Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: biznesflow.pl
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Tue, 30 Sep 2014 14:15:29 GMT
Pragma: no-cache
Server: Apache/2
Vary: Accept-Encoding,User-Agent
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=552e6520cccd206aee52b05e884a6360; path=/
X-Pingback: http://biznesflow.pl/xmlrpc.php
GET / HTTP/1.1
Host: biznesflow.pl
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Tue, 30 Sep 2014 14:15:29 GMT
Pragma: no-cache
Server: Apache/2
Vary: Accept-Encoding,User-Agent
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=552e6520cccd206aee52b05e884a6360; path=/
X-Pingback: http://biznesflow.pl/xmlrpc.php
Second query (visit from search engine):
GET / HTTP/1.1
Host: biznesflow.pl
Referer: http://www.google.com/search?q=biznesflow.pl
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: biznesflow.pl
Referer: http://www.google.com/search?q=biznesflow.pl
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://biznesflow.pl/ | 200 OK Content-Length: 80242 Content-Type: text/html | clean |
http://biznesflow.pl/wp-includes/js/jquery/jquery.js?ver=1.11.1 | 200 OK Content-Length: 95807 Content-Type: application/javascript | clean |
http://biznesflow.pl/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7199 Content-Type: application/javascript | clean |
http://biznesflow.pl/wp-content/themes/bresponzive_pro/js/camera.min.js?ver=2.0 | 200 OK Content-Length: 39330 Content-Type: application/javascript | clean |
http://biznesflow.pl/wp-content/themes/bresponzive_pro/js/jquery.mobile.customized.min.js?ver=2.0 | 200 OK Content-Length: 17519 Content-Type: application/javascript | clean |
http://biznesflow.pl/wp-content/themes/bresponzive_pro/js/jquery.backstretch.min.js?ver=4.0 | 200 OK Content-Length: 2490 Content-Type: application/javascript | clean |
http://biznesflow.pl/wp-content/themes/bresponzive_pro/js/jquery.mobilemenu.min.js?ver=4.0 | 200 OK Content-Length: 2052 Content-Type: application/javascript | clean |
http://biznesflow.pl/wp-content/themes/bresponzive_pro/js/jquery.easing.1.3.js?ver=4.0 | 200 OK Content-Length: 9827 Content-Type: application/javascript | clean |
http://biznesflow.pl/wp-content/themes/bresponzive_pro/js/jquery.ticker.js?ver=4.0 | 200 OK Content-Length: 15996 Content-Type: application/javascript | clean |
http://ajax.googleapis.com/ajax/libs/jqueryui/1.8.24/jquery-ui.min.js?ver=1.8.24 | 200 OK Content-Length: 200719 Content-Type: text/javascript | clean |
http://biznesflow.pl/wp-content/plugins/BetterPay/scripts/jquery.cookie.js?ver=4.0 | 200 OK Content-Length: 4246 Content-Type: application/javascript | clean |
http://biznesflow.pl/wp-content/plugins/BetterPay/scripts/script_public.min.js?ver=2.83.1 | 200 OK Content-Length: 16995 Content-Type: application/javascript | clean |
http://biznesflow.pl/wp-includes/js/jquery/ui/jquery.ui.core.min.js?ver=1.10.4 | 200 OK Content-Length: 4289 Content-Type: application/javascript | clean |
http://biznesflow.pl/wp-includes/js/jquery/ui/jquery.ui.widget.min.js?ver=1.10.4 | 200 OK Content-Length: 6521 Content-Type: application/javascript | clean |
http://biznesflow.pl/wp-includes/js/jquery/ui/jquery.ui.position.min.js?ver=1.10.4 | 200 OK Content-Length: 6360 Content-Type: application/javascript | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=biznesflow.pl
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://biznesflow.pl/
Result: biznesflow.pl is not infected or malware details are not published yet.
Result: biznesflow.pl is not infected or malware details are not published yet.