Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: ua-prisma.be
Result:
GET / HTTP/1.1
Host: ua-prisma.be
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: ua-prisma.be
Referer: http://www.google.com/search?q=ua-prisma.be
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: ua-prisma.be
Referer: http://www.google.com/search?q=ua-prisma.be
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://www.ua-prisma.be/ | HTTP/1.1 200 OK Connection: close Date: Sun, 05 Oct 2014 04:38:42 GMT Via: 1.1 varnish Age: 0 ETag: "bd07d8a3-246-4fe3d534ff5a8" Server: Apache Vary: Accept-Encoding Content-Type: text/html Last-Modified: Tue, 15 Jul 2014 15:47:31 GMT X-Varnish: 1959146822 1959146722 | clean |
http://www.ua-prisma.be/wordpress/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 05 Oct 2014 04:38:43 GMT Via: 1.1 varnish Age: 0 Location: http://ua-prisma.be/wordpress/ Server: Apache Vary: Accept-Encoding Content-Type: text/html; charset=UTF-8 X-Pingback: http://ua-prisma.be/wordpress/xmlrpc.php X-Powered-By: PHP/5.3.29 X-Varnish: 1959146906 | clean |
http://ua-prisma.be/wordpress/ | 200 OK Content-Length: 44494 Content-Type: text/html | clean |
http://ua-prisma.be/wordpress/wp-includes/js/jquery/jquery.js?ver=1.11.0 | 200 OK Content-Length: 96402 Content-Type: application/javascript | clean |
http://ua-prisma.be/wordpress/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://ua-prisma.be/wordpress/wp-content/plugins/events-calendar/js/jquery.bgiframe.js?ver=2.1 | 200 OK Content-Length: 5044 Content-Type: application/javascript | clean |
http://ua-prisma.be/wordpress/wp-content/plugins/events-calendar/js/jquery.tooltip.min.js?ver=1.3 | 200 OK Content-Length: 4553 Content-Type: application/javascript | clean |
http://ua-prisma.be/wordpress/wp-content/plugins/poll-lite/js/default.js?ver=3.9.2 | 200 OK Content-Length: 1311 Content-Type: application/javascript | clean |
http://ua-prisma.be/wordpress/wp-content/plugins/wp-photo-album-plus/wppa.min.js?ver=5-4-05-001 | 200 OK Content-Length: 79222 Content-Type: application/javascript | clean |
http://ua-prisma.be/wordpress/wp-content/plugins/wp-photo-album-plus/wppa-init.nl.js?ver=2 | 200 OK Content-Length: 2860 Content-Type: application/javascript | clean |
http://ajax.googleapis.com/ajax/libs/swfobject/2.2/swfobject.js?ver=2.2 | 200 OK Content-Length: 10220 Content-Type: text/javascript | clean |
http://ua-prisma.be/wordpress/wp-content/plugins/meteor-slides/js/jquery.cycle.all.js?ver=3.9.2 | 200 OK Content-Length: 52194 Content-Type: application/javascript | clean |
http://ua-prisma.be/wordpress/wp-content/plugins/meteor-slides/js/jquery.metadata.v2.js?ver=3.9.2 | 200 OK Content-Length: 5112 Content-Type: application/javascript | clean |
http://ua-prisma.be/wordpress/wp-content/plugins/meteor-slides/js/jquery.touchwipe.1.1.1.js?ver=3.9.2 | 200 OK Content-Length: 2174 Content-Type: application/javascript | clean |
http://ua-prisma.be/wordpress/wp-content/plugins/meteor-slides/js/slideshow.js?ver=3.9.2 | 200 OK Content-Length: 2397 Content-Type: application/javascript | clean |
http://ua-prisma.be/wordpress/wp-includes/js/thickbox/thickbox.js?ver=3.1-20121105 | 200 OK Content-Length: 12018 Content-Type: application/javascript | clean |
http://ua-prisma.be/wordpress/wp-content/plugins/portfolio-slideshow/js/jquery.cycle.all.min.js?ver=2.99 | 200 OK Content-Length: 32046 Content-Type: application/javascript | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=ua-prisma.be
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://ua-prisma.be/
Result: ua-prisma.be is not infected or malware details are not published yet.
Result: ua-prisma.be is not infected or malware details are not published yet.