Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=gmimission.org
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: gmimission.org
Result:
HTTP/1.1 200 OK
Cache-Control: pre-check=0, post-check=0, max-age=0
Connection: close
Date: Sun, 13 Apr 2014 00:25:20 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html; charset=utf-8
Expires: 0
Last-Modified: Sun, 13 Apr 2014 00:25:20 GMT
P3P: CP="ALL CURa ADMa DEVa TAIa OUR BUS IND PHY ONL UNI PUR FIN COM NAV INT DEM CNT STA POL HEA PRE LOC OTC"
Set-Cookie: PHPSESSID=4kn4q1m3ooveogpdgthqomad32; path=/
Set-Cookie: f33d2ed86bd82d4c22123c9da444d8ab=MTM5NzM0ODcyMA%3D%3D; expires=Mon, 13-Apr-2015 00:25:20 GMT; path=/
Set-Cookie: 96b28b766b7e0699aa91c9ff3d890663=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/
Set-Cookie: 2a0d2363701f23f8a75028924a3af643=NzguMTU4LjExLjIyNg%3D%3D; expires=Mon, 14-Apr-2014 00:25:20 GMT; path=/
X-Powered-By: PHP/5.3.15
X-Powered-By: PleskLin
GET / HTTP/1.1
Host: gmimission.org
Result:
HTTP/1.1 200 OK
Cache-Control: pre-check=0, post-check=0, max-age=0
Connection: close
Date: Sun, 13 Apr 2014 00:25:20 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html; charset=utf-8
Expires: 0
Last-Modified: Sun, 13 Apr 2014 00:25:20 GMT
P3P: CP="ALL CURa ADMa DEVa TAIa OUR BUS IND PHY ONL UNI PUR FIN COM NAV INT DEM CNT STA POL HEA PRE LOC OTC"
Set-Cookie: PHPSESSID=4kn4q1m3ooveogpdgthqomad32; path=/
Set-Cookie: f33d2ed86bd82d4c22123c9da444d8ab=MTM5NzM0ODcyMA%3D%3D; expires=Mon, 13-Apr-2015 00:25:20 GMT; path=/
Set-Cookie: 96b28b766b7e0699aa91c9ff3d890663=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/
Set-Cookie: 2a0d2363701f23f8a75028924a3af643=NzguMTU4LjExLjIyNg%3D%3D; expires=Mon, 14-Apr-2014 00:25:20 GMT; path=/
X-Powered-By: PHP/5.3.15
X-Powered-By: PleskLin
Second query (visit from search engine):
GET / HTTP/1.1
Host: gmimission.org
Referer: http://www.google.com/search?q=gmimission.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: gmimission.org
Referer: http://www.google.com/search?q=gmimission.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://gmimission.org/ | 200 OK Content-Length: 24600 Content-Type: text/html | clean |
http://gmimission.org/./js/jquery-1.4.2.min.js | 200 OK Content-Length: 72174 Content-Type: application/x-javascript | clean |
http://gmimission.org/./js/common.js | 200 OK Content-Length: 15354 Content-Type: application/x-javascript | clean |
http://gmimission.org/banner/diapo/scripts/jquery.min.js | 200 OK Content-Length: 91556 Content-Type: application/x-javascript | clean |
http://gmimission.org/banner/diapo/scripts/jquery.mobile-1.0rc2.customized.min.js | 200 OK Content-Length: 48433 Content-Type: application/x-javascript | clean |
http://gmimission.org/banner/diapo/scripts/jquery.easing.1.3.js | 200 OK Content-Length: 8097 Content-Type: application/x-javascript | clean |
http://gmimission.org/banner/diapo/scripts/jquery.hoverIntent.minified.js | 200 OK Content-Length: 1464 Content-Type: application/x-javascript | clean |
http://gmimission.org/banner/diapo/scripts/diapo.js | 200 OK Content-Length: 39802 Content-Type: application/x-javascript | clean |
http://savannahgroup.co/rel.php?id=5456576 | 404 Not Found Content-Length: 457 Content-Type: text/html | clean |
http://savannahgroup.co/test404page.js | 404 Not Found Content-Length: 464 Content-Type: text/html | clean |