Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: aeroart.com.pl
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Sun, 12 Oct 2014 08:07:27 GMT
Location: http://www.aeroart.com.pl/
Server: Apache
Vary: Accept-Encoding
Content-Length: 234
Content-Type: text/html; charset=iso-8859-1
Set-Cookie: 90planBAK=R698940671; path=/; expires=Sun, 12-Oct-2014 09:26:23 GMT
Set-Cookie: 90plan=R3276432163; path=/; expires=Sun, 12-Oct-2014 09:21:01 GMT
...234 bytes of data.
GET / HTTP/1.1
Host: aeroart.com.pl
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Sun, 12 Oct 2014 08:07:27 GMT
Location: http://www.aeroart.com.pl/
Server: Apache
Vary: Accept-Encoding
Content-Length: 234
Content-Type: text/html; charset=iso-8859-1
Set-Cookie: 90planBAK=R698940671; path=/; expires=Sun, 12-Oct-2014 09:26:23 GMT
Set-Cookie: 90plan=R3276432163; path=/; expires=Sun, 12-Oct-2014 09:21:01 GMT
...234 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: aeroart.com.pl
Referer: http://www.google.com/search?q=aeroart.com.pl
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: aeroart.com.pl
Referer: http://www.google.com/search?q=aeroart.com.pl
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://aeroart.com.pl/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 12 Oct 2014 08:07:27 GMT Location: http://www.aeroart.com.pl/ Server: Apache Vary: Accept-Encoding Content-Length: 234 Content-Type: text/html; charset=iso-8859-1 Set-Cookie: 90planBAK=R698940671; path=/; expires=Sun, 12-Oct-2014 09:26:23 GMT Set-Cookie: 90plan=R3276432163; path=/; expires=Sun, 12-Oct-2014 09:21:01 GMT | clean |
http://www.aeroart.com.pl/ | 200 OK Content-Length: 13291 Content-Type: text/html | clean |
http://www.aeroart.com.pl/galeria.html | 200 OK Content-Length: 9689 Content-Type: text/html | clean |
http://www.aeroart.com.pl/index.php | 200 OK Content-Length: 13291 Content-Type: text/html | clean |
http://www.aeroart.com.pl/test404page.js | 200 OK Content-Length: 13291 Content-Type: text/html | clean |
http://aeroart.com.pl/galeria | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 12 Oct 2014 08:07:30 GMT Location: http://aeroart.com.pl/galeria/ Server: Apache Vary: Accept-Encoding Content-Length: 238 Content-Type: text/html; charset=iso-8859-1 Set-Cookie: 90planBAK=R698931959; path=/; expires=Sun, 12-Oct-2014 09:28:04 GMT Set-Cookie: 90plan=R3276432163; path=/; expires=Sun, 12-Oct-2014 09:21:01 GMT | clean |
http://aeroart.com.pl/galeria/ | 200 OK Content-Length: 15689 Content-Type: text/html | clean |
http://aeroart.com.pl/galeria/assets/templates/aeroart-galeria/jquery.js | 200 OK Content-Length: 29846 Content-Type: application/javascript | clean |
http://aeroart.com.pl/galeria/assets/templates/aeroart-galeria/main.js | 200 OK Content-Length: 2632 Content-Type: application/javascript | clean |
http://aeroart.com.pl/index.php?id=12 | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 12 Oct 2014 08:07:31 GMT Location: http://www.aeroart.com.pl/index.php?id=12 Server: Apache Vary: Accept-Encoding Content-Length: 249 Content-Type: text/html; charset=iso-8859-1 Set-Cookie: 90planBAK=R698939582; path=/; expires=Sun, 12-Oct-2014 09:28:04 GMT Set-Cookie: 90plan=R3276432163; path=/; expires=Sun, 12-Oct-2014 09:09:29 GMT | clean |
http://www.aeroart.com.pl/index.php?id=12 | 200 OK Content-Length: 13291 Content-Type: text/html | clean |
http://aeroart.com.pl/galeria/index.php?id=13 | 200 OK Content-Length: 4805 Content-Type: text/html | clean |
http://aeroart.com.pl/galeria/index.php?id=12 | 200 OK Content-Length: 15689 Content-Type: text/html | clean |
http://aeroart.com.pl/galeria/index.php?id=14 | 200 OK Content-Length: 4747 Content-Type: text/html | clean |
http://aeroart.com.pl/galeria/index.php?id=15 | 200 OK Content-Length: 20863 Content-Type: text/html | clean |
http://aeroart.com.pl/galeria/index.php?id=17 | 200 OK Content-Length: 15300 Content-Type: text/html | clean |
http://aeroart.com.pl/galeria/index.php?id=18 | 200 OK Content-Length: 7838 Content-Type: text/html | clean |
http://aeroart.com.pl/galeria/index.php?id=19 | 200 OK Content-Length: 5072 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=aeroart.com.pl
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://aeroart.com.pl/
Result: aeroart.com.pl is not infected or malware details are not published yet.
Result: aeroart.com.pl is not infected or malware details are not published yet.