Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: napolisportcafe.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Fri, 15 Aug 2014 18:05:28 GMT
Location: http://www.napolisportcafe.com/
Server: Apache
Content-Length: 239
Content-Type: text/html; charset=iso-8859-1
...239 bytes of data.
GET / HTTP/1.1
Host: napolisportcafe.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Fri, 15 Aug 2014 18:05:28 GMT
Location: http://www.napolisportcafe.com/
Server: Apache
Content-Length: 239
Content-Type: text/html; charset=iso-8859-1
...239 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: napolisportcafe.com
Referer: http://www.google.com/search?q=napolisportcafe.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: napolisportcafe.com
Referer: http://www.google.com/search?q=napolisportcafe.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://napolisportcafe.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 15 Aug 2014 18:05:28 GMT Location: http://www.napolisportcafe.com/ Server: Apache Content-Length: 239 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.napolisportcafe.com/ | 200 OK Content-Length: 91013 Content-Type: text/html | clean |
http://www.napolisportcafe.com/media/system/js/caption.js | 200 OK Content-Length: 1963 Content-Type: application/javascript | clean |
http://widgets.twimg.com/j/2/widget.js | 200 OK Content-Length: 1489 Content-Type: application/javascript | clean |
http://pagead2.googlesyndication.com/pagead/show_ads.js | 200 OK Content-Length: 21272 Content-Type: text/javascript | clean |
http://platform.twitter.com/widgets.js | 200 OK Content-Length: 99688 Content-Type: application/javascript | clean |
http://www.google.com/buzz/api/button.js | 200 OK Content-Length: 0 Content-Type: text/javascript | clean |
http://napolisportcafe.com/home | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 15 Aug 2014 18:05:33 GMT Location: http://www.napolisportcafe.com/home Server: Apache Content-Length: 243 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.napolisportcafe.com/home | 200 OK Content-Length: 116516 Content-Type: text/html | clean |
http://www.napolisportcafe.com/forum | 200 OK Content-Length: 57508 Content-Type: text/html | clean |
http://www.napolisportcafe.com/media/kunena/js/mediaboxAdv.js | 200 OK Content-Length: 44118 Content-Type: application/javascript | clean |
http://www.napolisportcafe.com/media/kunena/js/default-min.js | 200 OK Content-Length: 18442 Content-Type: application/javascript | clean |
http://www.napolisportcafe.com/mobiquo/smartbanner/appbanner.js | 200 OK Content-Length: 13100 Content-Type: application/javascript | clean |
http://www.napolisportcafe.com/articoli | 200 OK Content-Length: 14410 Content-Type: text/html | clean |
http://www.napolisportcafe.com/prime-pagine | 200 OK Content-Length: 10580 Content-Type: text/html | clean |
http://www.napolisportcafe.com/fantacalcio/revo | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 15 Aug 2014 18:05:40 GMT Location: http://www.napolisportcafe.com/fantacalcio/revo/ Server: Apache/2.2 Content-Length: 256 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.napolisportcafe.com/fantacalcio/revo/ | 200 OK Content-Length: 168500 Content-Type: text/html | clean |
http://www.napolisportcafe.com/fantacalcio/revo/core_main/subskin.php | 200 OK Content-Length: 32 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=napolisportcafe.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://napolisportcafe.com/
Result: napolisportcafe.com is not infected or malware details are not published yet.
Result: napolisportcafe.com is not infected or malware details are not published yet.