Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: atheles.org
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 08 Jun 2014 16:16:12 GMT
Accept-Ranges: bytes
Server: nginx/1.2.1
Content-Length: 4344
Content-Type: text/html
Last-Modified: Sun, 08 Jun 2014 16:16:09 GMT
...4344 bytes of data.
GET / HTTP/1.1
Host: atheles.org
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 08 Jun 2014 16:16:12 GMT
Accept-Ranges: bytes
Server: nginx/1.2.1
Content-Length: 4344
Content-Type: text/html
Last-Modified: Sun, 08 Jun 2014 16:16:09 GMT
...4344 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: atheles.org
Referer: http://www.google.com/search?q=atheles.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: atheles.org
Referer: http://www.google.com/search?q=atheles.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://atheles.org/ | 200 OK Content-Length: 4344 Content-Type: text/html | clean |
http://atheles.org/js/jquery.js | 200 OK Content-Length: 92629 Content-Type: application/x-javascript | clean |
http://atheles.org/js/jquery.cookie.js | 200 OK Content-Length: 1928 Content-Type: application/x-javascript | clean |
http://atheles.org/js/common.js | 200 OK Content-Length: 1741 Content-Type: application/x-javascript | clean |
http://atheles.org/agone | HTTP/1.1 301 Permanent Connection: close Date: Sun, 08 Jun 2014 16:16:13 GMT Location: http://www.agone.org Server: nginx/1.2.1 Content-Length: 203 Content-Type: text/html; charset=UTF-8 | clean |
http://www.agone.org/ | 500 timeout Content-Length: 30 Content-Type: text/plain | clean |
http://www.agone.org/test404page.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 08 Jun 2014 16:16:21 GMT Location: http://agone.org/test404page.js Server: nginx/1.2.1 Content-Length: 184 Content-Type: text/html | clean |
http://agone.org/test404page.js | 404 Not Found Content-Length: 52 Content-Type: text/plain | clean |
http://atheles.org/centpages | HTTP/1.1 301 Permanent Connection: close Date: Sun, 08 Jun 2014 16:16:24 GMT Location: http://centpages.atheles.org Server: nginx/1.2.1 Content-Length: 227 Content-Type: text/html; charset=UTF-8 | clean |
http://centpages.atheles.org/ | 200 OK Content-Length: 9939 Content-Type: text/html | clean |
http://centpages.atheles.org/js/jquery.js | 200 OK Content-Length: 92629 Content-Type: application/x-javascript | clean |
http://atheles.org/commander | 200 OK Content-Length: 4344 Content-Type: text/html | clean |
http://atheles.org/crisecrits | HTTP/1.1 301 Permanent Connection: close Date: Sun, 08 Jun 2014 16:16:27 GMT Location: http://crisecrits.atheles.org Server: nginx/1.2.1 Content-Length: 230 Content-Type: text/html; charset=UTF-8 | clean |
http://crisecrits.atheles.org/ | 200 OK Content-Length: 10049 Content-Type: text/html | clean |
http://crisecrits.atheles.org/js/jquery.js | 200 OK Content-Length: 92629 Content-Type: application/x-javascript | clean |
http://atheles.org/page/presentation.html | 200 OK Content-Length: 4344 Content-Type: text/html | clean |
http://atheles.org/page/agone | 200 OK Content-Length: 4344 Content-Type: text/html | clean |
http://atheles.org/page/centpages | 200 OK Content-Length: 4344 Content-Type: text/html | clean |
http://atheles.org/page/crisecrits | 200 OK Content-Length: 4344 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=atheles.org
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://atheles.org/
Result: atheles.org is not infected or malware details are not published yet.
Result: atheles.org is not infected or malware details are not published yet.