Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: ndamsena.org
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Sat, 04 Apr 2015 15:06:10 GMT
Location: http://ndamsena.org/front
Server: Apache
Content-Length: 233
Content-Type: text/html; charset=iso-8859-1
...233 bytes of data.
GET / HTTP/1.1
Host: ndamsena.org
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Sat, 04 Apr 2015 15:06:10 GMT
Location: http://ndamsena.org/front
Server: Apache
Content-Length: 233
Content-Type: text/html; charset=iso-8859-1
...233 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: ndamsena.org
Referer: http://www.google.com/search?q=ndamsena.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: ndamsena.org
Referer: http://www.google.com/search?q=ndamsena.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://ndamsena.org/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Sat, 04 Apr 2015 15:06:10 GMT Location: http://ndamsena.org/front Server: Apache Content-Length: 233 Content-Type: text/html; charset=iso-8859-1 | clean |
http://ndamsena.org/front | HTTP/1.1 301 Moved Permanently Connection: close Date: Sat, 04 Apr 2015 15:06:11 GMT Location: http://ndamsena.org/front/ Server: Apache Content-Length: 234 Content-Type: text/html; charset=iso-8859-1 | clean |
http://ndamsena.org/front/ | 200 OK Content-Length: 135458 Content-Type: text/html | clean |
http://ndamsena.org/front/media/system/js/mootools-core.js | 200 OK Content-Length: 96362 Content-Type: application/javascript | clean |
http://ndamsena.org/front/media/system/js/core.js | 200 OK Content-Length: 4784 Content-Type: application/javascript | clean |
http://ndamsena.org/front/media/system/js/caption.js | 200 OK Content-Length: 729 Content-Type: application/javascript | clean |
http://ndamsena.org/front/media/system/js/mootools-more.js | 200 OK Content-Length: 238331 Content-Type: application/javascript | clean |
http://ndamsena.org/front/modules/mod_icepanel/assets/script.js | 200 OK Content-Length: 3699 Content-Type: application/javascript | clean |
http://ndamsena.org/front/modules/mod_iceslideshow/assets/script_16.js | 200 OK Content-Length: 17062 Content-Type: application/javascript | clean |
http://ndamsena.org/front/media/com_finder/js/autocompleter.js | 200 OK Content-Length: 16256 Content-Type: application/javascript | clean |
http://platform.twitter.com/widgets.js | 200 OK Content-Length: 116619 Content-Type: application/javascript | clean |
http://widgets.twimg.com/j/2/widget.js | 200 OK Content-Length: 1489 Content-Type: application/javascript | clean |
http://ndamsena.org/front/membre | HTTP/1.1 303 See other Connection: close Date: Sat, 04 Apr 2015 15:06:20 GMT Location: http://ndamsena.org/front/membre?view=login Server: Apache Vary: Accept-Encoding,User-Agent Content-Length: 0 Content-Type: text/html; charset=utf-8 Set-Cookie: 5de6542398e51a8715adfb3b771313ac=6c82ada25dedc694e496c4914056d340; path=/ X-Powered-By: PHP/5.4.37 | clean |
http://ndamsena.org/front/membre?view=login | 200 OK Content-Length: 21276 Content-Type: text/html | clean |
http://ndamsena.org/front/donnez1 | 200 OK Content-Length: 43248 Content-Type: text/html | clean |
http://ndamsena.org/front/enregistrez-vous | 200 OK Content-Length: 23473 Content-Type: text/html | clean |
http://ndamsena.org/front/media/system/js/validate.js | 200 OK Content-Length: 2923 Content-Type: application/javascript | clean |
http://ndamsena.org/front/accueil/liens-web | 200 OK Content-Length: 25047 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=ndamsena.org
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://ndamsena.org/
Result: ndamsena.org is not infected or malware details are not published yet.
Result: ndamsena.org is not infected or malware details are not published yet.