Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: musicupdates.dk
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Fri, 15 Aug 2014 20:11:23 GMT
Pragma: no-cache
Server: nginx
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Last-Modified: Fri, 15 Aug 2014 20:11:23 +0000
Generator: .SITE CMS v3.0 (c) 2007-2014 Justworks ApS - it@justworks.dk - +45 31 400 410 - https://justworks.dk/
P3P: CP="ALL DSP COR NID CUR OUR NOR"
Set-Cookie: JWSESSID=c0spsha9v65ndhqtajhtlb55dvk628v6; path=/
Set-Cookie: client=371738c697a66b7f3189f7bc0d907ac8; expires=Sat, 15-Aug-2015 20:11:23 GMT; path=/
GET / HTTP/1.1
Host: musicupdates.dk
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Fri, 15 Aug 2014 20:11:23 GMT
Pragma: no-cache
Server: nginx
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Last-Modified: Fri, 15 Aug 2014 20:11:23 +0000
Generator: .SITE CMS v3.0 (c) 2007-2014 Justworks ApS - it@justworks.dk - +45 31 400 410 - https://justworks.dk/
P3P: CP="ALL DSP COR NID CUR OUR NOR"
Set-Cookie: JWSESSID=c0spsha9v65ndhqtajhtlb55dvk628v6; path=/
Set-Cookie: client=371738c697a66b7f3189f7bc0d907ac8; expires=Sat, 15-Aug-2015 20:11:23 GMT; path=/
Second query (visit from search engine):
GET / HTTP/1.1
Host: musicupdates.dk
Referer: http://www.google.com/search?q=musicupdates.dk
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: musicupdates.dk
Referer: http://www.google.com/search?q=musicupdates.dk
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://www.musicupdates.dk/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Fri, 15 Aug 2014 20:11:23 GMT Pragma: no-cache Location: http://musicupdates.dk/ Server: nginx Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Fri, 15 Aug 2014 20:11:23 +0000 Generator: .SITE CMS v3.0 (c) 2007-2014 Justworks ApS - it@justworks.dk - +45 31 400 410 - https://justworks.dk/ P3P: CP="ALL DSP COR NID CUR OUR NOR" Set-Cookie: JWSESSID=82tlc4aj5c5i7u8dageqvd90aeiogvqa; path=/ Set-Cookie: client=052f4841147c0b44908e5dee54116e0d; expires=Sat, 15-Aug-2015 20:11:23 GMT; path=/ X-Robots-Tag: noindex | clean |
http://musicupdates.dk/ | 200 OK Content-Length: 90081 Content-Type: text/html | clean |
http://musicupdates.dk/js/EAS_tag.1.0.js | 200 OK Content-Length: 12639 Content-Type: application/x-javascript | clean |
http://www.musicupdates.dk/js/jquery-1.7.1.min.js | 200 OK Content-Length: 93868 Content-Type: application/x-javascript | clean |
http://www.musicupdates.dk/js/jquery-ui-1.8.10.custom.min.js | 200 OK Content-Length: 207380 Content-Type: application/x-javascript | clean |
http://www.musicupdates.dk/js/keyhandler.js | 200 OK Content-Length: 1513 Content-Type: application/x-javascript | clean |
http://www.musicupdates.dk/js/swfobject/swfobject.js | 200 OK Content-Length: 8868 Content-Type: application/x-javascript | clean |
http://www.musicupdates.dk/js/jquery/jquery.scrollTo-1.4.2-min.js | 200 OK Content-Length: 2262 Content-Type: application/x-javascript | clean |
http://www.musicupdates.dk/js/jquery-uploadify/jquery.uploadify.v2.1.0.min.js | 200 OK Content-Length: 7563 Content-Type: application/x-javascript | clean |
http://www.musicupdates.dk/js/cufon_1.09i.js | 200 OK Content-Length: 18259 Content-Type: application/x-javascript | clean |
http://www.musicupdates.dk/js/fonts/metabold.font.js | 200 OK Content-Length: 38715 Content-Type: application/x-javascript | clean |
http://www.musicupdates.dk/js/fonts/geogrotesque_400-geogrotesque_700.font.js | 200 OK Content-Length: 131497 Content-Type: application/x-javascript | clean |
http://www.musicupdates.dk/js/highslide/highslide/highslide-full.min.js | 200 OK Content-Length: 71109 Content-Type: application/x-javascript | clean |
http://www.musicupdates.dk/js/misc.js | 200 OK Content-Length: 14098 Content-Type: application/x-javascript | clean |
http://www.musicupdates.dk/js/gallerypop.js | 200 OK Content-Length: 3517 Content-Type: application/x-javascript | clean |
http://www.musicupdates.dk/artikler/kategorier/temaer.2746.html | HTTP/1.1 301 Moved Permanently Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Fri, 15 Aug 2014 20:11:33 GMT Pragma: no-cache Location: http://musicupdates.dk/artikler/kategorier/temaer.2746.html Server: nginx Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Fri, 15 Aug 2014 20:11:32 +0000 Generator: .SITE CMS v3.0 (c) 2007-2014 Justworks ApS - it@justworks.dk - +45 31 400 410 - https://justworks.dk/ P3P: CP="ALL DSP COR NID CUR OUR NOR" Set-Cookie: JWSESSID=jnakl1cr37sbtcka0rlj3dg1ubec6hk3; path=/ Set-Cookie: client=071e6f67ddfb40628f73168ee15b5501; expires=Sat, 15-Aug-2015 20:11:32 GMT; path=/ X-Robots-Tag: noindex | clean |
http://musicupdates.dk/artikler/kategorier/temaer.2746.html | 200 OK Content-Length: 103939 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=musicupdates.dk
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://musicupdates.dk/
Result: musicupdates.dk is not infected or malware details are not published yet.
Result: musicupdates.dk is not infected or malware details are not published yet.