Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: cyclosportif.fr
Result:
HTTP/1.1 200 OK
Cache-Control: post-check=0, pre-check=0
Connection: close
Date: Fri, 22 Aug 2014 08:00:23 GMT
Pragma: no-cache
Vary: Accept-Encoding
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Fri, 22 Aug 2014 08:00:23 GMT
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: OVHCDN=R2163823835; path=/; expires=Sun, 24-Aug-2014 20:18:33 GMT
Set-Cookie: 60gpBAK=R1224194687; path=/; expires=Fri, 22-Aug-2014 09:16:06 GMT
Set-Cookie: 60gpD=R637397945; path=/; Max-Age=900
Set-Cookie: 78fb7a075334ed1ce7d24c78af21b4fd=4922524990d4d535e9358e5245c81f2d; path=/
Set-Cookie: ja_purity_tpl=ja_purity; expires=Wed, 12-Aug-2015 08:00:23 GMT; path=/
X-Cacheable: Not cacheable: no-cache
X-CDN-Any-IP: 213.186.33.107
X-CDN-Geo: var
X-CDN-Geo-IP: 46.105.196.197
GET / HTTP/1.1
Host: cyclosportif.fr
Result:
HTTP/1.1 200 OK
Cache-Control: post-check=0, pre-check=0
Connection: close
Date: Fri, 22 Aug 2014 08:00:23 GMT
Pragma: no-cache
Vary: Accept-Encoding
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Fri, 22 Aug 2014 08:00:23 GMT
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: OVHCDN=R2163823835; path=/; expires=Sun, 24-Aug-2014 20:18:33 GMT
Set-Cookie: 60gpBAK=R1224194687; path=/; expires=Fri, 22-Aug-2014 09:16:06 GMT
Set-Cookie: 60gpD=R637397945; path=/; Max-Age=900
Set-Cookie: 78fb7a075334ed1ce7d24c78af21b4fd=4922524990d4d535e9358e5245c81f2d; path=/
Set-Cookie: ja_purity_tpl=ja_purity; expires=Wed, 12-Aug-2015 08:00:23 GMT; path=/
X-Cacheable: Not cacheable: no-cache
X-CDN-Any-IP: 213.186.33.107
X-CDN-Geo: var
X-CDN-Geo-IP: 46.105.196.197
Second query (visit from search engine):
GET / HTTP/1.1
Host: cyclosportif.fr
Referer: http://www.google.com/search?q=cyclosportif.fr
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: cyclosportif.fr
Referer: http://www.google.com/search?q=cyclosportif.fr
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://cyclosportif.fr/ | 200 OK Content-Length: 91232 Content-Type: text/html | clean |
http://cyclosportif.fr/media/system/js/caption.js | 200 OK Content-Length: 1963 Content-Type: application/javascript | clean |
http://cyclosportif.fr/plugins/content/attachments_refresh.js | 200 OK Content-Length: 1560 Content-Type: application/javascript | clean |
http://cyclosportif.fr/media/system/js/modal.js | 200 OK Content-Length: 10588 Content-Type: application/javascript | clean |
http://cyclosportif.fr/plugins/content/phocagalleryslideshow.js | 200 OK Content-Length: 6735 Content-Type: application/javascript | clean |
http://cyclosportif.fr/plugins/system/jcemediabox/js/jcemediabox.js?version=116 | 200 OK Content-Length: 51877 Content-Type: application/javascript | clean |
http://cyclosportif.fr/media/com_allevents/javascript/utils.js | 200 OK Content-Length: 8129 Content-Type: application/javascript | clean |
http://cyclosportif.fr/media/com_allevents/javascript/debug.js | 200 OK Content-Length: 2055 Content-Type: application/javascript | clean |
http://cyclosportif.fr/modules/mod_allevents/tmpl/list/bullets/script.js | 200 OK Content-Length: 1283 Content-Type: application/javascript | clean |
http://cyclosportif.fr/templates/ja_purity/js/ja.script.js | 200 OK Content-Length: 3207 Content-Type: application/javascript | clean |
http://cyclosportif.fr/templates/ja_purity/js/ja.rightcol.js | 200 OK Content-Length: 1695 Content-Type: application/javascript | clean |
http://cyclosportif.fr/index.php | 200 OK Content-Length: 91400 Content-Type: text/html | clean |
http://cyclosportif.fr/cyclos-2014.html | 200 OK Content-Length: 197214 Content-Type: text/html | clean |
http://cyclosportif.fr/media/com_allevents/javascript/filters.js | 200 OK Content-Length: 10049 Content-Type: application/javascript | clean |
http://cyclosportif.fr/media/system/js/calendar.js | 200 OK Content-Length: 34315 Content-Type: application/javascript | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=cyclosportif.fr
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://cyclosportif.fr/
Result: cyclosportif.fr is not infected or malware details are not published yet.
Result: cyclosportif.fr is not infected or malware details are not published yet.