Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: neomed.it
Result:
HTTP/1.1 200 OK
Cache-Control: private
Date: Sat, 24 Jan 2015 11:56:29 GMT
Server: Microsoft-IIS/6.0
Content-Length: 64881
Content-Type: text/html; Charset=UTF-8
MicrosoftOfficeWebServer: 5.0_Pub
Set-Cookie: ASPSESSIONIDSQTSDSDS=KIJLFJLBEPOBCDFNFFGCEPNH; path=/
X-Powered-By: PleskWin
X-Powered-By: ASP.NET
...64881 bytes of data.
GET / HTTP/1.1
Host: neomed.it
Result:
HTTP/1.1 200 OK
Cache-Control: private
Date: Sat, 24 Jan 2015 11:56:29 GMT
Server: Microsoft-IIS/6.0
Content-Length: 64881
Content-Type: text/html; Charset=UTF-8
MicrosoftOfficeWebServer: 5.0_Pub
Set-Cookie: ASPSESSIONIDSQTSDSDS=KIJLFJLBEPOBCDFNFFGCEPNH; path=/
X-Powered-By: PleskWin
X-Powered-By: ASP.NET
...64881 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: neomed.it
Referer: http://www.google.com/search?q=neomed.it
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: neomed.it
Referer: http://www.google.com/search?q=neomed.it
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://neomed.it/ | 200 OK Content-Length: 64881 Content-Type: text/html | clean |
http://neomed.it/Scripts/AC_RunActiveContent.js | 200 OK Content-Length: 8321 Content-Type: application/x-javascript | clean |
http://neomed.it/diagnostics.asp | 200 OK Content-Length: 60226 Content-Type: text/html | clean |
http://neomed.it/state.asp | 200 OK Content-Length: 63513 Content-Type: text/html | clean |
http://neomed.it/medical.asp | 200 OK Content-Length: 60488 Content-Type: text/html | clean |
http://neomed.it/molecular.asp | 200 OK Content-Length: 17113 Content-Type: text/html | clean |
http://neomed.it/index.asp | 200 OK Content-Length: 64881 Content-Type: text/html | clean |
http://neomed.it/cataloghi.html | 200 OK Content-Length: 12808 Content-Type: text/html | clean |
http://neomed.it/azienda.html | 200 OK Content-Length: 68445 Content-Type: text/html | clean |
http://neomed.it/eng/Scripts/AC_RunActiveContent.js | 200 OK Content-Length: 8321 Content-Type: application/x-javascript | clean |
http://neomed.it/prodotti.html | 200 OK Content-Length: 67640 Content-Type: text/html | clean |
http://neomed.it/rivenditori.html | 200 OK Content-Length: 13687 Content-Type: text/html | clean |
http://neomed.it/contatti.html | 200 OK Content-Length: 29918 Content-Type: text/html | clean |
http://neomed.it/dove.html | 200 OK Content-Length: 11944 Content-Type: text/html | clean |
http://neomed.it/news.asp | 200 OK Content-Length: 30233 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=neomed.it
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://neomed.it/
Result: neomed.it is not infected or malware details are not published yet.
Result: neomed.it is not infected or malware details are not published yet.