Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: djsdrive.in
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=3, must-revalidate
Connection: close
Date: Wed, 23 Apr 2014 20:52:17 GMT
Via: 1.1 varnish
Age: 11602
Server: cloudflare-nginx
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Last-Modified: Wed, 23 Apr 2014 14:28:43 GMT
CF-RAY: 11fcf1a8691c01b1-FRA
Magicmarker: 1
Set-Cookie: __cfduid=dec34c275e6aa9b3c46f773c9d857ea1d1398286337347; expires=Mon, 23-Dec-2019 23:50:00 GMT; path=/; domain=.djsdrive.in; HttpOnly
WP-Super-Cache: Served supercache file from PHP
X-Cacheable: YES
X-Varnish: 582986196 581228299
GET / HTTP/1.1
Host: djsdrive.in
Result:
HTTP/1.1 200 OK
Cache-Control: max-age=3, must-revalidate
Connection: close
Date: Wed, 23 Apr 2014 20:52:17 GMT
Via: 1.1 varnish
Age: 11602
Server: cloudflare-nginx
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8
Last-Modified: Wed, 23 Apr 2014 14:28:43 GMT
CF-RAY: 11fcf1a8691c01b1-FRA
Magicmarker: 1
Set-Cookie: __cfduid=dec34c275e6aa9b3c46f773c9d857ea1d1398286337347; expires=Mon, 23-Dec-2019 23:50:00 GMT; path=/; domain=.djsdrive.in; HttpOnly
WP-Super-Cache: Served supercache file from PHP
X-Cacheable: YES
X-Varnish: 582986196 581228299
Second query (visit from search engine):
GET / HTTP/1.1
Host: djsdrive.in
Referer: http://www.google.com/search?q=djsdrive.in
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: djsdrive.in
Referer: http://www.google.com/search?q=djsdrive.in
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://djsdrive.in/ | 200 OK Content-Length: 49060 Content-Type: text/html | clean |
http://djsdrive.in//ajax.cloudflare.com/cdn-cgi/nexp/dok9v=dccf16c0cc/appsh.min.js/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Wed, 23 Apr 2014 20:52:19 GMT Pragma: no-cache Via: 1.1 varnish Age: 0 Location: http://djsdrive.in/ajax.cloudflare.com/cdn-cgi/nexp/dok9v=dccf16c0cc/appsh.min.js/ Server: cloudflare-nginx Content-Type: text/html; charset=UTF-8 CF-RAY: 11fcf1b1bba001b2-FRA Magicmarker: 1 Set-Cookie: __cfduid=d431e539825449efbf8ff0bf58fed5cda1398286338838; expires=Mon, 23-Dec-2019 23:50:00 GMT; path=/; domain=.djsdrive.in; HttpOnly X-Cacheable: YES X-Varnish: 582986422 | clean |
http://djsdrive.in/ajax.cloudflare.com/cdn-cgi/nexp/dok9v=dccf16c0cc/appsh.min.js/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Wed, 23 Apr 2014 20:52:19 GMT Pragma: no-cache Via: 1.1 varnish Age: 0 Location: http://djsdrive.in Server: cloudflare-nginx Content-Type: text/html; charset=UTF-8 CF-RAY: 11fcf1b401b101b2-FRA Magicmarker: 1 Set-Cookie: __cfduid=d4c748afccdd7c7a26c858fec0a85f1de1398286339202; expires=Mon, 23-Dec-2019 23:50:00 GMT; path=/; domain=.djsdrive.in; HttpOnly X-Cacheable: YES X-Varnish: 582986466 | clean |
