Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: weissenburg.de
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Wed, 08 Oct 2014 12:22:33 GMT
Location: http://www.weissenburg.de/
Server: Apache/2.2.16
Vary: Accept-Encoding
Content-Length: 234
Content-Type: text/html; charset=iso-8859-1
...234 bytes of data.
GET / HTTP/1.1
Host: weissenburg.de
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Wed, 08 Oct 2014 12:22:33 GMT
Location: http://www.weissenburg.de/
Server: Apache/2.2.16
Vary: Accept-Encoding
Content-Length: 234
Content-Type: text/html; charset=iso-8859-1
...234 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: weissenburg.de
Referer: http://www.google.com/search?q=weissenburg.de
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: weissenburg.de
Referer: http://www.google.com/search?q=weissenburg.de
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://weissenburg.de/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 08 Oct 2014 12:22:33 GMT Location: http://www.weissenburg.de/ Server: Apache/2.2.16 Vary: Accept-Encoding Content-Length: 234 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.weissenburg.de/ | 200 OK Content-Length: 34843 Content-Type: text/html | clean |
http://www.weissenburg.de/js/weissenburg.min.js | 200 OK Content-Length: 301966 Content-Type: application/javascript | clean |
http://weissenburg.de/veranstaltungen/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Wed, 08 Oct 2014 12:22:36 GMT Location: http://www.weissenburg.de/veranstaltungen/ Server: Apache/2.2.16 Vary: Accept-Encoding Content-Length: 250 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.weissenburg.de/veranstaltungen/ | 200 OK Content-Length: 34663 Content-Type: text/html | clean |
http://www.weissenburg.de/pauschal/ | 200 OK Content-Length: 40495 Content-Type: text/html | clean |
http://maps.google.com/maps/api/js?sensor=false | 200 OK Content-Length: 5033 Content-Type: text/javascript | clean |
http://www.weissenburg.de/timm4maps/js/contentloaded.js | 200 OK Content-Length: 1331 Content-Type: application/javascript | clean |
http://www.weissenburg.de/timm4maps/js/basics_v3.php | 200 OK Content-Length: 19280 Content-Type: text/javascript | clean |
http://www.weissenburg.de/karte/ | 200 OK Content-Length: 43400 Content-Type: text/html | clean |
http://maps.google.com/maps/api/js?sensor=false&language=de | 200 OK Content-Length: 4928 Content-Type: text/javascript | clean |
http://www.weissenburg.de/timm4maps/js/gm_v3.php | 200 OK Content-Length: 12717 Content-Type: text/javascript | clean |
http://www.weissenburg.de/unterkunft/ | 200 OK Content-Length: 53572 Content-Type: text/html | clean |
http://www.weissenburg.de/shop/ | 200 OK Content-Length: 38062 Content-Type: text/html | clean |
http://www.weissenburg.de/rathaus/ | 200 OK Content-Length: 31991 Content-Type: text/html | clean |
http://www.weissenburg.de/politik/ | 200 OK Content-Length: 32664 Content-Type: text/html | clean |
http://www.weissenburg.de/oberbuergermeister/ | 200 OK Content-Length: 33607 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=weissenburg.de
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://weissenburg.de/
Result: weissenburg.de is not infected or malware details are not published yet.
Result: weissenburg.de is not infected or malware details are not published yet.