://stores.ebay.com/baskets-showcase | 200 OK Content-Length: 187254 Content-Type: text/html | clean |
http://ir.ebaystatic.com/v4js/z/i5/r32gctn0fu3vjkpge2mjhij3q.js | 200 OK Content-Length: 104294 Content-Type: application/x-javascript | clean |
http://ir.ebaystatic.com/v4js/z/y1/oysnje2c1u2cnccnjhlqrncyo.js | 200 OK Content-Length: 7827 Content-Type: application/x-javascript | clean |
http://ir.ebaystatic.com/rs/v/4ffoklhwrm53nhgnvr1kqvvor2h.js | 200 OK Content-Length: 191384 Content-Type: application/x-javascript | clean |
http://include.ebaystatic.com/js/e889/us/features/site_catalyst/omniture/base_e8892us.js | 200 OK Content-Length: 12708 Content-Type: application/javascript | clean |
http://include.ebaystatic.com/js/e889/us/features/site_catalyst/omniture/storesv4_e8892us.js | 200 OK Content-Length: 1661 Content-Type: application/javascript | clean |
http://ir.ebaystatic.com/v4js/z/ir/jb02gq0fii0stcihee1smqlx5.js | 200 OK Content-Length: 203006 Content-Type: application/x-javascript | clean |
http://ir.ebaystatic.com/v4js/z/ue/dx4jvujlsm4jpa3reprq2wldk.js | 200 OK Content-Length: 35268 Content-Type: application/x-javascript | clean |
http://ir.ebaystatic.com/v4js/z/2n/m1gstmludy4offtrjiqcthowr.js | 200 OK Content-Length: 58482 Content-Type: application/x-javascript | clean |
http://baskettieons.com/BASKETS-SHOWCASE/Clothing-Designer-T-Shirts-/_i.html?_fsub=2064909014&_sid=458774&_trksid=p4634.c0.m322 | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://baskettieons.com/test404page.js | 404 Not Found Content-Length: 294 Content-Type: text/html | clean |
http://baskettieons.com/BASKETS-SHOWCASE/Cookie-Jars-/_i.html?_fsub=17051210&_sid=458774&_trksid=p4634.c0.m322 | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://baskettieons.com/BASKETS-SHOWCASE/Dinnerware-Serving-Dishes-/_i.html?_fsub=6248483014&_sid=458774&_trksid=p4634.c0.m322 | 404 Not Found Content-Length: 331 Content-Type: text/html | clean |
http://baskettieons.com/BASKETS-SHOWCASE/Handbags-/_i.html?_fsub=17031816&_sid=458774&_trksid=p4634.c0.m322 | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://baskettieons.com/BASKETS-SHOWCASE/Longaberger-Accessories-/_i.html?_fsub=2&_sid=458774&_trksid=p4634.c0.m322 | 404 Not Found Content-Length: 329 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=baskettieons.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://baskettieons.com/
Result: baskettieons.com is not infected or malware details are not published yet.
Result: baskettieons.com is not infected or malware details are not published yet.