Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=valgardena.biz
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://valgardena.biz/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: valgardena.biz
Result:
HTTP/1.1 302 Found
Connection: close
Date: Fri, 03 Oct 2014 02:09:26 GMT
Location: http://www.groeden.it/
Server: Apache
Vary: Accept-Encoding
Content-Length: 206
Content-Type: text/html; charset=iso-8859-1
...206 bytes of data.
GET / HTTP/1.1
Host: valgardena.biz
Result:
HTTP/1.1 302 Found
Connection: close
Date: Fri, 03 Oct 2014 02:09:26 GMT
Location: http://www.groeden.it/
Server: Apache
Vary: Accept-Encoding
Content-Length: 206
Content-Type: text/html; charset=iso-8859-1
...206 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: valgardena.biz
Referer: http://www.google.com/search?q=valgardena.biz
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: valgardena.biz
Referer: http://www.google.com/search?q=valgardena.biz
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://valgardena.biz/ | HTTP/1.1 302 Found Connection: close Date: Fri, 03 Oct 2014 02:09:26 GMT Location: http://www.groeden.it/ Server: Apache Vary: Accept-Encoding Content-Length: 206 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.groeden.it/ | 200 OK Content-Length: 15203 Content-Type: text/html | clean |
http://www.groeden.it/media/system/js/caption.js | 200 OK Content-Length: 1963 Content-Type: application/javascript | clean |
http://valgardena.biz/plugins/content/avreloaded/silverlight.js | HTTP/1.1 302 Found Connection: close Date: Fri, 03 Oct 2014 02:09:28 GMT Location: http://www.groeden.it/plugins/content/avreloaded/silverlight.js Server: Apache Vary: Accept-Encoding Content-Length: 247 Content-Type: text/html; charset=iso-8859-1 X-Pad: avoid browser bug | clean |
http://www.groeden.it/plugins/content/avreloaded/silverlight.js | 200 OK Content-Length: 8093 Content-Type: application/javascript | clean |
http://valgardena.biz/plugins/content/avreloaded/wmvplayer.js | HTTP/1.1 302 Found Connection: close Date: Fri, 03 Oct 2014 02:09:28 GMT Location: http://www.groeden.it/plugins/content/avreloaded/wmvplayer.js Server: Apache Vary: Accept-Encoding Content-Length: 245 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.groeden.it/plugins/content/avreloaded/wmvplayer.js | 200 OK Content-Length: 16476 Content-Type: application/javascript | clean |
http://valgardena.biz/plugins/content/avreloaded/swfobject.js | HTTP/1.1 302 Found Connection: close Date: Fri, 03 Oct 2014 02:09:29 GMT Location: http://www.groeden.it/plugins/content/avreloaded/swfobject.js Server: Apache Vary: Accept-Encoding Content-Length: 245 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.groeden.it/plugins/content/avreloaded/swfobject.js | 200 OK Content-Length: 12254 Content-Type: application/javascript | clean |
http://valgardena.biz/plugins/content/avreloaded/avreloaded.js | HTTP/1.1 302 Found Connection: close Date: Fri, 03 Oct 2014 02:09:29 GMT Location: http://www.groeden.it/plugins/content/avreloaded/avreloaded.js Server: Apache Vary: Accept-Encoding Content-Length: 246 Content-Type: text/html; charset=iso-8859-1 X-Pad: avoid browser bug | clean |
http://www.groeden.it/plugins/content/avreloaded/avreloaded.js | 200 OK Content-Length: 2359 Content-Type: application/javascript | clean |
http://valgardena.biz/templates/sommer/script.js | HTTP/1.1 302 Found Connection: close Date: Fri, 03 Oct 2014 02:09:30 GMT Location: http://www.groeden.it/templates/sommer/script.js Server: Apache Vary: Accept-Encoding Content-Length: 232 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.groeden.it/templates/sommer/script.js | 200 OK Content-Length: 6355 Content-Type: application/javascript | clean |
http://valgardena.biz/index.php?option=com_content&view=article&id=118&Itemid=54&lang=de | HTTP/1.1 302 Found Connection: close Date: Fri, 03 Oct 2014 02:09:30 GMT Location: http://www.groeden.it/index.php?option=com_content&view=article&id=118&Itemid=54&lang=de Server: Apache Vary: Accept-Encoding Content-Length: 288 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.groeden.it/index.php?option=com_content&view=article&id=118&itemid=54&lang=de | 200 OK Content-Length: 7925 Content-Type: text/html | clean |
http://www.groeden.it/templates/winter/script.js | 200 OK Content-Length: 6355 Content-Type: application/javascript | clean |
http://valgardena.biz/index.php?option=com_banners&task=click&bid=9&lang=de | HTTP/1.1 302 Found Connection: close Date: Fri, 03 Oct 2014 02:09:31 GMT Location: http://www.groeden.it/index.php?option=com_banners&task=click&bid=9&lang=de Server: Apache Vary: Accept-Encoding Content-Length: 271 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.groeden.it/index.php?option=com_banners&task=click&bid=9&lang=de | HTTP/1.1 303 See other Connection: close Date: Fri, 03 Oct 2014 02:09:31 GMT Location: http://www.alpenhotelplaza.com/ Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=ISO-8859-1 P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM" Set-Cookie: 86107149b3a9f3b9708ce70a643fc062=42e3d3ba32fbd83034272b543b6505f4; path=/ Set-Cookie: lang=deleted; expires=Thu, 03-Oct-2013 02:09:31 GMT; path=/ Set-Cookie: jfcookie=deleted; expires=Thu, 03-Oct-2013 02:09:31 GMT; path=/ Set-Cookie: jfcookie[lang]=de; expires=Sat, 04-Oct-2014 02:09:32 GMT; path=/ | clean |
http://www.alpenhotelplaza.com/ | 200 OK Content-Length: 2595 Content-Type: text/html | clean |
http://www.google-analytics.com/urchin.js | 200 OK Content-Length: 22678 Content-Type: text/javascript | clean |
http://valgardena.biz/?lang=deu | HTTP/1.1 302 Found Connection: close Date: Fri, 03 Oct 2014 02:09:32 GMT Location: http://www.groeden.it/?lang=deu Server: Apache Vary: Accept-Encoding Content-Length: 215 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.groeden.it/?lang=deu | 200 OK Content-Length: 15203 Content-Type: text/html | clean |
http://www.groeden.it/index.php?option=com_content&view=article&id=118&Itemid=54&lang=de | 200 OK Content-Length: 13244 Content-Type: text/html | clean |
http://www.groeden.it/index.php?option=com_content&view=article&id=151&Itemid=55&lang=de | 200 OK Content-Length: 14990 Content-Type: text/html | clean |
http://www.groeden.it/index.php?option=com_content&view=article&id=188&Itemid=56&lang=de | 200 OK Content-Length: 14857 Content-Type: text/html | clean |