Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: geardogfirewall.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 31 Dec 2015 03:41:33 GMT
Accept-Ranges: bytes
ETag: "8a0516d6-62d3-5208037c2f68d"
Server: Apache
Vary: negotiate
Content-Length: 25299
Content-Location: index.html.html
Content-Type: text/html
Last-Modified: Thu, 24 Sep 2015 15:52:26 GMT
TCN: choice
...25299 bytes of data.
GET / HTTP/1.1
Host: geardogfirewall.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 31 Dec 2015 03:41:33 GMT
Accept-Ranges: bytes
ETag: "8a0516d6-62d3-5208037c2f68d"
Server: Apache
Vary: negotiate
Content-Length: 25299
Content-Location: index.html.html
Content-Type: text/html
Last-Modified: Thu, 24 Sep 2015 15:52:26 GMT
TCN: choice
...25299 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: geardogfirewall.com
Referer: http://www.google.com/search?q=geardogfirewall.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: geardogfirewall.com
Referer: http://www.google.com/search?q=geardogfirewall.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://geardogfirewall.com/ | HTTP/1.1 200 OK Connection: close Date: Thu, 31 Dec 2015 03:41:33 GMT Accept-Ranges: bytes ETag: "8a0516d6-62d3-5208037c2f68d" Server: Apache Vary: negotiate Content-Length: 25299 Content-Location: index.html.html Content-Type: text/html Last-Modified: Thu, 24 Sep 2015 15:52:26 GMT TCN: choice | clean |
http://geardogfirewall.com/index.html.html | 200 OK Content-Length: 25299 Content-Type: text/html | clean |
http://geardogfirewall.com/readme.txt.txt | 200 OK Content-Length: 16806 Content-Type: text/plain | clean |
http://geardogfirewall.com/test404page.js | 404 Not Found Content-Length: 619 Content-Type: text/html | clean |
http://geardogfirewall.com/impressum.txt.txt | 200 OK Content-Length: 1054 Content-Type: text/plain | clean |
http://geardogfirewall.com/wbinfo.txt.txt | 200 OK Content-Length: 15860 Content-Type: text/plain | clean |
http://geardogfirewall.com/adsfilter/adsfilter.html.html | 200 OK Content-Length: 46637 Content-Type: text/html | clean |
http://geardogfirewall.com/adsfilter/../readme.txt | HTTP/1.1 200 OK Connection: close Date: Thu, 31 Dec 2015 03:41:34 GMT Accept-Ranges: bytes ETag: "801be6c7-41a6-516fad145def7;5208037be9184" Server: Apache Vary: negotiate Content-Length: 16806 Content-Location: readme.txt.txt Content-Type: text/plain Last-Modified: Tue, 26 May 2015 11:56:32 GMT TCN: choice | clean |
http://geardogfirewall.com/adsfilter/../readme.txt.txt | 200 OK Content-Length: 16806 Content-Type: text/plain | clean |
http://geardogfirewall.com/adsfilter/../impressum.txt | HTTP/1.1 200 OK Connection: close Date: Thu, 31 Dec 2015 03:41:35 GMT Accept-Ranges: bytes ETag: "8536e7c0-41e-4f686d6ec258c;5208037be9184" Server: Apache Vary: negotiate Content-Length: 1054 Content-Location: impressum.txt.txt Content-Type: text/plain Last-Modified: Tue, 08 Apr 2014 12:08:18 GMT TCN: choice | clean |
http://geardogfirewall.com/adsfilter/../impressum.txt.txt | 200 OK Content-Length: 1054 Content-Type: text/plain | clean |
http://geardogfirewall.com/adsfilter/ | HTTP/1.1 200 OK Connection: close Date: Thu, 31 Dec 2015 03:41:35 GMT Accept-Ranges: bytes ETag: "8087547e-1be8-51c19173b79ca" Server: Apache Vary: negotiate Content-Length: 7144 Content-Location: index.html.html Content-Type: text/html Last-Modified: Thu, 30 Jul 2015 15:09:33 GMT TCN: choice | clean |
http://geardogfirewall.com/adsfilter/index.html.html | HTTP/1.1 200 OK Connection: close Date: Thu, 31 Dec 2015 03:41:35 GMT Accept-Ranges: bytes ETag: "8087547e-1be8-51c19173b79ca" Server: Apache Content-Length: 7144 Content-Type: text/html Last-Modified: Thu, 30 Jul 2015 15:09:33 GMT | clean |
http://www.geardogfirewall.com/adsfilter/adsfilter.html.html | 200 OK Content-Length: 46637 Content-Type: text/html | clean |
http://www.geardogfirewall.com/index.html | HTTP/1.1 200 OK Connection: close Date: Thu, 31 Dec 2015 03:41:36 GMT Accept-Ranges: bytes ETag: "8a0516d6-62d3-5208037c2f68d;5208037be9184" Server: Apache Vary: negotiate Content-Length: 25299 Content-Location: index.html.html Content-Type: text/html Last-Modified: Thu, 24 Sep 2015 15:52:26 GMT TCN: choice | clean |
http://www.geardogfirewall.com/index.html.html | 200 OK Content-Length: 25299 Content-Type: text/html | clean |
http://www.geardogfirewall.com/readme.txt.txt | 200 OK Content-Length: 16806 Content-Type: text/plain | clean |
http://www.geardogfirewall.com/impressum.txt.txt | 200 OK Content-Length: 1054 Content-Type: text/plain | clean |
http://www.geardogfirewall.com/wbinfo.txt.txt | 200 OK Content-Length: 15860 Content-Type: text/plain | clean |
http://www.geardogfirewall.com/ | HTTP/1.1 200 OK Connection: close Date: Thu, 31 Dec 2015 03:41:36 GMT Accept-Ranges: bytes ETag: "8a0516d6-62d3-5208037c2f68d" Server: Apache Vary: negotiate Content-Length: 25299 Content-Location: index.html.html Content-Type: text/html Last-Modified: Thu, 24 Sep 2015 15:52:26 GMT TCN: choice | clean |
http://www.geardogfirewall.com/prox1.html.html | 200 OK Content-Length: 46641 Content-Type: text/html | clean |
http://www.geardogfirewall.com/resale/resales.html.html | 200 OK Content-Length: 36757 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=geardogfirewall.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://geardogfirewall.com/
Result: geardogfirewall.com is not infected or malware details are not published yet.
Result: geardogfirewall.com is not infected or malware details are not published yet.