Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: iggyjingles.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 10 Oct 2014 02:46:28 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Link: <http://iggyjingles.com/>; rel=shortlink
X-Pingback: http://iggyjingles.com/xmlrpc.php
GET / HTTP/1.1
Host: iggyjingles.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 10 Oct 2014 02:46:28 GMT
Server: Apache
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Link: <http://iggyjingles.com/>; rel=shortlink
X-Pingback: http://iggyjingles.com/xmlrpc.php
Second query (visit from search engine):
GET / HTTP/1.1
Host: iggyjingles.com
Referer: http://www.google.com/search?q=iggyjingles.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: iggyjingles.com
Referer: http://www.google.com/search?q=iggyjingles.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://stanleysroland-do.com/ | 200 OK Content-Length: 13987 Content-Type: text/html | clean |
http://stanleysroland-do.com/media/system/js/caption.js | 200 OK Content-Length: 1963 Content-Type: application/javascript | clean |
http://static.ak.fbcdn.net/connect.php/js/FB.Share | 200 OK Content-Length: 164790 Content-Type: application/x-javascript | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.3.2/jquery.min.js | 200 OK Content-Length: 57254 Content-Type: text/javascript | clean |
http://stanleysroland-do.com/index.php | 200 OK Content-Length: 13987 Content-Type: text/html | clean |
http://stanleysroland-do.com/index.php?option=com_content&view=article&id=18&Itemid=32 | 200 OK Content-Length: 12941 Content-Type: text/html | clean |
http://stanleysroland-do.com/index.php?option=com_content&view=article&id=16&Itemid=40 | 200 OK Content-Length: 14485 Content-Type: text/html | clean |
http://stanleysroland-do.com/index.php?option=com_content&view=article&id=11&Itemid=2 | 200 OK Content-Length: 36346 Content-Type: text/html | clean |
http://stanleysroland-do.com/index.php?option=com_content&view=article&id=17&Itemid=25 | 200 OK Content-Length: 12973 Content-Type: text/html | clean |
http://stanleysroland-do.com/index.php?option=com_content&view=article&id=6&Itemid=6 | 200 OK Content-Length: 14939 Content-Type: text/html | clean |
http://stanleysroland-do.com/index.php?option=com_virtuemart&Itemid=27 | HTTP/1.1 303 See other Connection: close Date: Thu, 21 Aug 2014 17:51:36 GMT Location: http://www.stanleyrolanddo.com/index.php?option=com_virtuemart&Itemid=27&vmcchk=1&Itemid=27 Server: Apache Content-Length: 0 Content-Type: text/html P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM" Set-Cookie: 3ea63caec68acce96ec0aee98f63828e=5f92f7773654c525a3aa78158eae94ac; path=/ Set-Cookie: virtuemart=5f92f7773654c525a3aa78158eae94ac X-Powered-By: PHP/5.3.27 | malicious |
http://www.stanleyrolanddo.com/index.php?option=com_virtuemart&itemid=27&vmcchk=1&itemid=27 | 200 OK Content-Length: 15044 Content-Type: text/html | clean |
http://www.stanleyrolanddo.com/components/com_virtuemart/fetchscript.php?gzip=0&subdir[0]=/themes/default&file[0]=theme.js&subdir[1]=/js&file[1]=sleight.js&subdir[2]=/js/mootools&file[2]=mootools-release-1.11.js&subdir[3]=/js/mootools&file[3]=mooPrompt.js | 200 OK Content-Length: 56349 Content-Type: text/javascript | clean |
http://www.stanleyrolanddo.com/components/com_virtuemart/fetchscript.php?gzip=0&subdir[0]=/js&file[0]=wz_tooltip.js | 200 OK Content-Length: 36758 Content-Type: text/javascript | clean |
http://stanleysroland-do.com/index.php?option=com_virtuemart&page=shop.browse&category_id=1&Itemid=92 | HTTP/1.1 303 See other Connection: close Date: Thu, 21 Aug 2014 17:51:40 GMT Location: http://www.stanleyrolanddo.com/index.php?option=com_virtuemart&page=shop.browse&category_id=1&Itemid=92&vmcchk=1&Itemid=92 Server: Apache Content-Length: 0 Content-Type: text/html P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM" Set-Cookie: 3ea63caec68acce96ec0aee98f63828e=9f523156a97ab3fb8e3189e2695b462b; path=/ Set-Cookie: virtuemart=9f523156a97ab3fb8e3189e2695b462b X-Powered-By: PHP/5.3.27 | malicious |
http://www.stanleyrolanddo.com/index.php?option=com_virtuemart&page=shop.browse&category_id=1&itemid=92&vmcchk=1&itemid=92 | 200 OK Content-Length: 27792 Content-Type: text/html | clean |
http://www.stanleyrolanddo.com/index.php | 200 OK Content-Length: 13993 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=stanleysroland-do.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://stanleysroland-do.com/
Result: stanleysroland-do.com is not infected or malware details are not published yet.
Result: stanleysroland-do.com is not infected or malware details are not published yet.