Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: enjoydealing.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Tue, 30 Sep 2014 01:14:50 GMT
Pragma: no-cache
Server: Apache mod_fcgid/2.3.10-dev
Content-Length: 104937
Content-Type: text/html; charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: zenid=7d189843ababe45e02c89c45f83ace18; path=/; domain=.www.enjoydealing.com; HttpOnly
X-Powered-By: PHP/5.4.31
...104937 bytes of data.
GET / HTTP/1.1
Host: enjoydealing.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Tue, 30 Sep 2014 01:14:50 GMT
Pragma: no-cache
Server: Apache mod_fcgid/2.3.10-dev
Content-Length: 104937
Content-Type: text/html; charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: zenid=7d189843ababe45e02c89c45f83ace18; path=/; domain=.www.enjoydealing.com; HttpOnly
X-Powered-By: PHP/5.4.31
...104937 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: enjoydealing.com
Referer: http://www.google.com/search?q=enjoydealing.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: enjoydealing.com
Referer: http://www.google.com/search?q=enjoydealing.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://enjoydealing.com/ | 200 OK Content-Length: 104937 Content-Type: text/html | clean |
http://enjoydealing.com/includes/templates/mazentop/jscript/jscript_1_jquery-1.7.2.min.js | 200 OK Content-Length: 94840 Content-Type: application/javascript | clean |
http://enjoydealing.com/includes/templates/mazentop/jscript/jscript_21loadmask.min.js | 200 OK Content-Length: 1481 Content-Type: application/javascript | clean |
http://enjoydealing.com/includes/templates/mazentop/jscript/jscript_22.artDialog.js | 200 OK Content-Length: 16359 Content-Type: application/javascript | clean |
http://enjoydealing.com/includes/templates/mazentop/jscript/jscript_2_jquery.validate.min.js | 200 OK Content-Length: 25361 Content-Type: application/javascript | clean |
http://enjoydealing.com/includes/templates/mazentop/jscript/jscript_3_jquery.facebox.js | 200 OK Content-Length: 9698 Content-Type: application/javascript | clean |
http://enjoydealing.com/includes/templates/mazentop/jscript/jscript_6_jquery.blockUI.js | 200 OK Content-Length: 10905 Content-Type: application/javascript | clean |
http://enjoydealing.com/includes/templates/mazentop/jscript/jscript_70_jquery.livequery.js | 200 OK Content-Length: 5933 Content-Type: application/javascript | clean |
http://enjoydealing.com/includes/templates/mazentop/jscript/jscript_71_ri_wishlist.js | 200 OK Content-Length: 2548 Content-Type: application/javascript | clean |
http://enjoydealing.com/includes/templates/mazentop/jscript/jscript_8_view_wishlist.js | 200 OK Content-Length: 107 Content-Type: application/javascript | clean |
http://enjoydealing.com/includes/templates/mazentop/jscript/jscript_90_imagehover.js | 200 OK Content-Length: 6416 Content-Type: application/javascript | clean |
http://enjoydealing.com/includes/templates/mazentop/jscript/jscript_99lightbox.js | 200 OK Content-Length: 11597 Content-Type: application/javascript | clean |
http://enjoydealing.com/includes/templates/mazentop/jscript/jscript_9_jquery.rbajax.js | 200 OK Content-Length: 8964 Content-Type: application/javascript | clean |
http://enjoydealing.com/includes/templates/mazentop/jscript/jscript_lefttime.js | 200 OK Content-Length: 0 Content-Type: application/javascript | clean |
http://enjoydealing.com/includes/templates/mazentop/jscript/jscript_main.js | 200 OK Content-Length: 1215 Content-Type: application/javascript | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=enjoydealing.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://enjoydealing.com/
Result: enjoydealing.com is not infected or malware details are not published yet.
Result: enjoydealing.com is not infected or malware details are not published yet.