Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: poorterslaapcomfort.nl
Result:
GET / HTTP/1.1
Host: poorterslaapcomfort.nl
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: poorterslaapcomfort.nl
Referer: http://www.google.com/search?q=poorterslaapcomfort.nl
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: poorterslaapcomfort.nl
Referer: http://www.google.com/search?q=poorterslaapcomfort.nl
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://www.poorterslaapcomfort.nl/ | HTTP/1.1 301 Moved Permanently Date: Thu, 18 Dec 2014 05:40:56 GMT Location: http://www.beddenspecialist.nl/franspoorter/ Server: Microsoft-IIS/6.0 Content-Length: 0 Content-Type: text/html X-Powered-By: ASP.NET X-Powered-By: PHP/5.2.13 | clean |
http://www.beddenspecialist.nl/franspoorter/ | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://www.beddenspecialist.nl/test404page.js | HTTP/1.1 301 MOVED PERMANENTLY Connection: close Date: Thu, 18 Dec 2014 05:41:05 GMT Location: http://www.beddenspecialist.nl/test404page.js/ Server: nginx Vary: Accept-Language, Cookie Content-Language: nl Content-Type: text/html; charset=utf-8 X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-XSS-Protection: 1; mode=block | clean |
http://www.beddenspecialist.nl/test404page.js/ | 404 NOT FOUND Content-Length: 33128 Content-Type: text/html | clean |
http://www.google.com/jsapi | 200 OK Content-Length: 24552 Content-Type: text/javascript | clean |
http://www.beddenspecialist.nl/static/CACHE/js/cb979ddce130.js | 200 OK Content-Length: 7593 Content-Type: application/javascript | clean |
https://maps.googleapis.com/maps/api/js?sensor=false | 200 OK Content-Length: 4359 Content-Type: text/javascript | clean |
http://www.beddenspecialist.nl/static/CACHE/js/efc41bf28151.js | 200 OK Content-Length: 222679 Content-Type: application/javascript | clean |
http://www.beddenspecialist.nl/ | 200 OK Content-Length: 52858 Content-Type: text/html | clean |
http://www.beddenspecialist.nl/static/CACHE/js/8a64056c27af.js | 200 OK Content-Length: 15 Content-Type: application/javascript | clean |
http://www.beddenspecialist.nl/accounts/register/ | 200 OK Content-Length: 36050 Content-Type: text/html | clean |
http://www.beddenspecialist.nl/accounts/login/ | 200 OK Content-Length: 34953 Content-Type: text/html | clean |
http://www.beddenspecialist.nl/klantenservice/ | 200 OK Content-Length: 39164 Content-Type: text/html | clean |
http://www.beddenspecialist.nl/over-ons/ | 200 OK Content-Length: 36557 Content-Type: text/html | clean |
http://www.beddenspecialist.nl/contact/ | 200 OK Content-Length: 38213 Content-Type: text/html | clean |
http://www.beddenspecialist.nl/accounts/wachtwoord/reset/ | 200 OK Content-Length: 34219 Content-Type: text/html | clean |
http://www.beddenspecialist.nl/onze-producten/ | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=poorterslaapcomfort.nl
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://poorterslaapcomfort.nl/
Result: poorterslaapcomfort.nl is not infected or malware details are not published yet.
Result: poorterslaapcomfort.nl is not infected or malware details are not published yet.