Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: mygolfgameplan.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Wed, 14 May 2014 05:00:05 GMT
Pragma: no-cache
Server: Apache/2.2.3 (CentOS)
Content-Type: text/html; charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: CMSSESSID98312f96=l2dkem11t2lk5u0nq5no3pmgk5; path=/
X-Powered-By: PHP/5.1.6
GET / HTTP/1.1
Host: mygolfgameplan.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Wed, 14 May 2014 05:00:05 GMT
Pragma: no-cache
Server: Apache/2.2.3 (CentOS)
Content-Type: text/html; charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: CMSSESSID98312f96=l2dkem11t2lk5u0nq5no3pmgk5; path=/
X-Powered-By: PHP/5.1.6
Second query (visit from search engine):
GET / HTTP/1.1
Host: mygolfgameplan.com
Referer: http://www.google.com/search?q=mygolfgameplan.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: mygolfgameplan.com
Referer: http://www.google.com/search?q=mygolfgameplan.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://mygolfgameplan.com/ | 200 OK Content-Length: 29811 Content-Type: text/html | clean |
http://mygolfgameplan.com/lib/js/detectmobilebrowser.js | 200 OK Content-Length: 2112 Content-Type: application/x-javascript | clean |
http://mygolfgameplan.com/lib/scriptaculous/prototype.js | 200 OK Content-Length: 134057 Content-Type: application/x-javascript | clean |
http://mygolfgameplan.com/lib/scriptaculous/builder.js | 200 OK Content-Length: 4744 Content-Type: application/x-javascript | clean |
http://mygolfgameplan.com/lib/scriptaculous/effects.js | 200 OK Content-Length: 38745 Content-Type: application/x-javascript | clean |
http://mygolfgameplan.com/lib/scriptaculous/dragdrop.js | 200 OK Content-Length: 31174 Content-Type: application/x-javascript | clean |
http://mygolfgameplan.com/lib/scriptaculous/controls.js | 200 OK Content-Length: 34787 Content-Type: application/x-javascript | clean |
http://mygolfgameplan.com/lib/scriptaculous/slider.js | 200 OK Content-Length: 10194 Content-Type: application/x-javascript | clean |
http://mygolfgameplan.com/lib/scriptaculous/sound.js | 200 OK Content-Length: 1906 Content-Type: application/x-javascript | clean |
http://mygolfgameplan.com/lib/scriptaculous/updator.js | 200 OK Content-Length: 49961 Content-Type: application/x-javascript | clean |
http://mygolfgameplan.com/lib/js/common.js | 200 OK Content-Length: 78751 Content-Type: application/x-javascript | clean |
http://mygolfgameplan.com/lib/js/reactivate_account.js | 200 OK Content-Length: 1959 Content-Type: application/x-javascript | clean |
http://mygolfgameplan.com/lib/scriptaculous/lightbox.js | 200 OK Content-Length: 19031 Content-Type: application/x-javascript | clean |
http://mygolfgameplan.com/lib/js/slideshow_embed.js | 200 OK Content-Length: 24708 Content-Type: application/x-javascript | clean |
http://mygolfgameplan.com/lib/js/wz_tooltip.js | 200 OK Content-Length: 36551 Content-Type: application/x-javascript | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=mygolfgameplan.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://mygolfgameplan.com/
Result: mygolfgameplan.com is not infected or malware details are not published yet.
Result: mygolfgameplan.com is not infected or malware details are not published yet.