Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: edelo.net
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=2592000
Cache-Control: private
Connection: close
Date: Thu, 25 Dec 2014 14:34:58 GMT
Accept-Ranges: bytes
ETag: "102a270-6aee-506969093ae1d"
Server: Apache
Vary: Accept-Encoding
Content-Length: 27374
Content-Type: text/html
Expires: Sat, 24 Jan 2015 14:34:58 GMT
Last-Modified: Wed, 29 Oct 2014 21:37:04 GMT
Set-Cookie: SERVERID=s06; path=/
X-Backend-Server: clusterweb06.hosteur.com D=7448 t=1419518098239615
...27374 bytes of data.
GET / HTTP/1.1
Host: edelo.net
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=2592000
Cache-Control: private
Connection: close
Date: Thu, 25 Dec 2014 14:34:58 GMT
Accept-Ranges: bytes
ETag: "102a270-6aee-506969093ae1d"
Server: Apache
Vary: Accept-Encoding
Content-Length: 27374
Content-Type: text/html
Expires: Sat, 24 Jan 2015 14:34:58 GMT
Last-Modified: Wed, 29 Oct 2014 21:37:04 GMT
Set-Cookie: SERVERID=s06; path=/
X-Backend-Server: clusterweb06.hosteur.com D=7448 t=1419518098239615
...27374 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: edelo.net
Referer: http://www.google.com/search?q=edelo.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: edelo.net
Referer: http://www.google.com/search?q=edelo.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://edelo.net/ | 200 OK Content-Length: 27374 Content-Type: text/html | clean |
http://w.sharethis.com/button/buttons.js | 200 OK Content-Length: 150720 Content-Type: application/x-javascript | clean |
http://s.sharethis.com/loader.js | 200 OK Content-Length: 15693 Content-Type: application/x-javascript | clean |
http://www.google.fr/coop/cse/brand?form=cse-search-box&lang=fr | 200 OK Content-Length: 2510 Content-Type: text/javascript | clean |
http://pagead2.googlesyndication.com/pagead/show_ads.js | 200 OK Content-Length: 19470 Content-Type: text/javascript | clean |
http://edelo.net/dotclear | HTTP/1.1 301 Moved Permanently Cache-Control: max-age=2592000 Cache-Control: private Connection: close Date: Thu, 25 Dec 2014 14:34:59 GMT Location: http://edelo.net/dotclear/ Server: Apache Vary: Accept-Encoding Content-Length: 293 Content-Type: text/html; charset=iso-8859-1 Expires: Sat, 24 Jan 2015 14:34:59 GMT Set-Cookie: SERVERID=s14; path=/ | clean |
http://edelo.net/dotclear/ | 200 OK Content-Length: 43537 Content-Type: text/html | clean |
http://edelo.net/dotclear/themes/oberon/../default/js/jquery.js | 200 OK Content-Length: 100207 Content-Type: text/javascript | clean |
http://edelo.net/dotclear/themes/oberon/../default/js/jquery.cookie.js | 200 OK Content-Length: 994 Content-Type: text/javascript | clean |
http://www.edelo.net/mariage/album/jbcore/juicebox.js | 200 OK Content-Length: 212578 Content-Type: text/javascript | clean |
http://edelo.net/images/tresors/cielaustral.jpg | 404 Not Found Content-Length: 406 Content-Type: text/html | clean |
http://edelo.net/test404page.js | 404 Not Found Content-Length: 390 Content-Type: text/html | clean |
http://edelo.net/lyon/Lyon_Christianisme.pdf | 200 OK Content-Length: 300730 Content-Type: application/pdf | clean |
http://edelo.net/roman/moissac/moissac.pdf | 200 OK Content-Length: 300730 Content-Type: application/pdf | clean |
http://edelo.net/rocheuses/album | HTTP/1.1 301 Moved Permanently Cache-Control: max-age=2592000 Cache-Control: private Connection: close Date: Thu, 25 Dec 2014 14:35:05 GMT Location: http://edelo.net/rocheuses/album/ Server: Apache Vary: Accept-Encoding Content-Length: 300 Content-Type: text/html; charset=iso-8859-1 Expires: Sat, 24 Jan 2015 14:35:05 GMT Set-Cookie: SERVERID=s19; path=/ | clean |
http://edelo.net/rocheuses/album/ | 200 OK Content-Length: 10828 Content-Type: text/html | clean |
http://edelo.net/rocheuses/album/res/modernizr-2.0.6.min.js | 200 OK Content-Length: 9262 Content-Type: text/javascript | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=edelo.net
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://edelo.net/
Result: edelo.net is not infected or malware details are not published yet.
Result: edelo.net is not infected or malware details are not published yet.