Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: rushmoorroyals.org.uk
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Wed, 23 Jul 2014 22:12:20 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=vmma4ubvojikvd73lrc4bgr3s0; path=/
X-Powered-By: PHP/5.2.17
GET / HTTP/1.1
Host: rushmoorroyals.org.uk
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Wed, 23 Jul 2014 22:12:20 GMT
Pragma: no-cache
Server: Apache
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=vmma4ubvojikvd73lrc4bgr3s0; path=/
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: rushmoorroyals.org.uk
Referer: http://www.google.com/search?q=rushmoorroyals.org.uk
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: rushmoorroyals.org.uk
Referer: http://www.google.com/search?q=rushmoorroyals.org.uk
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://rushmoorroyals.org.uk/ | 200 OK Content-Length: 40653 Content-Type: text/html | clean |
http://rushmoorroyals.org.uk/assets/23619eb9/jquery.min.js | 200 OK Content-Length: 94841 Content-Type: application/javascript | clean |
http://rushmoorroyals.org.uk/assets/4b1ad80c/jquery.prettyPhoto.js | 200 OK Content-Length: 25298 Content-Type: application/javascript | clean |
http://rushmoorroyals.org.uk/assets/3b0dd3d5/jquery.carouFredSel-6.1.0-packed.js | 200 OK Content-Length: 36417 Content-Type: application/javascript | clean |
http://rushmoorroyals.org.uk/assets/3b0dd3d5/helper-plugins/jquery.ba-throttle-debounce.min.js | 200 OK Content-Length: 732 Content-Type: application/javascript | clean |
http://rushmoorroyals.org.uk/assets/3b0dd3d5/helper-plugins/jquery.mousewheel.min.js | 200 OK Content-Length: 1392 Content-Type: application/javascript | clean |
http://rushmoorroyals.org.uk/assets/3b0dd3d5/helper-plugins/jquery.touchSwipe.min.js | 200 OK Content-Length: 4314 Content-Type: application/javascript | clean |
http://rushmoorroyals.org.uk/js/jquery.hoverIntent.minified.js | 200 OK Content-Length: 1465 Content-Type: application/javascript | clean |
http://rushmoorroyals.org.uk/js/superfish.js | 200 OK Content-Length: 3714 Content-Type: application/javascript | clean |
http://www.easyfundraising.org.uk/js/AC_RunActiveContent_QueryString.js | 200 OK Content-Length: 8140 Content-Type: text/javascript | clean |
http://rushmoorroyals.org.uk/rrsc_contacts | 200 OK Content-Length: 20906 Content-Type: text/html | clean |
http://rushmoorroyals.org.uk/login | 200 OK Content-Length: 9644 Content-Type: text/html | clean |
http://rushmoorroyals.org.uk/assets/23619eb9/jquery.yiiactiveform.js | 200 OK Content-Length: 14213 Content-Type: application/javascript | clean |
http://rushmoorroyals.org.uk/rrsc_about | 200 OK Content-Length: 14608 Content-Type: text/html | clean |
http://rushmoorroyals.org.uk/rrsc_new-members | 200 OK Content-Length: 10630 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=rushmoorroyals.org.uk
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://rushmoorroyals.org.uk/
Result: rushmoorroyals.org.uk is not infected or malware details are not published yet.
Result: rushmoorroyals.org.uk is not infected or malware details are not published yet.