Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: brainden.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=300, private
Connection: close
Date: Mon, 22 Jun 2015 21:56:12 GMT
Server: nginx/1.4.0
Vary: Accept-Encoding
Vary: Accept-Encoding
Content-Type: text/html
Last-Modified: Sat, 20 Jun 2015 15:42:14 GMT
Display: orig_site_sol
PageSpeed: off
Response: 200
Set-Cookie: ezouid=461478659; Path=/; Domain=brainden.com; Expires=Sun, 11 Jun 2017 21:56:12 UTC
Set-Cookie: ezovid=1526572404; Path=/; Domain=brainden.com; Expires=Fri, 31 Dec 9999 23:59:59 UTC
Set-Cookie: lp=; Path=/; Domain=brainden.com; Expires=Mon, 22 Jun 2015 23:56:12 UTC
X-Middleton-Display: orig_site_sol
X-Middleton-Response: 200
X-Sol: orig
GET / HTTP/1.1
Host: brainden.com
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=300, private
Connection: close
Date: Mon, 22 Jun 2015 21:56:12 GMT
Server: nginx/1.4.0
Vary: Accept-Encoding
Vary: Accept-Encoding
Content-Type: text/html
Last-Modified: Sat, 20 Jun 2015 15:42:14 GMT
Display: orig_site_sol
PageSpeed: off
Response: 200
Set-Cookie: ezouid=461478659; Path=/; Domain=brainden.com; Expires=Sun, 11 Jun 2017 21:56:12 UTC
Set-Cookie: ezovid=1526572404; Path=/; Domain=brainden.com; Expires=Fri, 31 Dec 9999 23:59:59 UTC
Set-Cookie: lp=; Path=/; Domain=brainden.com; Expires=Mon, 22 Jun 2015 23:56:12 UTC
X-Middleton-Display: orig_site_sol
X-Middleton-Response: 200
X-Sol: orig
Second query (visit from search engine):
GET / HTTP/1.1
Host: brainden.com
Referer: http://www.google.com/search?q=brainden.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: brainden.com
Referer: http://www.google.com/search?q=brainden.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://brainden.com/ | 200 OK Content-Length: 27214 Content-Type: text/html | clean |
http://brainden.com/js/jquery.js | 200 OK Content-Length: 93867 Content-Type: application/javascript | clean |
http://brainden.com/js/scrollable.js | 200 OK Content-Length: 13108 Content-Type: application/javascript | clean |
http://brainden.com/js/script.js | 200 OK Content-Length: 1828 Content-Type: application/javascript | clean |
http://brainden.com/js/detectmobilebrowser.js | 200 OK Content-Length: 2184 Content-Type: application/javascript | clean |
http://brainden.com//ajax.googleapis.com/ajax/libs/jquery/2.0.3/jquery.min.js/ | HTTP/1.1 301 Moved Permanently Cache-Control: max-age=300, private Connection: close Date: Mon, 22 Jun 2015 21:56:15 GMT Location: http://brainden.com/ajax.googleapis.com/ajax/libs/jquery/2.0.3/jquery.min.js/ Server: nginx/1.4.0 Content-Length: 0 Content-Type: text/html; charset=utf-8 | clean |
http://brainden.com/ajax.googleapis.com/ajax/libs/jquery/2.0.3/jquery.min.js/ | HTTP/1.1 302 Found Cache-Control: max-age=300, private Connection: close Date: Mon, 22 Jun 2015 21:56:15 GMT Location: http://brainden.com/ Server: nginx/1.4.0 Vary: Accept-Encoding Content-Type: text/html Display: orig_site_sol Response: 302 Set-Cookie: ezouid=1643112564; Path=/; Domain=brainden.com; Expires=Sun, 11 Jun 2017 21:56:15 UTC Set-Cookie: ezovid=1957764661; Path=/; Domain=brainden.com; Expires=Fri, 31 Dec 9999 23:59:59 UTC Set-Cookie: lp=; Path=/; Domain=brainden.com; Expires=Mon, 22 Jun 2015 23:56:15 UTC X-Middleton-Display: orig_site_sol X-Middleton-Response: 302 X-Sol: orig | clean |
http://brainden.com/test404page.js | 200 OK Content-Length: 220 Content-Type: text/javascript | clean |
http://cdn.brainden.com/utilcave_com/templates/js/ezjquery-noconflict.js | 200 OK Content-Length: 74 Content-Type: application/javascript | clean |
http://feeds.feedburner.com/Braindencom-NewPuzzles?format=sigpro&displayDate=true&displayExcerpts=true&excerptFormat=plain&excerptLength=60 | 200 OK Content-Length: 1211 Content-Type: application/x-javascript | clean |
http://www.google.com/coop/cse/brand?form=searchbox_014810839573023830780%3A7orzgdlj6u0 | HTTP/1.1 302 Found Cache-Control: public, max-age=172800 Connection: close Date: Mon, 22 Jun 2015 04:53:58 GMT Age: 61339 Location: http://cse.google.com/coop/cse/brand?form=searchbox_014810839573023830780:7orzgdlj6u0 Server: pfe Content-Length: 282 Content-Type: text/html; charset=UTF-8 Expires: Wed, 24 Jun 2015 04:53:58 GMT Alternate-Protocol: 80:quic,p=0 Content-Disposition: attachment; filename="f.txt" X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-XSS-Protection: 1; mode=block | clean |
http://cse.google.com/coop/cse/brand?form=searchbox_014810839573023830780:7orzgdlj6u0 | 200 OK Content-Length: 2559 Content-Type: text/javascript | clean |
http://brainden.com//s3.amazonaws.com/ki.js/47577/9GI.js/ | HTTP/1.1 301 Moved Permanently Cache-Control: max-age=300, private Connection: close Date: Mon, 22 Jun 2015 21:56:18 GMT Location: http://brainden.com/s3.amazonaws.com/ki.js/47577/9GI.js/ Server: nginx/1.4.0 Content-Length: 0 Content-Type: text/html; charset=utf-8 | clean |
http://brainden.com/s3.amazonaws.com/ki.js/47577/9gi.js/ | HTTP/1.1 302 Found Cache-Control: max-age=300, private Connection: close Date: Mon, 22 Jun 2015 21:56:18 GMT Location: http://brainden.com/ Server: nginx/1.4.0 Vary: Accept-Encoding Content-Type: text/html Display: orig_site_sol Response: 302 Set-Cookie: ezouid=1987495981; Path=/; Domain=brainden.com; Expires=Sun, 11 Jun 2017 21:56:18 UTC Set-Cookie: ezovid=1286307228; Path=/; Domain=brainden.com; Expires=Fri, 31 Dec 9999 23:59:59 UTC Set-Cookie: lp=; Path=/; Domain=brainden.com; Expires=Mon, 22 Jun 2015 23:56:18 UTC X-Middleton-Display: orig_site_sol X-Middleton-Response: 302 X-Sol: orig | clean |
http://resources.infolinks.com/js/infolinks_main.js | 200 OK Content-Length: 2376 Content-Type: text/javascript | clean |
http://cdn.brainden.com/utilcave_com/inc/tb.php?cb=15&template=orig | 200 OK Content-Length: 11467 Content-Type: application/javascript | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=brainden.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://brainden.com/
Result: brainden.com is not infected or malware details are not published yet.
Result: brainden.com is not infected or malware details are not published yet.