Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: ceritalucah.org
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache
Date: Mon, 16 Nov 2015 08:07:33 GMT
Pragma: no-cache
Server: Microsoft-IIS/7.5
Content-Length: 6632
Content-Type: text/html; charset=utf-8
Expires: -1
P3p: CP="CAO PSA OUR"
Set-Cookie: SessionID=35521515-b4b3-496d-aa16-6fd39b6f9957; path=/
Set-Cookie: VisitorID=463e5862-1d70-4074-8f5f-4539cd347e6e&Exp=11/16/2018 12:07:34 AM; expires=Fri, 16-Nov-2018 08:07:34 GMT; path=/
X-AspNet-Version: 4.0.30319
X-Powered-By: ASP.NET
...6632 bytes of data.
GET / HTTP/1.1
Host: ceritalucah.org
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache
Date: Mon, 16 Nov 2015 08:07:33 GMT
Pragma: no-cache
Server: Microsoft-IIS/7.5
Content-Length: 6632
Content-Type: text/html; charset=utf-8
Expires: -1
P3p: CP="CAO PSA OUR"
Set-Cookie: SessionID=35521515-b4b3-496d-aa16-6fd39b6f9957; path=/
Set-Cookie: VisitorID=463e5862-1d70-4074-8f5f-4539cd347e6e&Exp=11/16/2018 12:07:34 AM; expires=Fri, 16-Nov-2018 08:07:34 GMT; path=/
X-AspNet-Version: 4.0.30319
X-Powered-By: ASP.NET
...6632 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: ceritalucah.org
Referer: http://www.google.com/search?q=ceritalucah.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: ceritalucah.org
Referer: http://www.google.com/search?q=ceritalucah.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://ceritalucah.org/ | 200 OK Content-Length: 6632 Content-Type: text/html | clean |
http://code.jquery.com/jquery-latest.min.js | 200 OK Content-Length: 95786 Content-Type: application/javascript | clean |
http://ceritalucah.org/js/standard.js?rte=1&tm=2&dn=ceritalucah.org&tid=1020 | 200 OK Content-Length: 1297 Content-Type: text/javascript | clean |
http://ceritalucah.org/js/google_caf.js?rte=1&tm=2&dn=ceritalucah.org&tid=1020 | 200 OK Content-Length: 9155 Content-Type: text/javascript | clean |
http://www.google.com/adsense/domains/caf.js | 200 OK Content-Length: 246768 Content-Type: text/javascript | clean |
http://ceritalucah.org/offer.html?domain=ceritalucah.org | 200 OK Content-Length: 1538 Content-Type: text/html | clean |
http://code.jquery.com/jquery-2.1.1.min.js | 200 OK Content-Length: 84245 Content-Type: application/javascript | clean |
http://code.jquery.com/ui/1.11.1/jquery-ui.min.js | 200 OK Content-Length: 238314 Content-Type: application/javascript | clean |
http://dizzyninja.co/js/ui/jquery.ui.dizzyninja.parkingofferrecommend.v1.js | 200 OK Content-Length: 17971 Content-Type: application/javascript | clean |
http://ceritalucah.org/test404page.js | 200 OK Content-Length: 6650 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=ceritalucah.org
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://ceritalucah.org/
Result: ceritalucah.org is not infected or malware details are not published yet.
Result: ceritalucah.org is not infected or malware details are not published yet.