Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: cheeranddanceexpress.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Mon, 22 Dec 2014 19:23:59 GMT
Pragma: no-cache
Server: cloudflare-nginx
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
CF-RAY: 19ceb269a26f05cf-WAW
Set-Cookie: __cfduid=de6585591bf71dd48f270258d50ae42941419276238; expires=Tue, 22-Dec-15 19:23:58 GMT; path=/; domain=.cheeranddanceexpress.com; HttpOnly
Set-Cookie: PHPSESSID=5688c38a9153b38b52ff68fae96ffa06; path=/
Set-Cookie: edd_items_in_cart=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; Max-Age=0; path=/
Set-Cookie: wfvt_2739307391=54986fcf5410d; expires=Mon, 22-Dec-2014 19:53:59 GMT; Max-Age=1800; path=/; httponly
X-UA-Compatible: IE=edge,chrome=1
GET / HTTP/1.1
Host: cheeranddanceexpress.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Mon, 22 Dec 2014 19:23:59 GMT
Pragma: no-cache
Server: cloudflare-nginx
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
CF-RAY: 19ceb269a26f05cf-WAW
Set-Cookie: __cfduid=de6585591bf71dd48f270258d50ae42941419276238; expires=Tue, 22-Dec-15 19:23:58 GMT; path=/; domain=.cheeranddanceexpress.com; HttpOnly
Set-Cookie: PHPSESSID=5688c38a9153b38b52ff68fae96ffa06; path=/
Set-Cookie: edd_items_in_cart=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; Max-Age=0; path=/
Set-Cookie: wfvt_2739307391=54986fcf5410d; expires=Mon, 22-Dec-2014 19:53:59 GMT; Max-Age=1800; path=/; httponly
X-UA-Compatible: IE=edge,chrome=1
Second query (visit from search engine):
GET / HTTP/1.1
Host: cheeranddanceexpress.com
Referer: http://www.google.com/search?q=cheeranddanceexpress.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: cheeranddanceexpress.com
Referer: http://www.google.com/search?q=cheeranddanceexpress.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://cheeranddanceexpress.com/ | 200 OK Content-Length: 38139 Content-Type: text/html | clean |
http://cheeranddanceexpress.com/about-us/ | 200 OK Content-Length: 47405 Content-Type: text/html | clean |
http://cheeranddanceexpress.com/fall-class-schedule/ | 200 OK Content-Length: 36849 Content-Type: text/html | clean |
http://cheeranddanceexpress.com/lincoln-summer-classes/ | 200 OK Content-Length: 37443 Content-Type: text/html | clean |
http://cheeranddanceexpress.com/rec-teams/ | 200 OK Content-Length: 40366 Content-Type: text/html | clean |
http://cheeranddanceexpress.com/all-star-cheer-teams/ | 200 OK Content-Length: 43274 Content-Type: text/html | clean |
http://cheeranddanceexpress.com/tumbling/ | 200 OK Content-Length: 38252 Content-Type: text/html | clean |
http://cheeranddanceexpress.com/special-needs/ | 200 OK Content-Length: 41396 Content-Type: text/html | clean |
http://cheeranddanceexpress.com/private-lessons/ | 200 OK Content-Length: 40504 Content-Type: text/html | clean |
http://cheeranddanceexpress.com/team-training/ | 200 OK Content-Length: 37345 Content-Type: text/html | clean |
http://cheeranddanceexpress.com/will-power-fitness/ | 200 OK Content-Length: 37292 Content-Type: text/html | clean |
http://cheeranddanceexpress.com/summer-class-schedule/ | 200 OK Content-Length: 43486 Content-Type: text/html | clean |
http://cheeranddanceexpress.com/beatrice-competition-schedule/ | 200 OK Content-Length: 36457 Content-Type: text/html | clean |
http://cheeranddanceexpress.com/rec-cheer-beatrice/ | 200 OK Content-Length: 39750 Content-Type: text/html | clean |
http://cheeranddanceexpress.com/tumbling-beatrice/ | 200 OK Content-Length: 38444 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=cheeranddanceexpress.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://cheeranddanceexpress.com/
Result: cheeranddanceexpress.com is not infected or malware details are not published yet.
Result: cheeranddanceexpress.com is not infected or malware details are not published yet.