Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: gsg.roethenbach.de
Result:
HTTP/1.1 200 OK
Cache-Control: private
Connection: close
Date: Sun, 01 Jun 2014 19:17:05 GMT
Server: Apache
Vary: Host
Content-Type: text/html; charset=utf-8
Expires:
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: 2e05fde958deb52717d917ad26617ac7=rberab5uprg2hf1ohuncdur684; path=/
Set-Cookie: ja_mendozite_tpl=ja_mendozite; expires=Fri, 22-May-2015 19:17:05 GMT; path=/
X-Logged-In: False
X-Powered-By: PHP/5.3.3-7+squeeze19
GET / HTTP/1.1
Host: gsg.roethenbach.de
Result:
HTTP/1.1 200 OK
Cache-Control: private
Connection: close
Date: Sun, 01 Jun 2014 19:17:05 GMT
Server: Apache
Vary: Host
Content-Type: text/html; charset=utf-8
Expires:
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: 2e05fde958deb52717d917ad26617ac7=rberab5uprg2hf1ohuncdur684; path=/
Set-Cookie: ja_mendozite_tpl=ja_mendozite; expires=Fri, 22-May-2015 19:17:05 GMT; path=/
X-Logged-In: False
X-Powered-By: PHP/5.3.3-7+squeeze19
Second query (visit from search engine):
GET / HTTP/1.1
Host: gsg.roethenbach.de
Referer: http://www.google.com/search?q=gsg.roethenbach.de
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: gsg.roethenbach.de
Referer: http://www.google.com/search?q=gsg.roethenbach.de
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://gsg.roethenbach.de/ | 200 OK Content-Length: 41987 Content-Type: text/html | clean |
http://gsg.roethenbach.de/index.php?jat3action=gzip&jat3type=js&jat3file=t3-assets%2Fjs_6414a.js | 200 OK Content-Length: 101189 Content-Type: text/javascript | clean |
http://gsg.roethenbach.de//ajax.googleapis.com/ajax/libs/jquery/1.7/jquery.min.js/ | 404 Not Found Content-Length: 321 Content-Type: text/html | clean |
http://gsg.roethenbach.de/test404page.js | 404 Not Found Content-Length: 280 Content-Type: text/html | clean |
http://gsg.roethenbach.de/index.php?jat3action=gzip&jat3type=js&jat3file=t3-assets%2Fjs_5a5a5.js | 200 OK Content-Length: 274036 Content-Type: text/javascript | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=gsg.roethenbach.de
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://gsg.roethenbach.de/
Result: gsg.roethenbach.de is not infected or malware details are not published yet.
Result: gsg.roethenbach.de is not infected or malware details are not published yet.