Malicious/Suspicious Redirects
Request | Server response | Status |
URL: http://newshempstead.com/ (imitation of visitor from search engine) GET / HTTP/1.1 Host: newshempstead.com Referer: http://www.google.com/search?q=redirect+check1 | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: Close Date: Wed, 25 Jun 2014 09:38:15 GMT Pragma: no-cache Location: http://www.news.net/?sid=bufph0qrcpg98d2v86ao4vbk61 Server: Apache/2.2.15 (Red Hat) Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=bufph0qrcpg98d2v86ao4vbk61; path=/ X-Powered-By: PHP/5.3.3 | malicious |
Scanned pages/files
Request | Server response | Status |
http://newshempstead.com/ | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://newshempstead.com/test404page.js | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: Close Date: Wed, 25 Jun 2014 09:38:20 GMT Pragma: no-cache Location: http://www.news.net/test404page.js?sid=vs7tnv85l4b6gkktmrcdq3run7 Server: Apache/2.2.15 (Red Hat) Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=vs7tnv85l4b6gkktmrcdq3run7; path=/ X-Powered-By: PHP/5.3.3 | clean |
http://www.news.net/test404page.js?sid=vs7tnv85l4b6gkktmrcdq3run7 | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: Close Date: Wed, 25 Jun 2014 09:38:23 GMT Pragma: no-cache Location: /test404page.js? Server: Apache/2.2.15 (Red Hat) Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=vs7tnv85l4b6gkktmrcdq3run7; path=/ X-Powered-By: PHP/5.3.3 | clean |
http://www.news.net/test404page.js? | 404 Not Found Content-Length: 300296 Content-Type: text/html | clean |
http://www.news.net/js/dist/base.min.js?v=3.0.5.13 | 200 OK Content-Length: 96489 Content-Type: text/javascript | clean |
http://newshempstead.com/js/dist/ielt9.min.js?v=3.0.5.13 | 200 OK Content-Length: 18408 Content-Type: text/javascript | clean |
http://newshempstead.com/about | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: Close Date: Wed, 25 Jun 2014 09:38:27 GMT Pragma: no-cache Location: http://www.news.net/about?sid=lsml1fuvuorotugi6istok7r16 Server: Apache/2.2.15 (Red Hat) Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=lsml1fuvuorotugi6istok7r16; path=/ X-Powered-By: PHP/5.3.3 | clean |
http://www.news.net/about?sid=lsml1fuvuorotugi6istok7r16 | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: Close Date: Wed, 25 Jun 2014 09:38:28 GMT Pragma: no-cache Location: /about? Server: Apache/2.2.15 (Red Hat) Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=lsml1fuvuorotugi6istok7r16; path=/ X-Powered-By: PHP/5.3.3 | clean |
http://www.news.net/about? | 200 OK Content-Length: 24903 Content-Type: text/html | clean |
http://www.news.net/js/dist/ielt9.min.js?v=3.0.5.13 | 200 OK Content-Length: 18408 Content-Type: text/javascript | clean |
http://newshempstead.com/js/dist/btf.min.js?v=3.0.5.13 | 200 OK Content-Length: 39933 Content-Type: text/javascript | clean |
http://newshempstead.com/js/dist/btf_pc.min.js?v=3.0.5.13 | 200 OK Content-Length: 34768 Content-Type: text/javascript | clean |
http://tags.crwdcntrl.net/c/4420/cc.js?ns=_cc4420 | 200 OK Content-Length: 38887 Content-Type: application/x-javascript | clean |
http://newshempstead.com/contact | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: Close Date: Wed, 25 Jun 2014 09:38:33 GMT Pragma: no-cache Location: http://www.news.net/contact?sid=690uoq76imk7ft32cd908dvpm0 Server: Apache/2.2.15 (Red Hat) Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=690uoq76imk7ft32cd908dvpm0; path=/ X-Powered-By: PHP/5.3.3 | clean |
http://www.news.net/contact?sid=690uoq76imk7ft32cd908dvpm0 | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: Close Date: Wed, 25 Jun 2014 09:38:33 GMT Pragma: no-cache Location: /contact? Server: Apache/2.2.15 (Red Hat) Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=690uoq76imk7ft32cd908dvpm0; path=/ X-Powered-By: PHP/5.3.3 | clean |
http://www.news.net/contact? | 200 OK Content-Length: 22801 Content-Type: text/html | clean |
http://www.news.net/js/dist/btf.min.js?v=3.0.5.13 | 500 Server closed connection without sending any data back Content-Length: 105 Content-Type: text/plain | clean |
http://www.news.net/test404page.js | 404 Not Found Content-Length: 300344 Content-Type: text/html | clean |
http://www.news.net/?sid=fqu048t9lnu5erpafr74qbvk72 | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://www.news.net/Top+Stories?sid=fqu048t9lnu5erpafr74qbvk72 | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: Close Date: Wed, 25 Jun 2014 09:38:51 GMT Pragma: no-cache Location: /Top+Stories? Server: Apache/2.2.15 (Red Hat) Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=fqu048t9lnu5erpafr74qbvk72; path=/ X-Powered-By: PHP/5.3.3 | clean |
http://www.news.net/top+stories? | 404 Not Found Content-Length: 300521 Content-Type: text/html | clean |
http://www.news.net/?sid=pavqclu1doe1o789odd2be1f80 | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: Close Date: Wed, 25 Jun 2014 09:38:58 GMT Pragma: no-cache Location: / Server: Apache/2.2.15 (Red Hat) Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=pavqclu1doe1o789odd2be1f80; path=/ X-Powered-By: PHP/5.3.3 | clean |
http://www.news.net/ | 200 OK Content-Length: 300297 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=newshempstead.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://newshempstead.com/
Result: newshempstead.com is not infected or malware details are not published yet.
Result: newshempstead.com is not infected or malware details are not published yet.