http://djsdrive.in/test404page.js | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Wed, 23 Apr 2014 20:52:20 GMT Pragma: no-cache Via: 1.1 varnish Age: 0 Location: http://djsdrive.in Server: cloudflare-nginx Content-Type: text/html; charset=UTF-8 CF-Cache-Status: MISS CF-RAY: 11fcf1b8583c01b2-FRA Magicmarker: 1 Set-Cookie: __cfduid=d0d3711802da0a4e1ac82dd564abdee321398286339895; expires=Mon, 23-Dec-2019 23:50:00 GMT; path=/; domain=.djsdrive.in; HttpOnly X-Cacheable: YES X-Varnish: 582986557 | clean |
http://djsdrive.in//ajax.googleapis.com/ajax/libs/jquery/1.11.0/jquery.min.js/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Wed, 23 Apr 2014 20:52:20 GMT Pragma: no-cache Via: 1.1 varnish Age: 0 Location: http://djsdrive.in/ajax.googleapis.com/ajax/libs/jquery/1.11.0/jquery.min.js/ Server: cloudflare-nginx Content-Type: text/html; charset=UTF-8 CF-RAY: 11fcf1bcabd001b2-FRA Magicmarker: 1 Set-Cookie: __cfduid=d60c5d5cf8e5c10fd9ccc56ddb284a3101398286340580; expires=Mon, 23-Dec-2019 23:50:00 GMT; path=/; domain=.djsdrive.in; HttpOnly X-Cacheable: YES X-Varnish: 582986662 | clean |
http://djsdrive.in/ajax.googleapis.com/ajax/libs/jquery/1.11.0/jquery.min.js/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Wed, 23 Apr 2014 20:52:21 GMT Pragma: no-cache Via: 1.1 varnish Age: 0 Location: http://djsdrive.in Server: cloudflare-nginx Content-Type: text/html; charset=UTF-8 CF-RAY: 11fcf1be90ff01b2-FRA Magicmarker: 1 Set-Cookie: __cfduid=dc6ae51f6ab8b78fc30871f9770a152d91398286340896; expires=Mon, 23-Dec-2019 23:50:00 GMT; path=/; domain=.djsdrive.in; HttpOnly X-Cacheable: YES X-Varnish: 582986720 | clean |
http://djsdrive.in/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/x-javascript | clean |
http://w.sharethis.com/button/buttons.js | 200 OK Content-Length: 142649 Content-Type: application/x-javascript | clean |
http://ads1.qadabra.com/t?id=a1bc1d83-7e39-4195-8aa4-9cf2f0d90380&size=728x90 | 200 OK Content-Length: 118 Content-Type: text/javascript | clean |
http://go.adversal.com/ttj?id=1600643&size=728x90&promo_sizes=468x60,320x50,300x50,216x36 | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, private Date: Wed, 23 Apr 2014 20:52:22 GMT Pragma: no-cache Location: http://ib.adnxs.com/ttj?id=1600643&size=728x90&promo_sizes=468x60,320x50,300x50,216x36 Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Sat, 15 Nov 2008 16:00:00 GMT P3P: policyref="http://cdn.adnxs.com/w3c/policy/p3p.xml", CP="NOI DSP COR ADM PSAo PSDo OURo SAMo UNRo OTRo BUS COM NAV DEM STA PRE" X-XSS-Protection: 0 | clean |
http://ib.adnxs.com/ttj?id=1600643&size=728x90&promo_sizes=468x60,320x50,300x50,216x36 | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, private Date: Wed, 23 Apr 2014 20:52:22 GMT Pragma: no-cache Location: http://ib.adnxs.com/bounce?%2Fttj%3Fid%3D1600643%26size%3D728x90%26promo_sizes%3D468x60%2C320x50%2C300x50%2C216x36 Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Sat, 15 Nov 2008 16:00:00 GMT P3P: policyref="http://cdn.adnxs.com/w3c/policy/p3p.xml", CP="NOI DSP COR ADM PSAo PSDo OURo SAMo UNRo OTRo BUS COM NAV DEM STA PRE" Set-Cookie: uuid2=0; path=/; expires=Tue, 22-Jul-2014 20:52:22 GMT; domain=.adnxs.com; HttpOnly Set-Cookie: sess=1; path=/; expires=Thu, 24-Apr-2014 20:52:22 GMT; domain=.adnxs.com; HttpOnly Set-Cookie: uuid2=5206103587539285159; path=/; expires=Tue, 22-Jul-2014 20:52:22 GMT; domain=.adnxs.com; HttpOnly X-XSS-Protection: 0 | clean |
