Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: contlimo.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 24 Jul 2014 23:46:18 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=fdba6b26e03237f0624ba6bddac21fe0; path=/
X-Pingback: http://contlimo.com/xmlrpc.php
X-Powered-By: PHP/5.3.28
GET / HTTP/1.1
Host: contlimo.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Thu, 24 Jul 2014 23:46:18 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=fdba6b26e03237f0624ba6bddac21fe0; path=/
X-Pingback: http://contlimo.com/xmlrpc.php
X-Powered-By: PHP/5.3.28
Second query (visit from search engine):
GET / HTTP/1.1
Host: contlimo.com
Referer: http://www.google.com/search?q=contlimo.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: contlimo.com
Referer: http://www.google.com/search?q=contlimo.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://www.contlimo.com/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Thu, 24 Jul 2014 23:46:17 GMT Pragma: no-cache Location: http://contlimo.com/ Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=9d0484f39015da99f9cccf678d4e2716; path=/ X-Pingback: http://contlimo.com/xmlrpc.php X-Powered-By: PHP/5.3.28 | clean |
http://contlimo.com/ | 200 OK Content-Length: 22592 Content-Type: text/html | clean |
http://maps.googleapis.com/maps/api/js?sensor=false | 200 OK Content-Length: 5022 Content-Type: text/javascript | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.7.1/jquery.min.js | 200 OK Content-Length: 93868 Content-Type: text/javascript | clean |
http://contlimo.com/wp-content/themes/limousine/js/jquery.orbit.min.js | 200 OK Content-Length: 4578 Content-Type: application/javascript | clean |
http://contlimo.com/wp-content/themes/limousine/formValidation/js/languages/jquery.validationEngine-en.js | 200 OK Content-Length: 10749 Content-Type: application/javascript | clean |
http://contlimo.com/wp-content/themes/limousine/formValidation/js/jquery.validationEngine.js | 200 OK Content-Length: 54060 Content-Type: application/javascript | clean |
http://contlimo.com/wp-content/themes/limousine/js/modernizr.js | 200 OK Content-Length: 7515 Content-Type: application/javascript | clean |
http://contlimo.com/wp-content/themes/limousine/js/jquery-ui-1.7.2.custom.min.js | 200 OK Content-Length: 62362 Content-Type: application/javascript | clean |
http://contlimo.com/wp-content/themes/limousine/js/timepicker.js | 200 OK Content-Length: 13201 Content-Type: application/javascript | clean |
http://contlimo.com/wp-includes/js/jquery/jquery.js?ver=1.8.3 | 200 OK Content-Length: 93658 Content-Type: application/javascript | clean |
http://contlimo.com/wp-content/themes/limousine/galleria/galleria-1.2.7.min.js?ver=3.5.1 | 200 OK Content-Length: 56634 Content-Type: application/javascript | clean |
http://contlimo.com/wp-content/themes/limousine/galleria/themes/classic/galleria.classic.min.js?ver=3.5.1 | 200 OK Content-Length: 1551 Content-Type: application/javascript | clean |
http://contlimo.com/wp-content/plugins/wordpress-customer-reviews/wp-customer-reviews.js?ver=2.4.3 | 200 OK Content-Length: 4949 Content-Type: application/javascript | clean |
http://linknowmedia.org/?dm=8d0b81e55acedf68a53c35b902fd5ec7&action=load&blogid=510&siteid=1&t=748435379&back=http%3A%2F%2Fcontlimo.com%2F | 200 OK Content-Length: 0 Content-Type: text/html | clean |
http://linknowmedia.org/test404page.js | HTTP/1.1 302 Moved Temporarily Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Thu, 24 Jul 2014 23:46:28 GMT Pragma: no-cache Location: http://linknowmedia.org Server: Apache Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Pingback: http://linknowmedia.org/xmlrpc.php X-Powered-By: PHP/5.3.28 | clean |
http://linknowmedia.org/ | 200 OK Content-Length: 1767 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=contlimo.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://contlimo.com/
Result: contlimo.com is not infected or malware details are not published yet.
Result: contlimo.com is not infected or malware details are not published yet.