Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=gemibau.de
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://gemibau.de/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: gemibau.de
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Thu, 08 May 2014 16:57:10 GMT
Location: https://www.gemibau.de/
Server: Apache/2.2.13 (Linux/SUSE)
Content-Length: 311
Content-Type: text/html; charset=iso-8859-1
...311 bytes of data.
GET / HTTP/1.1
Host: gemibau.de
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Thu, 08 May 2014 16:57:10 GMT
Location: https://www.gemibau.de/
Server: Apache/2.2.13 (Linux/SUSE)
Content-Length: 311
Content-Type: text/html; charset=iso-8859-1
...311 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: gemibau.de
Referer: http://www.google.com/search?q=gemibau.de
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: gemibau.de
Referer: http://www.google.com/search?q=gemibau.de
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://gemibau.de/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 08 May 2014 16:57:10 GMT Location: https://www.gemibau.de/ Server: Apache/2.2.13 (Linux/SUSE) Content-Length: 311 Content-Type: text/html; charset=iso-8859-1 | clean |
https://www.gemibau.de/ | 200 OK Content-Length: 37443 Content-Type: text/html | clean |
https://www.gemibau.de/Script/CommonSystem/JavaScript/jquery/jquery.js?DirGlobalConfig=%2Fsrv%2Fwww%2Fgemibau.de%2FScript%2FGlobalConfig%2F | 200 OK Content-Length: 72174 Content-Type: text/x-js | clean |
https://www.gemibau.de/a | 404 Not Found Content-Length: 1047 Content-Type: text/html | clean |
http://www.gemibau.de/test404page.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 08 May 2014 16:57:13 GMT Location: https://www.gemibau.de/test404page.js Server: Apache/2.2.13 (Linux/SUSE) Content-Length: 329 Content-Type: text/html; charset=iso-8859-1 | clean |
https://www.gemibau.de/test404page.js | 404 Not Found Content-Length: 1047 Content-Type: text/html | clean |
https://www.gemibau.de/Script/CommonSystem/JavaScript/jquery/ | 403 Forbidden Content-Length: 1051 Content-Type: text/html | clean |
https://www.gemibau.de/Script/CommonSystem/JavaScript/jquery/lightbox.js?DirGlobalConfig=%2Fsrv%2Fwww%2Fgemibau.de%2FScript%2FGlobalConfig%2F | 200 OK Content-Length: 34247 Content-Type: text/x-js | clean |
https://www.gemibau.de/Script/CommonSystem/JavaScript/Core/Common2.func.js?DirGlobalConfig=%2Fsrv%2Fwww%2Fgemibau.de%2FScript%2FGlobalConfig%2F | 200 OK Content-Length: 3351 Content-Type: text/x-js | clean |