Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: vaaqua.co.uk
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache
Date: Thu, 16 Jul 2015 02:55:53 GMT
Pragma: no-cache
Server: Microsoft-IIS/7.5
Content-Length: 7450
Content-Type: text/html; charset=utf-8
Expires: -1
P3p: CP="CAO PSA OUR"
Set-Cookie: SessionID=0e93ca40-d6c2-431b-a10a-b133464fe434; path=/
Set-Cookie: VisitorID=ac7f5cd4-3d2c-4a51-8ab8-99d25240e8b7&Exp=7/15/2018 7:55:53 PM; expires=Mon, 16-Jul-2018 02:55:53 GMT; path=/
X-AspNet-Version: 4.0.30319
X-Powered-By: ASP.NET
...7450 bytes of data.
GET / HTTP/1.1
Host: vaaqua.co.uk
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache
Date: Thu, 16 Jul 2015 02:55:53 GMT
Pragma: no-cache
Server: Microsoft-IIS/7.5
Content-Length: 7450
Content-Type: text/html; charset=utf-8
Expires: -1
P3p: CP="CAO PSA OUR"
Set-Cookie: SessionID=0e93ca40-d6c2-431b-a10a-b133464fe434; path=/
Set-Cookie: VisitorID=ac7f5cd4-3d2c-4a51-8ab8-99d25240e8b7&Exp=7/15/2018 7:55:53 PM; expires=Mon, 16-Jul-2018 02:55:53 GMT; path=/
X-AspNet-Version: 4.0.30319
X-Powered-By: ASP.NET
...7450 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: vaaqua.co.uk
Referer: http://www.google.com/search?q=vaaqua.co.uk
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: vaaqua.co.uk
Referer: http://www.google.com/search?q=vaaqua.co.uk
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://vaaqua.co.uk/ | 200 OK Content-Length: 7450 Content-Type: text/html | clean |
http://code.jquery.com/jquery-latest.min.js | 200 OK Content-Length: 95786 Content-Type: application/javascript | clean |
http://vaaqua.co.uk/js/standard.js?rte=1&tm=2&dn=vaaqua.co.uk&tid=1020 | 200 OK Content-Length: 1297 Content-Type: text/javascript | clean |
http://vaaqua.co.uk/js/google_caf.js?rte=1&tm=2&dn=vaaqua.co.uk&tid=1020 | 200 OK Content-Length: 9155 Content-Type: text/javascript | clean |
http://www.google.com/adsense/domains/caf.js | 200 OK Content-Length: 214930 Content-Type: text/javascript | clean |
http://vaaqua.co.uk/renewal.aspx | 200 OK Content-Length: 1716 Content-Type: text/html | clean |
http://vaaqua.co.uk/test404page.js | 200 OK Content-Length: 7461 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=vaaqua.co.uk
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://vaaqua.co.uk/
Result: vaaqua.co.uk is not infected or malware details are not published yet.
Result: vaaqua.co.uk is not infected or malware details are not published yet.