Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: projection.se
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Wed, 28 Jan 2015 03:36:41 GMT
Pragma: no-cache
Via: 1.1 varnish
Age: 0
Server: Apache/2.2.16 (Debian) PHP/5.4.32-1~dotdeb.0 mod_ssl/2.2.16 OpenSSL/0.9.8o
Vary: Accept-Encoding
Content-Length: 30294
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
X-Pingback: http://projection.se/xmlrpc.php
X-Powered-By: PHP/5.4.32-1~dotdeb.0
X-Varnish: 1750766065
...30294 bytes of data.
GET / HTTP/1.1
Host: projection.se
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Wed, 28 Jan 2015 03:36:41 GMT
Pragma: no-cache
Via: 1.1 varnish
Age: 0
Server: Apache/2.2.16 (Debian) PHP/5.4.32-1~dotdeb.0 mod_ssl/2.2.16 OpenSSL/0.9.8o
Vary: Accept-Encoding
Content-Length: 30294
Content-Type: text/html; charset=UTF-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
X-Pingback: http://projection.se/xmlrpc.php
X-Powered-By: PHP/5.4.32-1~dotdeb.0
X-Varnish: 1750766065
...30294 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: projection.se
Referer: http://www.google.com/search?q=projection.se
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: projection.se
Referer: http://www.google.com/search?q=projection.se
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://www.projection.se/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 28 Jan 2015 03:36:40 GMT Via: 1.1 varnish Age: 0 Location: http://projection.se/ Server: Apache/2.2.16 (Debian) PHP/5.4.32-1~dotdeb.0 mod_ssl/2.2.16 OpenSSL/0.9.8o Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Pingback: http://projection.se/xmlrpc.php X-Powered-By: PHP/5.4.32-1~dotdeb.0 X-Varnish: 1750766062 1750766061 | clean |
http://projection.se/ | 200 OK Content-Length: 30294 Content-Type: text/html | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js | 200 OK Content-Length: 72174 Content-Type: text/javascript | clean |
http://projection.se/wp-content/themes/projection/nivo/jquery.nivo.slider.pack.js | 200 OK Content-Length: 11506 Content-Type: application/javascript | clean |
http://projection.se/wp-content/themes/projection/jquery.bxGallery.1.1.min.js | 200 OK Content-Length: 4358 Content-Type: application/javascript | clean |
http://projection.se/wp-content/themes/projection/jquery.bxGallery2.1.1.min.js | 200 OK Content-Length: 4340 Content-Type: application/javascript | clean |
http://projection.se/wp-content/themes/projection/cufon-yui.js | 200 OK Content-Length: 18264 Content-Type: application/javascript | clean |
http://projection.se/wp-content/themes/projection/Plantin_300.font.js | 200 OK Content-Length: 31706 Content-Type: application/javascript | clean |
http://projection.se/wp-content/themes/projection/Cantarell_700.font.js | 200 OK Content-Length: 19343 Content-Type: application/javascript | clean |
http://projection.se/bx/jquery.bxslider.js | 200 OK Content-Length: 49471 Content-Type: application/javascript | clean |
http://servedby.bptracking.com/v2/ron/w/5326/z/28988.js | 200 OK Content-Length: 632 Content-Type: application/x-javascript | clean |
http://www.projection.se/test404page.js | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Wed, 28 Jan 2015 03:36:44 GMT Pragma: no-cache Via: 1.1 varnish Age: 0 Location: http://projection.se/test404page.js Server: Apache/2.2.16 (Debian) PHP/5.4.32-1~dotdeb.0 mod_ssl/2.2.16 OpenSSL/0.9.8o Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT X-Pingback: http://projection.se/xmlrpc.php X-Powered-By: PHP/5.4.32-1~dotdeb.0 X-Varnish: 1750766105 | clean |
http://projection.se/test404page.js | 404 Not Found Content-Length: 30319 Content-Type: text/html | clean |
http://projection.se/?cat=27 | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 28 Jan 2015 03:36:45 GMT Via: 1.1 varnish Age: 0 Location: http://projection.se/category/presentationer/ Server: Apache/2.2.16 (Debian) PHP/5.4.32-1~dotdeb.0 mod_ssl/2.2.16 OpenSSL/0.9.8o Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Pingback: http://projection.se/xmlrpc.php X-Powered-By: PHP/5.4.32-1~dotdeb.0 X-Varnish: 1750766130 | clean |
http://projection.se/category/presentationer/ | 200 OK Content-Length: 30613 Content-Type: text/html | clean |
http://projection.se/?cat=28 | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 28 Jan 2015 03:36:46 GMT Via: 1.1 varnish Age: 0 Location: http://projection.se/category/artiklar/ Server: Apache/2.2.16 (Debian) PHP/5.4.32-1~dotdeb.0 mod_ssl/2.2.16 OpenSSL/0.9.8o Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Pingback: http://projection.se/xmlrpc.php X-Powered-By: PHP/5.4.32-1~dotdeb.0 X-Varnish: 1750766157 | clean |
http://projection.se/category/artiklar/ | 200 OK Content-Length: 24981 Content-Type: text/html | clean |
http://projection.se/?cat=9 | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 28 Jan 2015 03:36:47 GMT Via: 1.1 varnish Age: 0 Location: http://projection.se/category/modebilder/ Server: Apache/2.2.16 (Debian) PHP/5.4.32-1~dotdeb.0 mod_ssl/2.2.16 OpenSSL/0.9.8o Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Pingback: http://projection.se/xmlrpc.php X-Powered-By: PHP/5.4.32-1~dotdeb.0 X-Varnish: 1750766180 | clean |
http://projection.se/category/modebilder/ | 200 OK Content-Length: 21086 Content-Type: text/html | clean |
http://projection.se/?cat=35 | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 28 Jan 2015 03:36:48 GMT Via: 1.1 varnish Age: 0 Location: http://projection.se/category/runway/ Server: Apache/2.2.16 (Debian) PHP/5.4.32-1~dotdeb.0 mod_ssl/2.2.16 OpenSSL/0.9.8o Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Pingback: http://projection.se/xmlrpc.php X-Powered-By: PHP/5.4.32-1~dotdeb.0 X-Varnish: 1750766184 | clean |
http://projection.se/category/runway/ | 200 OK Content-Length: 22351 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=projection.se
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://projection.se/
Result: projection.se is not infected or malware details are not published yet.
Result: projection.se is not infected or malware details are not published yet.