Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=webmail.gs1kenya.org
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://webmail.gs1kenya.org/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: webmail.gs1kenya.org
Result:
HTTP/1.1 401 Access Denied
Connection: close
Date: Wed, 08 Oct 2014 22:15:37 GMT
Server: nginx/1.6.2
Content-Length: 52555
Content-Type: text/html; charset="utf-8"
Set-Cookie: webmailrelogin=no; HttpOnly; path=/; port=80
Set-Cookie: webmailsession=%3a2_VQLgXij1hQVtm03kgHwOHsDdWZio5AzOaQm5E12P93leLP0mv7vVJsx9RX69fT%2cf5bae99721067693cce81816211b9819bfe2c9695bf7af44f4425e3a2813fb66; HttpOnly; path=/; port=80
...52555 bytes of data.
GET / HTTP/1.1
Host: webmail.gs1kenya.org
Result:
HTTP/1.1 401 Access Denied
Connection: close
Date: Wed, 08 Oct 2014 22:15:37 GMT
Server: nginx/1.6.2
Content-Length: 52555
Content-Type: text/html; charset="utf-8"
Set-Cookie: webmailrelogin=no; HttpOnly; path=/; port=80
Set-Cookie: webmailsession=%3a2_VQLgXij1hQVtm03kgHwOHsDdWZio5AzOaQm5E12P93leLP0mv7vVJsx9RX69fT%2cf5bae99721067693cce81816211b9819bfe2c9695bf7af44f4425e3a2813fb66; HttpOnly; path=/; port=80
...52555 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: webmail.gs1kenya.org
Referer: http://www.google.com/search?q=webmail.gs1kenya.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: webmail.gs1kenya.org
Referer: http://www.google.com/search?q=webmail.gs1kenya.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://webmail.gs1kenya.org/ | 401 Access Denied Content-Length: 52555 Content-Type: text/html | clean |
http://webmail.gs1kenya.org//ajax.googleapis.com/ajax/libs/jquery/1.10.2/jquery.min.js/ | 401 Access Denied Content-Length: 52614 Content-Type: text/html | clean |
http://webmail.gs1kenya.org//ajax.googleapis.com/ajax/libs/jquery/1.10.2/jquery.min.js/?locale=ar/ | 401 Access Denied Content-Length: 53386 Content-Type: text/html | clean |
http://webmail.gs1kenya.org//ajax.googleapis.com/ajax/libs/jquery/1.10.2/jquery.min.js/?locale=ar/?locale=ar/ | 401 Access Denied Content-Length: 39323 Content-Type: text/html | clean |
http://webmail.gs1kenya.org//ajax.googleapis.com/ajax/libs/jquery/1.10.2/jquery.min.js/?locale=ar/?locale=ar/?locale=ar/ | 401 Access Denied Content-Length: 52647 Content-Type: text/html | clean |
http://webmail.gs1kenya.org//ajax.googleapis.com/ajax/libs/jquery/1.10.2/jquery.min.js/?locale=ar/?locale=ar/?locale=ar/?locale=ar/ | 401 Access Denied Content-Length: 52658 Content-Type: text/html | clean |
http://webmail.gs1kenya.org//ajax.googleapis.com/ajax/libs/jquery/1.10.2/jquery.min.js/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/ | 401 Access Denied Content-Length: 52669 Content-Type: text/html | clean |
http://webmail.gs1kenya.org//ajax.googleapis.com/ajax/libs/jquery/1.10.2/jquery.min.js/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/ | 401 Access Denied Content-Length: 52680 Content-Type: text/html | clean |
http://webmail.gs1kenya.org//ajax.googleapis.com/ajax/libs/jquery/1.10.2/jquery.min.js/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/ | 401 Access Denied Content-Length: 52691 Content-Type: text/html | clean |
http://webmail.gs1kenya.org//ajax.googleapis.com/ajax/libs/jquery/1.10.2/jquery.min.js/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/ | 401 Access Denied Content-Length: 52702 Content-Type: text/html | clean |
http://webmail.gs1kenya.org//ajax.googleapis.com/ajax/libs/jquery/1.10.2/jquery.min.js/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/ | 401 Access Denied Content-Length: 52713 Content-Type: text/html | clean |
http://webmail.gs1kenya.org//ajax.googleapis.com/ajax/libs/jquery/1.10.2/jquery.min.js/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/ | 401 Access Denied Content-Length: 52724 Content-Type: text/html | clean |
http://webmail.gs1kenya.org//ajax.googleapis.com/ajax/libs/jquery/1.10.2/jquery.min.js/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/ | 401 Access Denied Content-Length: 52735 Content-Type: text/html | clean |
http://webmail.gs1kenya.org//ajax.googleapis.com/ajax/libs/jquery/1.10.2/jquery.min.js/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/ | 401 Access Denied Content-Length: 52746 Content-Type: text/html | clean |
http://webmail.gs1kenya.org//ajax.googleapis.com/ajax/libs/jquery/1.10.2/jquery.min.js/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/?locale=ar/ | 401 Access Denied Content-Length: 52757 Content-Type: text/html | clean |