Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: gsltc.org
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 23 Apr 2014 09:59:21 GMT
Server: LiteSpeed
Content-Type: text/html; charset=UTF-8
X-Pingback: http://gsltc.org/xmlrpc.php
GET / HTTP/1.1
Host: gsltc.org
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 23 Apr 2014 09:59:21 GMT
Server: LiteSpeed
Content-Type: text/html; charset=UTF-8
X-Pingback: http://gsltc.org/xmlrpc.php
Second query (visit from search engine):
GET / HTTP/1.1
Host: gsltc.org
Referer: http://www.google.com/search?q=gsltc.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: gsltc.org
Referer: http://www.google.com/search?q=gsltc.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://gsltc.org/ | 200 OK Content-Length: 70909 Content-Type: text/html | clean |
http://gsltc.org/wp-includes/js/jquery/jquery.js?ver=1.10.2 | 200 OK Content-Length: 93085 Content-Type: application/javascript | clean |
http://gsltc.org/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://gsltc.org/wp-content/plugins/protected-posts-logout-button/logout.js?ver=3.8.3 | 200 OK Content-Length: 471 Content-Type: application/javascript | clean |
http://gsltc.org/wp-content/themes/barelycorporate/framework/frontend/assets/js/prettyphoto.js?ver=3.1.3 | 200 OK Content-Length: 22477 Content-Type: application/javascript | clean |
http://gsltc.org/wp-content/themes/barelycorporate/framework/frontend/assets/js/superfish.js?ver=1.4.8 | 200 OK Content-Length: 3060 Content-Type: application/javascript | clean |
http://gsltc.org/wp-content/themes/barelycorporate/framework/frontend/assets/js/flexslider-2.js?ver=2.0 | 200 OK Content-Length: 16100 Content-Type: application/javascript | clean |
http://gsltc.org/wp-content/themes/barelycorporate/framework/frontend/assets/js/roundabout.js?ver=1.1 | 200 OK Content-Length: 17610 Content-Type: application/javascript | clean |
http://gsltc.org/wp-content/themes/barelycorporate/framework/frontend/assets/js/themeblvd.js?ver=1.0 | 200 OK Content-Length: 2101 Content-Type: application/javascript | clean |
http://gsltc.org/wp-content/themes/barelycorporate/framework/frontend/assets/js/ios-orientationchange-fix.js?ver=3.8.3 | 200 OK Content-Length: 1507 Content-Type: application/javascript | clean |
http://gsltc.org/wp-content/plugins/google-analyticator/external-tracking.min.js?ver=6.4.7.3 | 200 OK Content-Length: 1190 Content-Type: application/javascript | clean |
http://gsltc.org/wp-content/plugins/event-calendar-3-for-php-53/xmlhttprequest.js | 200 OK Content-Length: 8646 Content-Type: application/javascript | clean |
http://gsltc.org/wp-content/plugins/event-calendar-3-for-php-53/ec3.js | 200 OK Content-Length: 12280 Content-Type: application/javascript | clean |
http://gsltc.org/about-us/ | 200 OK Content-Length: 33715 Content-Type: text/html | clean |
http://gsltc.org/wp-includes/js/comment-reply.min.js?ver=3.8.3 | 200 OK Content-Length: 757 Content-Type: application/javascript | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=gsltc.org
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://gsltc.org/
Result: gsltc.org is not infected or malware details are not published yet.
Result: gsltc.org is not infected or malware details are not published yet.