Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: irishproperties.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 18 Dec 2014 13:53:09 GMT
Accept-Ranges: bytes
ETag: "4520f5-40a2-541a7de0"
Server: XXXXXXX
Content-Length: 16546
Content-Type: text/html
Last-Modified: Thu, 18 Sep 2014 06:38:24 GMT
Set-Cookie: cookiesession1=09E73D2DURJCTF24AVNI1PSI1WJG90CA;Path=/;HttpOnly
...16546 bytes of data.
GET / HTTP/1.1
Host: irishproperties.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Thu, 18 Dec 2014 13:53:09 GMT
Accept-Ranges: bytes
ETag: "4520f5-40a2-541a7de0"
Server: XXXXXXX
Content-Length: 16546
Content-Type: text/html
Last-Modified: Thu, 18 Sep 2014 06:38:24 GMT
Set-Cookie: cookiesession1=09E73D2DURJCTF24AVNI1PSI1WJG90CA;Path=/;HttpOnly
...16546 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: irishproperties.com
Referer: http://www.google.com/search?q=irishproperties.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: irishproperties.com
Referer: http://www.google.com/search?q=irishproperties.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://irishproperties.com/ | 200 OK Content-Length: 16546 Content-Type: text/html | clean |
http://irishproperties.com/information.htm | 200 OK Content-Length: 13286 Content-Type: text/html | clean |
http://irishproperties.com/index.html | 200 OK Content-Length: 16546 Content-Type: text/html | clean |
http://irishproperties.com/properties-ireland.htm | 200 OK Content-Length: 93764 Content-Type: text/html | clean |
http://irishproperties.com/location.htm | 200 OK Content-Length: 11887 Content-Type: text/html | clean |
http://irishproperties.com/properties-county-sligo.htm | 200 OK Content-Length: 14887 Content-Type: text/html | clean |
http://irishproperties.com/contact.php | 200 OK Content-Length: 16499 Content-Type: text/html | clean |
http://irishproperties.com/recommendations.htm | 200 OK Content-Length: 13571 Content-Type: text/html | clean |
http://irishproperties.com/test404page.js | 404 Not Found Content-Length: 3612 Content-Type: text/html | clean |
http://irishproperties.com/PDF/LOCATION.pdf | 404 Not Found Content-Length: 3612 Content-Type: text/html | clean |
http://irishproperties.com/irish-property-314.html | 404 Not Found Content-Length: 3612 Content-Type: text/html | clean |
http://irishproperties.com/irish-property-108.html | 200 OK Content-Length: 13317 Content-Type: text/html | clean |
http://irishproperties.com/PDF/108mf-ky.pdf | 200 OK Content-Length: 300937 Content-Type: application/pdf | clean |
http://irishproperties.com/irish-property-114-new.htm | 200 OK Content-Length: 9530 Content-Type: text/html | clean |
http://irishproperties.com/PDF/114lr-kh-eng.pdf | 200 OK Content-Length: 226765 Content-Type: application/pdf | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=irishproperties.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://irishproperties.com/
Result: irishproperties.com is not infected or malware details are not published yet.
Result: irishproperties.com is not infected or malware details are not published yet.