Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: flyfishingclub06.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Sun, 01 Sep 2013 05:43:58 GMT
Location: http://www.flyfishingclub06.com/
Server: Apache/2.2.16 (Debian) mod_fcgid/2.3.6 mod_python/3.3.1 Python/2.6.6 mod_ssl/2.2.16 OpenSSL/0.9.8o mod_perl/2.0.4 Perl/v5.10.1
Content-Length: 430
Content-Type: text/html; charset=iso-8859-1
...430 bytes of data.
GET / HTTP/1.1
Host: flyfishingclub06.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Sun, 01 Sep 2013 05:43:58 GMT
Location: http://www.flyfishingclub06.com/
Server: Apache/2.2.16 (Debian) mod_fcgid/2.3.6 mod_python/3.3.1 Python/2.6.6 mod_ssl/2.2.16 OpenSSL/0.9.8o mod_perl/2.0.4 Perl/v5.10.1
Content-Length: 430
Content-Type: text/html; charset=iso-8859-1
...430 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: flyfishingclub06.com
Referer: http://www.google.com/search?q=flyfishingclub06.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: flyfishingclub06.com
Referer: http://www.google.com/search?q=flyfishingclub06.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
| Request | Server response | Status |
http://flyfishingclub06.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 01 Sep 2013 05:43:58 GMT Location: http://www.flyfishingclub06.com/ Server: Apache/2.2.16 (Debian) mod_fcgid/2.3.6 mod_python/3.3.1 Python/2.6.6 mod_ssl/2.2.16 OpenSSL/0.9.8o mod_perl/2.0.4 Perl/v5.10.1 Content-Length: 430 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.flyfishingclub06.com/ | 200 OK Content-Length: 31539 Content-Type: text/html | clean |
http://www.flyfishingclub06.com/media/system/js/caption.js | 200 OK Content-Length: 1963 Content-Type: application/javascript | clean |
http://flyfishingclub06.com/plugins/content/avreloaded/silverlight.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 01 Sep 2013 05:44:00 GMT Location: http://www.flyfishingclub06.com/plugins/content/avreloaded/silverlight.js Server: Apache/2.2.16 (Debian) mod_fcgid/2.3.6 mod_python/3.3.1 Python/2.6.6 mod_ssl/2.2.16 OpenSSL/0.9.8o mod_perl/2.0.4 Perl/v5.10.1 Content-Length: 471 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.flyfishingclub06.com/plugins/content/avreloaded/silverlight.js | 200 OK Content-Length: 8093 Content-Type: application/javascript | clean |
http://flyfishingclub06.com/plugins/content/avreloaded/wmvplayer.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 01 Sep 2013 05:44:00 GMT Location: http://www.flyfishingclub06.com/plugins/content/avreloaded/wmvplayer.js Server: Apache/2.2.16 (Debian) mod_fcgid/2.3.6 mod_python/3.3.1 Python/2.6.6 mod_ssl/2.2.16 OpenSSL/0.9.8o mod_perl/2.0.4 Perl/v5.10.1 Content-Length: 469 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.flyfishingclub06.com/plugins/content/avreloaded/wmvplayer.js | 200 OK Content-Length: 16476 Content-Type: application/javascript | clean |
http://flyfishingclub06.com/plugins/content/avreloaded/swfobject.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 01 Sep 2013 05:44:01 GMT Location: http://www.flyfishingclub06.com/plugins/content/avreloaded/swfobject.js Server: Apache/2.2.16 (Debian) mod_fcgid/2.3.6 mod_python/3.3.1 Python/2.6.6 mod_ssl/2.2.16 OpenSSL/0.9.8o mod_perl/2.0.4 Perl/v5.10.1 Content-Length: 469 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.flyfishingclub06.com/plugins/content/avreloaded/swfobject.js | 200 OK Content-Length: 12254 Content-Type: application/javascript | clean |
http://flyfishingclub06.com/plugins/content/avreloaded/avreloaded.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 01 Sep 2013 05:44:01 GMT Location: http://www.flyfishingclub06.com/plugins/content/avreloaded/avreloaded.js Server: Apache/2.2.16 (Debian) mod_fcgid/2.3.6 mod_python/3.3.1 Python/2.6.6 mod_ssl/2.2.16 OpenSSL/0.9.8o mod_perl/2.0.4 Perl/v5.10.1 Content-Length: 470 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.flyfishingclub06.com/plugins/content/avreloaded/avreloaded.js | 200 OK Content-Length: 2359 Content-Type: application/javascript | clean |
http://www.flyfishingclub06.com/templates/ja_purity/js/ja.script.js | 200 OK Content-Length: 3313 Content-Type: application/javascript | clean |
http://www.flyfishingclub06.com/templates/ja_purity/js/ja.rightcol.js | 200 OK Content-Length: 1659 Content-Type: application/javascript | clean |
http://www.google-analytics.com/urchin.js | 200 OK Content-Length: 22678 Content-Type: text/javascript | clean |
http://flyfishingclub06.com/index.php | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 01 Sep 2013 05:44:02 GMT Location: http://www.flyfishingclub06.com/index.php Server: Apache/2.2.16 (Debian) mod_fcgid/2.3.6 mod_python/3.3.1 Python/2.6.6 mod_ssl/2.2.16 OpenSSL/0.9.8o mod_perl/2.0.4 Perl/v5.10.1 Content-Length: 439 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.flyfishingclub06.com/index.php | 200 OK Content-Length: 31567 Content-Type: text/html | clean |
http://www.flyfishingclub06.com/index.php/component/mailto/?tmpl=component&link=4e68ee156e9d2778dbc97149f30fffc754c51847 | 200 OK Content-Length: 3742 Content-Type: text/html | clean |
http://www.flyfishingclub06.com/test404page.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 01 Sep 2013 05:44:03 GMT Location: http://www.flyfishingclub06.com/test404page.js/ Server: Apache/2.2.16 (Debian) mod_fcgid/2.3.6 mod_python/3.3.1 Python/2.6.6 mod_ssl/2.2.16 OpenSSL/0.9.8o mod_perl/2.0.4 Perl/v5.10.1 Content-Length: 449 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.flyfishingclub06.com/test404page.js/ | HTTP/1.1 302 Found Connection: close Date: Sun, 01 Sep 2013 05:44:04 GMT Location: http://www.flyfishingclub06.com/index.php?option=com_content&view=article&id=120 Server: Apache/2.2.16 (Debian) mod_fcgid/2.3.6 mod_python/3.3.1 Python/2.6.6 mod_ssl/2.2.16 OpenSSL/0.9.8o mod_perl/2.0.4 Perl/v5.10.1 Content-Length: 466 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.flyfishingclub06.com/index.php?option=com_content&view=article&id=120 | 200 OK Content-Length: 16053 Content-Type: text/html | clean |
http://www.flyfishingclub06.com/index.php/component/content/section/9 | 200 OK Content-Length: 12612 Content-Type: text/html | clean |
http://www.flyfishingclub06.com/index.php/component/content/section/ | 200 OK Content-Length: 12491 Content-Type: text/html | clean |
http://www.flyfishingclub06.com/index.php/forumffc | 200 OK Content-Length: 35664 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=flyfishingclub06.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://flyfishingclub06.com/
Result: flyfishingclub06.com is not infected or malware details are not published yet.
Result: flyfishingclub06.com is not infected or malware details are not published yet.
