Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: toastmastersroma.it
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 03 Oct 2014 18:32:30 GMT
Accept-Ranges: bytes
ETag: "2ac035e-1cf-4f1b898c3d5dd"
Server: Apache/2.4.10 (Unix) OpenSSL/1.0.1e-fips mod_bwlimited/1.4
Content-Length: 463
Content-Type: text/html
Last-Modified: Thu, 06 Feb 2014 08:24:06 GMT
...463 bytes of data.
GET / HTTP/1.1
Host: toastmastersroma.it
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 03 Oct 2014 18:32:30 GMT
Accept-Ranges: bytes
ETag: "2ac035e-1cf-4f1b898c3d5dd"
Server: Apache/2.4.10 (Unix) OpenSSL/1.0.1e-fips mod_bwlimited/1.4
Content-Length: 463
Content-Type: text/html
Last-Modified: Thu, 06 Feb 2014 08:24:06 GMT
...463 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: toastmastersroma.it
Referer: http://www.google.com/search?q=toastmastersroma.it
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: toastmastersroma.it
Referer: http://www.google.com/search?q=toastmastersroma.it
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://toastmastersroma.it/ | HTTP/1.1 200 OK Connection: close Date: Fri, 03 Oct 2014 18:32:30 GMT Accept-Ranges: bytes ETag: "2ac035e-1cf-4f1b898c3d5dd" Server: Apache/2.4.10 (Unix) OpenSSL/1.0.1e-fips mod_bwlimited/1.4 Content-Length: 463 Content-Type: text/html Last-Modified: Thu, 06 Feb 2014 08:24:06 GMT | clean |
http://www.toastmastersroma.com/ | 200 OK Content-Length: 27406 Content-Type: text/html | clean |
http://www.toastmastersroma.com/media/system/js/mootools-core.js | 200 OK Content-Length: 96362 Content-Type: application/javascript | clean |
http://toastmastersroma.it/media/system/js/core.js | 200 OK Content-Length: 4784 Content-Type: application/javascript | clean |
http://toastmastersroma.it/media/system/js/caption.js | 200 OK Content-Length: 729 Content-Type: application/javascript | clean |
http://toastmastersroma.it/media/widgetkit/js/jquery.js | 200 OK Content-Length: 94490 Content-Type: application/javascript | clean |
http://toastmastersroma.it/cache/widgetkit/widgetkit-c7e53b08.js | 404 Not Found Content-Length: 2076 Content-Type: text/html | clean |
http://toastmastersroma.it/test404page.js | 404 Not Found Content-Length: 2030 Content-Type: text/html | clean |
http://toastmastersroma.it/templates/yoo_subway/warp/js/warp.js | 404 Not Found Content-Length: 2074 Content-Type: text/html | clean |
http://toastmastersroma.it/templates/yoo_subway/warp/js/accordionmenu.js | 404 Not Found Content-Length: 2092 Content-Type: text/html | clean |
http://toastmastersroma.it/templates/yoo_subway/warp/js/dropdownmenu.js | 404 Not Found Content-Length: 2090 Content-Type: text/html | clean |
http://toastmastersroma.it/templates/yoo_subway/js/template.js | 404 Not Found Content-Length: 2072 Content-Type: text/html | clean |
http://district59.eu/next/club_618.js | 200 OK Content-Length: 356 Content-Type: application/javascript | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=toastmastersroma.it
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://toastmastersroma.it/
Result: toastmastersroma.it is not infected or malware details are not published yet.
Result: toastmastersroma.it is not infected or malware details are not published yet.