Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: casadasplantas.net.br
Result:
HTTP/1.1 200 OK
Cache-Control: post-check=0, pre-check=0
Connection: close
Date: Tue, 03 Mar 2015 14:27:45 GMT
Pragma: no-cache
Server: Apache/2.2.29 (Unix) mod_ssl/2.2.29 OpenSSL/1.0.1e-fips mod_bwlimited/1.4 mod_perl/2.0.8 Perl/v5.8.8
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 03 Mar 2015 14:27:46 GMT
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: a351a86d5abb9e4a5d4f72100a614794=e6c354bc2b7457d22248956c92873818; path=/
Set-Cookie: OlWeb=ol_romeni; expires=Sun, 21-Feb-2016 14:27:46 GMT; path=/
Set-Cookie: ColorCSS=green; expires=Sun, 21-Feb-2016 14:27:46 GMT; path=/
Set-Cookie: ScreenType=wide; expires=Sun, 21-Feb-2016 14:27:46 GMT; path=/
Set-Cookie: FontSize=4; expires=Sun, 21-Feb-2016 14:27:46 GMT; path=/
X-Powered-By: PHP/5.3.29
GET / HTTP/1.1
Host: casadasplantas.net.br
Result:
HTTP/1.1 200 OK
Cache-Control: post-check=0, pre-check=0
Connection: close
Date: Tue, 03 Mar 2015 14:27:45 GMT
Pragma: no-cache
Server: Apache/2.2.29 (Unix) mod_ssl/2.2.29 OpenSSL/1.0.1e-fips mod_bwlimited/1.4 mod_perl/2.0.8 Perl/v5.8.8
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Tue, 03 Mar 2015 14:27:46 GMT
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: a351a86d5abb9e4a5d4f72100a614794=e6c354bc2b7457d22248956c92873818; path=/
Set-Cookie: OlWeb=ol_romeni; expires=Sun, 21-Feb-2016 14:27:46 GMT; path=/
Set-Cookie: ColorCSS=green; expires=Sun, 21-Feb-2016 14:27:46 GMT; path=/
Set-Cookie: ScreenType=wide; expires=Sun, 21-Feb-2016 14:27:46 GMT; path=/
Set-Cookie: FontSize=4; expires=Sun, 21-Feb-2016 14:27:46 GMT; path=/
X-Powered-By: PHP/5.3.29
Second query (visit from search engine):
GET / HTTP/1.1
Host: casadasplantas.net.br
Referer: http://www.google.com/search?q=casadasplantas.net.br
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: casadasplantas.net.br
Referer: http://www.google.com/search?q=casadasplantas.net.br
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://casadasplantas.net.br/ | 200 OK Content-Length: 17436 Content-Type: text/html | clean |
http://casadasplantas.net.br/media/system/js/caption.js | 200 OK Content-Length: 1963 Content-Type: application/javascript | clean |
http://casadasplantas.net.br/templates/ol_romeni/scripts/lytebox.js | 200 OK Content-Length: 37487 Content-Type: application/javascript | clean |
http://casadasplantas.net.br/templates/ol_romeni/scripts/moomenu.js | 200 OK Content-Length: 3947 Content-Type: application/javascript | clean |
http://casadasplantas.net.br/templates/ol_romeni/scripts/opacity.js | 200 OK Content-Length: 8687 Content-Type: application/javascript | clean |
http://casadasplantas.net.br/templates/ol_romeni/scripts/ol.script.js | 200 OK Content-Length: 5934 Content-Type: application/javascript | clean |
http://casadasplantas.net.br/templates/ol_romeni/scripts/tips.js | 200 OK Content-Length: 31159 Content-Type: application/javascript | clean |
http://casadasplantas.net.br/index.php/empresa | 200 OK Content-Length: 16597 Content-Type: text/html | clean |
http://casadasplantas.net.br/index.php/empresa/historia | 200 OK Content-Length: 14094 Content-Type: text/html | clean |
http://casadasplantas.net.br/index.php?option=com_user&view=register | 200 OK Content-Length: 12543 Content-Type: text/html | clean |
http://casadasplantas.net.br/media/system/js/validate.js | 200 OK Content-Length: 4246 Content-Type: application/javascript | clean |
http://casadasplantas.net.br/index.php/fotos | 200 OK Content-Length: 13862 Content-Type: text/html | clean |
http://casadasplantas.net.br/components/com_morfeoshow/src/js/swfobject.js | 200 OK Content-Length: 6880 Content-Type: application/javascript | clean |
http://casadasplantas.net.br/index.php/produtos | 200 OK Content-Length: 15235 Content-Type: text/html | clean |
http://casadasplantas.net.br/index.php/artigos | 200 OK Content-Length: 14521 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=casadasplantas.net.br
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://casadasplantas.net.br/
Result: casadasplantas.net.br is not infected or malware details are not published yet.
Result: casadasplantas.net.br is not infected or malware details are not published yet.