Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: silvertowers.com
Result:
HTTP/1.1 301 Moved Permanently
Date: Thu, 14 Aug 2014 18:40:05 GMT
Location: http://www.silvertowers.com/
Server: Microsoft-IIS/7.5
Content-Length: 151
Content-Type: text/html; charset=UTF-8
X-Powered-By: ASP.NET
...151 bytes of data.
GET / HTTP/1.1
Host: silvertowers.com
Result:
HTTP/1.1 301 Moved Permanently
Date: Thu, 14 Aug 2014 18:40:05 GMT
Location: http://www.silvertowers.com/
Server: Microsoft-IIS/7.5
Content-Length: 151
Content-Type: text/html; charset=UTF-8
X-Powered-By: ASP.NET
...151 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: silvertowers.com
Referer: http://www.google.com/search?q=silvertowers.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: silvertowers.com
Referer: http://www.google.com/search?q=silvertowers.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://silvertowers.com/ | HTTP/1.1 301 Moved Permanently Date: Thu, 14 Aug 2014 18:40:05 GMT Location: http://www.silvertowers.com/ Server: Microsoft-IIS/7.5 Content-Length: 151 Content-Type: text/html; charset=UTF-8 X-Powered-By: ASP.NET | clean |
http://www.silvertowers.com/ | 200 OK Content-Length: 42234 Content-Type: text/html | clean |
http://www.silvertowers.com/wp-content/themes/silver-towers-bones/library/js/jquery-1.7.1.min.js | 200 OK Content-Length: 93867 Content-Type: application/x-javascript | clean |
http://www.silvertowers.com/wp-content/themes/silver-towers-bones/library/js/jquery.easing.1.3.min.js | 200 OK Content-Length: 7044 Content-Type: application/x-javascript | clean |
http://www.silvertowers.com/wp-content/themes/silver-towers-bones/library/js/cufon-yui.js | 200 OK Content-Length: 18258 Content-Type: application/x-javascript | clean |
http://www.silvertowers.com/wp-content/themes/silver-towers-bones/library/fonts/univers-lt-std.font.js | 200 OK Content-Length: 46699 Content-Type: application/x-javascript | clean |
http://cloud.github.com/downloads/malsup/cycle/jquery.cycle.all.2.74.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 14 Aug 2014 18:40:31 GMT Via: 1.1 59230305fa4e8eba32de075786d44476.cloudfront.net (CloudFront) Location: https://cloud.github.com/downloads/malsup/cycle/jquery.cycle.all.2.74.js Server: CloudFront Content-Length: 183 Content-Type: text/html X-Amz-Cf-Id: 6QQ85UwBjCfcFpH5UWqrYfoRGnXuYqMVQa-xpAO--9MlGZ5u7jWwNg== X-Cache: Redirect from cloudfront | clean |
https://cloud.github.com/downloads/malsup/cycle/jquery.cycle.all.2.74.js | 403 Forbidden Content-Length: 231 Content-Type: application/xml | clean |
http://cloud.github.com/test404page.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Thu, 14 Aug 2014 18:40:32 GMT Via: 1.1 718837f3a8f35c060e6682205f72618d.cloudfront.net (CloudFront) Location: https://cloud.github.com/test404page.js Server: CloudFront Content-Length: 183 Content-Type: text/html X-Amz-Cf-Id: mvFkGg24T8QM_mPGnW_kW4eA9g8cQrGW0AKUmnoWkkEujm51GFEg7w== X-Cache: Redirect from cloudfront | clean |
https://cloud.github.com/test404page.js | 403 Forbidden Content-Length: 243 Content-Type: application/xml | clean |
http://maps.google.com/maps/api/js?sensor=false | 200 OK Content-Length: 5059 Content-Type: text/javascript | clean |
http://j.maxmind.com/app/geoip.js | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://www.silvertowers.com/wp-content/plugins/bwp-minify/min/?f=wp-content/plugins/nextgen-gallery/products/photocrati_nextgen/modules/ajax/static/ajax.js,wp-includes/js/jquery/jquery.js,wp-includes/js/jquery/jquery-migrate.min.js,wp-content/plugins/nextgen-gallery/products/photocrati_nextgen/modules/ajax/static/persist.js,wp-content/plugins/nextgen-gallery/products/photocrati_nextgen/modules/aja <span>...386 symbols skipped</span> | 200 OK Content-Length: 164022 Content-Type: application/x-javascript | clean |
http://www.silvertowers.com/wp-content/plugins/bwp-minify/min/?f=wp-content/themes/silver-towers-bones/library/js/scripts.js,wp-content/plugins/wp-jquery-lightbox/jquery.touchwipe.min.js,wp-content/plugins/wp-jquery-lightbox/jquery.lightbox.min.js,wp-content/plugins/js_composer/assets/js_composer_front.js,wp-content/plugins/js_composer/assets/flexslider/jquery.flexslider-min.js | 200 OK Content-Length: 51928 Content-Type: application/x-javascript | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=silvertowers.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://silvertowers.com/
Result: silvertowers.com is not infected or malware details are not published yet.
Result: silvertowers.com is not infected or malware details are not published yet.