Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: ascan.net.br
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 03 Mar 2015 00:02:10 GMT
Server: Apache
Content-Type: text/html; charset=UTF-8
X-Pingback: http://ascan.net.br/xmlrpc.php
GET / HTTP/1.1
Host: ascan.net.br
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 03 Mar 2015 00:02:10 GMT
Server: Apache
Content-Type: text/html; charset=UTF-8
X-Pingback: http://ascan.net.br/xmlrpc.php
Second query (visit from search engine):
GET / HTTP/1.1
Host: ascan.net.br
Referer: http://www.google.com/search?q=ascan.net.br
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: ascan.net.br
Referer: http://www.google.com/search?q=ascan.net.br
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://ascan.net.br/ | 200 OK Content-Length: 13958 Content-Type: text/html | clean |
http://ascan.net.br/wp-includes/js/jquery/jquery.js?ver=1.11.0 | 200 OK Content-Length: 96402 Content-Type: application/x-javascript | clean |
http://ascan.net.br/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/x-javascript | clean |
http://ascan.net.br/wp-content/themes/agtnoname/js/modernizr.js?ver=3.9.3 | 200 OK Content-Length: 43394 Content-Type: application/x-javascript | clean |
http://ascan.net.br/wp-content/themes/agtnoname/js/jquery.easing.1.3.js?ver=3.9.3 | 200 OK Content-Length: 8101 Content-Type: application/x-javascript | clean |
http://ascan.net.br/wp-content/themes/agtnoname/js/jquery.quicksand.js?ver=3.9.3 | 200 OK Content-Length: 14697 Content-Type: application/x-javascript | clean |
http://ascan.net.br/wp-content/themes/agtnoname/js/jquery.tweet.js?ver=3.9.3 | 200 OK Content-Length: 12105 Content-Type: application/x-javascript | clean |
http://ascan.net.br/wp-content/themes/agtnoname/js/jquery.prettyPhoto.js?ver=3.9.3 | 200 OK Content-Length: 24867 Content-Type: application/x-javascript | clean |
http://ascan.net.br/wp-content/themes/agtnoname/js/custom.js?ver=3.9.3 | 200 OK Content-Length: 42197 Content-Type: application/x-javascript | clean |
http://dtym7iokkjlif.cloudfront.net/media/js/jquery.shareaholic-publishers-sb.min.js?ver=6.1.2.0 | 200 OK Content-Length: 49666 Content-Type: application/javascript | clean |
http://ascan.net.br/wp-content/plugins/wp-spamfree/js/wpsf-js.php | 200 OK Content-Length: 1608 Content-Type: application/x-javascript | clean |
http://ascan.net.br/wp-content/plugins/email-newsletter/widget/widget.js | 200 OK Content-Length: 2615 Content-Type: application/x-javascript | clean |
http://ascan.net.br/wp-includes/js/masonry.min.js?ver=3.1.2 | 200 OK Content-Length: 31700 Content-Type: application/x-javascript | clean |
http://ascan.net.br/?page_id=631 | 200 OK Content-Length: 12017 Content-Type: text/html | clean |
http://ascan.net.br/?page_id=633 | 200 OK Content-Length: 14795 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=ascan.net.br
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://ascan.net.br/
Result: ascan.net.br is not infected or malware details are not published yet.
Result: ascan.net.br is not infected or malware details are not published yet.