Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: egsc.ca
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Wed, 10 Sep 2014 06:25:26 GMT
Pragma: no-cache
Server: Apache
Content-Length: 40749
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Wed, 10 Sep 2014 06:25:27 GMT
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: db3e97cd9bb53760801b3bbd7ffa5ee2=38au4aVP_BQcgDMhsvD2Z07I4jlyK5bBhXZrId1zcXY5D-Fq9IUQtOUNRb2tCLmP; path=/
Set-Cookie: jv_maju_tpl=sSgVY9bitbA8qeK_hqjtErYOlBa-lZOtu1t_03Mx5qo.; expires=Mon, 31-Aug-2015 06:25:27 GMT; path=/
X-Powered-By: PHP/5.4.31
...40749 bytes of data.
GET / HTTP/1.1
Host: egsc.ca
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Wed, 10 Sep 2014 06:25:26 GMT
Pragma: no-cache
Server: Apache
Content-Length: 40749
Content-Type: text/html; charset=utf-8
Expires: Mon, 1 Jan 2001 00:00:00 GMT
Last-Modified: Wed, 10 Sep 2014 06:25:27 GMT
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: db3e97cd9bb53760801b3bbd7ffa5ee2=38au4aVP_BQcgDMhsvD2Z07I4jlyK5bBhXZrId1zcXY5D-Fq9IUQtOUNRb2tCLmP; path=/
Set-Cookie: jv_maju_tpl=sSgVY9bitbA8qeK_hqjtErYOlBa-lZOtu1t_03Mx5qo.; expires=Mon, 31-Aug-2015 06:25:27 GMT; path=/
X-Powered-By: PHP/5.4.31
...40749 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: egsc.ca
Referer: http://www.google.com/search?q=egsc.ca
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: egsc.ca
Referer: http://www.google.com/search?q=egsc.ca
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://egsc.ca/ | 200 OK Content-Length: 40749 Content-Type: text/html | clean |
http://egsc.ca/templates/jv_maju/js/jv.script.js.php | 200 OK Content-Length: 80288 Content-Type: text/javascript | clean |
http://egsc.ca/modules/mod_jv_headline/assets/js/slideshow5.js | 200 OK Content-Length: 15514 Content-Type: application/javascript | clean |
http://egsc.ca/templates/jv_maju/jv_menus/jv_moomenu/jv.moomenu.js | 200 OK Content-Length: 3119 Content-Type: application/javascript | clean |
http://egsc.ca/home.html | 200 OK Content-Length: 40642 Content-Type: text/html | clean |
http://egsc.ca/fields/field-locations.html | 200 OK Content-Length: 23008 Content-Type: text/html | clean |
http://egsc.ca/fields/ | 404 Component not found Content-Length: 1390 Content-Type: text/html | clean |
http://egsc.ca/index.php | 200 OK Content-Length: 40758 Content-Type: text/html | clean |
http://egsc.ca/programs/youth-house-league/2012-season/2013-important-dates.html | 200 OK Content-Length: 23008 Content-Type: text/html | clean |
http://egsc.ca/programs/youth-house-league/2012-season/ | 404 Component not found Content-Length: 1390 Content-Type: text/html | clean |
http://egsc.ca/test404page.js | 404 Not Found Content-Length: 331 Content-Type: text/html | clean |
http://egsc.ca/programs/youth-house-league/2012-season/mini-mite-program.html | 200 OK Content-Length: 23175 Content-Type: text/html | clean |
http://egsc.ca/programs/youth-house-league/2012-season/divisions-and-registration-fees.html | 200 OK Content-Length: 54601 Content-Type: text/html | clean |
http://egsc.ca/programs/youth-house-league/2012-season/soccer-camps.html | 404 Article #138 not found Content-Length: 1396 Content-Type: text/html | clean |
http://egsc.ca/programs/youth-house-league/2012-season/membership-manual.html | 200 OK Content-Length: 21125 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=egsc.ca
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://egsc.ca/
Result: egsc.ca is not infected or malware details are not published yet.
Result: egsc.ca is not infected or malware details are not published yet.