Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://gemifoto.com/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: gemifoto.com Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Fri, 29 Aug 2014 02:19:17 GMT Location: http://vados.biz/go Server: Apache/2.4.10 (Unix) OpenSSL/1.0.1e-fips mod_bwlimited/1.4 Content-Length: 0 Content-Type: text/html X-Powered-By: PHP/5.5.16 | malicious |
URL: http://vados.biz/go/ (imitation of visitor from search engine) GET /go/ HTTP/1.1 Host: vados.biz Referer: http://www.google.com/search?q=redirect+check2 | HTTP/1.1 302 Found Connection: close Date: Fri, 29 Aug 2014 02:18:51 GMT Location: http://online-canadapharmacy.com/ Server: nginx/1.4.1 Content-Length: 292 Content-Type: text/html; charset=iso-8859-1 | suspicious |
Scanned pages/files
Request | Server response | Status |
http://gemifoto.com/ | 200 OK Content-Length: 53935 Content-Type: text/html | clean |
http://gemifoto.com/index.php/combined/javascript/475548c4369bf7f55de5912854884972.js | 200 OK Content-Length: 300475 Content-Type: application/javascript | clean |
http://www.google.com/jsapi?key=ABQIAAAAyU-70up-KAXI7J88EesVFRSbAWKhjOmWAyaoZKU2j_kOzq3AfBRMI8_T6kvOF2mkoQH3cBgSaDnmzg | 200 OK Content-Length: 24627 Content-Type: text/javascript | clean |
http://gemifoto.com/modules/carousel/js/jquery.mousewheel.min.js | 200 OK Content-Length: 1172 Content-Type: application/javascript | clean |
http://pagead2.googlesyndication.com/pagead/show_ads.js | 200 OK Content-Length: 21259 Content-Type: text/javascript | clean |
http://e.cooliris.com/slideshow/v/37732/go.js | 200 OK Content-Length: 630 Content-Type: application/x-javascript | clean |
http://gemifoto.com/index.php/ | 200 OK Content-Length: 53824 Content-Type: text/html | clean |
http://gemifoto.com/index.php/login/ajax | 200 OK Content-Length: 2135 Content-Type: text/html | clean |
http://gemifoto.com/index.php/login/ | 404 File Not Found Content-Length: 6716 Content-Type: text/html | clean |
http://gemifoto.com/index.php/register | 200 OK Content-Length: 1132 Content-Type: text/html | clean |
http://gemifoto.com/test404page.js | 404 Not Found Content-Length: 445 Content-Type: text/html | clean |
http://gemifoto.com/index.php/favourites | 500 Internal Server Error Content-Length: 4550 Content-Type: text/html | clean |
http://gemifoto.com/index.php/favourites/save | 200 OK Content-Length: 1027 Content-Type: text/html | clean |
http://gemifoto.com/index.php/YARDIMCI-GEM-LER-BUNKERLER | 200 OK Content-Length: 33888 Content-Type: text/html | clean |
http://gemifoto.com/index.php/?show=61 | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Fri, 29 Aug 2014 02:19:29 GMT Pragma: no-cache Location: http://gemifoto.com/index.php/ Server: Apache/2.4.10 (Unix) OpenSSL/1.0.1e-fips mod_bwlimited/1.4 Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: g3sid=db9ffb20586bb9ab023f29798e6f9b39; expires=Fri, 05-Sep-2014 02:19:29 GMT; Max-Age=604800; path=/; HttpOnly Set-Cookie: g3sid=5088e5e5dea88aea169ebd904f810330b5c73c38%7Edb9ffb20586bb9ab023f29798e6f9b39; expires=Fri, 05-Sep-2014 02:19:29 GMT; Max-Age=604800; path=/; httponly X-Frame-Options: SAMEORIGIN X-Powered-By: PHP/5.5.16 | clean |
http://gemifoto.com/index.php/YARDIMCI-GEM-LER-BUNKERLER/YAKIT-1 | 200 OK Content-Length: 37645 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=gemifoto.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://gemifoto.com/
Result: gemifoto.com is not infected or malware details are not published yet.
Result: gemifoto.com is not infected or malware details are not published yet.