Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: collisionsplus.com
Result:
HTTP/1.1 200 OK
Cache-Control: store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Fri, 04 Apr 2014 07:08:04 GMT
Server: Apache/2.2.22 (Unix) FrontPage/5.0.2.2635
Content-Type: text/html; charset=utf-8
Expires: Sun, 19 Nov 1978 05:00:00 GMT
Last-Modified: Fri, 04 Apr 2014 07:08:04 GMT
Set-Cookie: SESS78a8c1b4ad1f46f0e1542c15577350ac=dae30b2643fd85d8f07296ed2bd9dfec; expires=Sun, 27-Apr-2014 10:41:24 GMT; path=/; domain=.collisionsplus.com
X-Powered-By: PHP/5.3.27-pl0-gentoo
GET / HTTP/1.1
Host: collisionsplus.com
Result:
HTTP/1.1 200 OK
Cache-Control: store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Fri, 04 Apr 2014 07:08:04 GMT
Server: Apache/2.2.22 (Unix) FrontPage/5.0.2.2635
Content-Type: text/html; charset=utf-8
Expires: Sun, 19 Nov 1978 05:00:00 GMT
Last-Modified: Fri, 04 Apr 2014 07:08:04 GMT
Set-Cookie: SESS78a8c1b4ad1f46f0e1542c15577350ac=dae30b2643fd85d8f07296ed2bd9dfec; expires=Sun, 27-Apr-2014 10:41:24 GMT; path=/; domain=.collisionsplus.com
X-Powered-By: PHP/5.3.27-pl0-gentoo
Second query (visit from search engine):
GET / HTTP/1.1
Host: collisionsplus.com
Referer: http://www.google.com/search?q=collisionsplus.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: collisionsplus.com
Referer: http://www.google.com/search?q=collisionsplus.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://collisionsplus.com/ | 200 OK Content-Length: 35608 Content-Type: text/html | clean |
http://collisionsplus.com/misc/jquery.js?N | 200 OK Content-Length: 31089 Content-Type: application/javascript | clean |
http://collisionsplus.com/misc/drupal.js?N | 200 OK Content-Length: 9834 Content-Type: application/javascript | clean |
http://collisionsplus.com/sites/all/modules/lightbox2/js/auto_image_handling.js?N | 200 OK Content-Length: 9738 Content-Type: application/javascript | clean |
http://collisionsplus.com/sites/all/modules/lightbox2/js/lightbox.js?N | 200 OK Content-Length: 41346 Content-Type: application/javascript | clean |
http://collisionsplus.com/sites/all/modules/views_slideshow/js/jquery.cycle.all.min.js?N | 200 OK Content-Length: 30320 Content-Type: application/javascript | clean |
http://collisionsplus.com/sites/all/modules/views_slideshow/contrib/views_slideshow_singleframe/views_slideshow.js?N | 200 OK Content-Length: 8734 Content-Type: application/javascript | clean |
http://collisionsplus.com/sites/all/modules/views_slideshow/contrib/views_slideshow_thumbnailhover/views_slideshow.js?N | 200 OK Content-Length: 9309 Content-Type: application/javascript | clean |
http://collisionsplus.com/home | HTTP/1.1 301 Moved Permanently Cache-Control: store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Fri, 04 Apr 2014 07:08:11 GMT Location: http://collisionsplus.com/ Server: Apache/2.2.22 (Unix) FrontPage/5.0.2.2635 Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Sun, 19 Nov 1978 05:00:00 GMT Last-Modified: Fri, 04 Apr 2014 07:08:11 GMT Set-Cookie: SESS78a8c1b4ad1f46f0e1542c15577350ac=a0297922f85ffc7f55923d8b29062771; expires=Sun, 27-Apr-2014 10:41:31 GMT; path=/; domain=.collisionsplus.com X-Powered-By: PHP/5.3.27-pl0-gentoo | clean |
http://collisionsplus.com/test404page.js | 404 Not Found Content-Length: 6448 Content-Type: text/html | clean |
http://collisionsplus.com/auto-body-basics | 200 OK Content-Length: 24310 Content-Type: text/html | clean |
http://collisionsplus.com/faq | 200 OK Content-Length: 15972 Content-Type: text/html | clean |
http://collisionsplus.com/links | 200 OK Content-Length: 14650 Content-Type: text/html | clean |
http://collisionsplus.com/about-collisions-plus | 200 OK Content-Length: 22494 Content-Type: text/html | clean |
http://collisionsplus.com/sites/default/files/image-gallery/shop_layout1.jpg | 200 OK Content-Length: 104636 Content-Type: image/jpeg | clean |
http://collisionsplus.com/sites/default/files/image-gallery/shop_layout2.jpg | 200 OK Content-Length: 133868 Content-Type: image/jpeg | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=collisionsplus.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://collisionsplus.com/
Result: collisionsplus.com is not infected or malware details are not published yet.
Result: collisionsplus.com is not infected or malware details are not published yet.