Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: viethimmobilien.de
Result:
HTTP/1.1 303 See other
Connection: close
Date: Fri, 16 May 2014 23:17:13 GMT
Location: http://viethimmobilien.de/de/
Server: Apache/2.2.26 (Unix)
Content-Length: 0
Content-Type: text/html; charset=utf-8
Set-Cookie: 2495eb713ff0de873ececf52149cc8fa=bafav310f70j4rb4me5k1mm7m7; path=/
X-Powered-By: PHP/5.3.28
...0 bytes of data.
GET / HTTP/1.1
Host: viethimmobilien.de
Result:
HTTP/1.1 303 See other
Connection: close
Date: Fri, 16 May 2014 23:17:13 GMT
Location: http://viethimmobilien.de/de/
Server: Apache/2.2.26 (Unix)
Content-Length: 0
Content-Type: text/html; charset=utf-8
Set-Cookie: 2495eb713ff0de873ececf52149cc8fa=bafav310f70j4rb4me5k1mm7m7; path=/
X-Powered-By: PHP/5.3.28
...0 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: viethimmobilien.de
Referer: http://www.google.com/search?q=viethimmobilien.de
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: viethimmobilien.de
Referer: http://www.google.com/search?q=viethimmobilien.de
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://viethimmobilien.de/ | HTTP/1.1 303 See other Connection: close Date: Fri, 16 May 2014 23:17:13 GMT Location: http://viethimmobilien.de/de/ Server: Apache/2.2.26 (Unix) Content-Length: 0 Content-Type: text/html; charset=utf-8 Set-Cookie: 2495eb713ff0de873ececf52149cc8fa=bafav310f70j4rb4me5k1mm7m7; path=/ X-Powered-By: PHP/5.3.28 | clean |
http://viethimmobilien.de/de/ | 200 OK Content-Length: 14067 Content-Type: text/html | clean |
http://viethimmobilien.de/media/system/js/mootools-core.js | 200 OK Content-Length: 96362 Content-Type: application/javascript | clean |
http://viethimmobilien.de/media/system/js/core.js | 200 OK Content-Length: 4784 Content-Type: application/javascript | clean |
http://viethimmobilien.de/media/system/js/caption.js | 200 OK Content-Length: 729 Content-Type: application/javascript | clean |
http://viethimmobilien.de/media/system/js/mootools-more.js | 200 OK Content-Length: 238331 Content-Type: application/javascript | clean |
http://viethimmobilien.de/media/com_jea/js/search.js | 200 OK Content-Length: 5366 Content-Type: application/javascript | clean |
http://viethimmobilien.de/templates/viethimmo/js/FreeSetC_400.font.js | 200 OK Content-Length: 17318 Content-Type: application/javascript | clean |
http://viethimmobilien.de/templates/viethimmo/js/scroll.js | 200 OK Content-Length: 133 Content-Type: application/javascript | clean |
http://viethimmobilien.de/templates/viethimmo/js/jquery.js | 200 OK Content-Length: 57259 Content-Type: application/javascript | clean |
http://viethimmobilien.de/templates/viethimmo/js/slideshow.js | 200 OK Content-Length: 5005 Content-Type: application/javascript | clean |
http://viethimmobilien.de/index.php | HTTP/1.1 303 See other Connection: close Date: Fri, 16 May 2014 23:17:18 GMT Location: http://viethimmobilien.de/de/ Server: Apache/2.2.26 (Unix) Content-Length: 0 Content-Type: text/html; charset=utf-8 Set-Cookie: 2495eb713ff0de873ececf52149cc8fa=ihike7f0iphduuru8oi502ekd1; path=/ X-Powered-By: PHP/5.3.28 | clean |
http://viethimmobilien.de/test404page.js | 404 Not Found Content-Length: 212 Content-Type: text/html | clean |
http://viethimmobilien.de/de/immobilien-hildesheim | 200 OK Content-Length: 24291 Content-Type: text/html | clean |
http://viethimmobilien.de/de/finanzierung-immobilie | 200 OK Content-Length: 12987 Content-Type: text/html | clean |
http://viethimmobilien.de/de/geldanlage-haus | 200 OK Content-Length: 14306 Content-Type: text/html | clean |
http://viethimmobilien.de/de/kontakt-zu-vieth-immobilien | 200 OK Content-Length: 15131 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=viethimmobilien.de
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://viethimmobilien.de/
Result: viethimmobilien.de is not infected or malware details are not published yet.
Result: viethimmobilien.de is not infected or malware details are not published yet.