Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: retrieverclub.at
Result:
GET / HTTP/1.1
Host: retrieverclub.at
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: retrieverclub.at
Referer: http://www.google.com/search?q=retrieverclub.at
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: retrieverclub.at
Referer: http://www.google.com/search?q=retrieverclub.at
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://www.retrieverclub.at/ | HTTP/1.1 200 OK Connection: close Date: Sun, 22 Jun 2014 06:18:04 GMT Accept-Ranges: bytes ETag: "a221af-751-53946660" Server: Apache/1.3.33 (Unix) FrontPage/5.0.2.2623 PHP/4.3.11 mod_perl/1.29 Content-Length: 1873 Content-Type: text/html Last-Modified: Sun, 08 Jun 2014 13:34:24 GMT X-Cache: MISS from www-01.inode.at | clean |
http://www.retrieverclub.at/cms | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 22 Jun 2014 06:18:04 GMT Location: http://www.retrieverclub.at/cms/ Server: Apache/1.3.33 (Unix) FrontPage/5.0.2.2623 PHP/4.3.11 mod_perl/1.29 Content-Type: text/html; charset=iso-8859-1 X-Cache: MISS from www-01.inode.at | clean |
http://www.retrieverclub.at/cms/ | 200 OK Content-Length: 29219 Content-Type: text/html | clean |
http://www.retrieverclub.at/cms/themes/oerc/javascript.js | 200 OK Content-Length: 891 Content-Type: application/x-javascript | clean |
http://www.retrieverclub.at/?section=media1 | HTTP/1.1 200 OK Connection: close Date: Sun, 22 Jun 2014 06:18:05 GMT Accept-Ranges: bytes ETag: "a221af-751-53946660" Server: Apache/1.3.33 (Unix) FrontPage/5.0.2.2623 PHP/4.3.11 mod_perl/1.29 Content-Length: 1873 Content-Type: text/html Last-Modified: Sun, 08 Jun 2014 13:34:24 GMT X-Cache: MISS from www-01.inode.at | clean |
http://www.retrieverclub.at/test404page.js | 404 Not Found Content-Length: 2506 Content-Type: text/html | clean |
http://www.retrieverclub.at/cms/index.php?page=767 | 200 OK Content-Length: 22692 Content-Type: text/html | clean |
http://www.retrieverclub.at/cms/?section=media1 | 200 OK Content-Length: 34565 Content-Type: text/html | clean |
http://www.retrieverclub.at/cms/index.php?page=717 | 200 OK Content-Length: 19454 Content-Type: text/html | clean |
http://www.retrieverclub.at/cms/?section=home | 200 OK Content-Length: 29219 Content-Type: text/html | clean |
http://www.retrieverclub.at/cms/?page=668 | 200 OK Content-Length: 17259 Content-Type: text/html | clean |
http://www.retrieverclub.at/cms/?section=sitemap | 200 OK Content-Length: 80496 Content-Type: text/html | clean |
http://www.retrieverclub.at/cms/index.php?section=docsys | 200 OK Content-Length: 16100 Content-Type: text/html | clean |
http://www.retrieverclub.at/cms/index.php?section=media1 | 200 OK Content-Length: 34583 Content-Type: text/html | clean |
http://www.retrieverclub.at/cms/index.php?section=home | 200 OK Content-Length: 29219 Content-Type: text/html | clean |
http://www.retrieverclub.at/cms/index.php?page=715 | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sun, 22 Jun 2014 06:18:10 GMT Location: http://shop.retrieverclub.at Server: Apache/1.3.33 (Unix) FrontPage/5.0.2.2623 PHP/4.3.11 mod_perl/1.29 Content-Type: text/html Set-Cookie: backendLangId=1; expires=Tue, 22-Jul-14 06:18:10 GMT Set-Cookie: langId=1; expires=Tue, 22-Jul-14 06:18:10 GMT X-Cache: MISS from www-01.inode.at X-Powered-By: PHP/4.3.11 | clean |
http://shop.retrieverclub.at/ | 200 OK Content-Length: 13867 Content-Type: text/html | clean |
http://shop.retrieverclub.at/bundles/scripts/knpypxctegwqezcoebj3gqxhhncy9t0ib2wedrbpiw81.js?v=IxTBPGUV0Ux58HkPyR4tigmHB8GplFUZU6P2JhL9pCQ1 | 200 OK Content-Length: 217180 Content-Type: text/javascript | clean |
http://www.retrieverclub.at/register | 404 Not Found Content-Length: 2506 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=retrieverclub.at
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://retrieverclub.at/
Result: retrieverclub.at is not infected or malware details are not published yet.
Result: retrieverclub.at is not infected or malware details are not published yet.