http://ib.adnxs.com/bounce?%2fttj%3fid%3d1600643%26size%3d728x90%26promo_sizes%3d468x60%2c320x50%2c300x50%2c216x36 | 200 OK Content-Length: 777 Content-Type: text/html | clean |
http://ib.adnxs.com/'+i+' | 404 Not Found Content-Length: 0 Content-Type: text/html | clean |
http://ads1.qadabra.com/t?id=7dc1768f-4a30-4174-b1c7-128efa356921&size=728x90 | 200 OK Content-Length: 118 Content-Type: text/javascript | clean |
http://ads1.qadabra.com/t?id=82b6973e-0f4a-484c-ab57-c4bbaa8e2254&size=300x250 | 200 OK Content-Length: 119 Content-Type: text/javascript | clean |
http://go.adversal.com/ttj?id=1600643&size=300x250&promo_sizes=250x250,200x200,180x150 | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, private Date: Wed, 23 Apr 2014 20:52:23 GMT Pragma: no-cache Location: http://ib.adnxs.com/ttj?id=1600643&size=300x250&promo_sizes=250x250,200x200,180x150 Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Sat, 15 Nov 2008 16:00:00 GMT P3P: policyref="http://cdn.adnxs.com/w3c/policy/p3p.xml", CP="NOI DSP COR ADM PSAo PSDo OURo SAMo UNRo OTRo BUS COM NAV DEM STA PRE" X-XSS-Protection: 0 | clean |
http://ib.adnxs.com/ttj?id=1600643&size=300x250&promo_sizes=250x250,200x200,180x150 | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, private Date: Wed, 23 Apr 2014 20:52:23 GMT Pragma: no-cache Location: http://ib.adnxs.com/bounce?%2Fttj%3Fid%3D1600643%26size%3D300x250%26promo_sizes%3D250x250%2C200x200%2C180x150 Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Sat, 15 Nov 2008 16:00:00 GMT P3P: policyref="http://cdn.adnxs.com/w3c/policy/p3p.xml", CP="NOI DSP COR ADM PSAo PSDo OURo SAMo UNRo OTRo BUS COM NAV DEM STA PRE" Set-Cookie: uuid2=0; path=/; expires=Tue, 22-Jul-2014 20:52:23 GMT; domain=.adnxs.com; HttpOnly Set-Cookie: sess=1; path=/; expires=Thu, 24-Apr-2014 20:52:23 GMT; domain=.adnxs.com; HttpOnly Set-Cookie: uuid2=7280940762030333440; path=/; expires=Tue, 22-Jul-2014 20:52:23 GMT; domain=.adnxs.com; HttpOnly X-XSS-Protection: 0 | clean |
http://ib.adnxs.com/bounce?%2fttj%3fid%3d1600643%26size%3d300x250%26promo_sizes%3d250x250%2c200x200%2c180x150 | 200 OK Content-Length: 774 Content-Type: text/html | clean |
http://go.adversal.com/ttj?id=1600643&size=300x1050&promo_sizes=300x600,160x600,120x600,300x250,250x250,200x200,180x150 | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, private Date: Wed, 23 Apr 2014 20:52:24 GMT Pragma: no-cache Location: http://ib.adnxs.com/ttj?id=1600643&size=300x1050&promo_sizes=300x600,160x600,120x600,300x250,250x250,200x200,180x150 Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Sat, 15 Nov 2008 16:00:00 GMT P3P: policyref="http://cdn.adnxs.com/w3c/policy/p3p.xml", CP="NOI DSP COR ADM PSAo PSDo OURo SAMo UNRo OTRo BUS COM NAV DEM STA PRE" X-XSS-Protection: 0 | clean |
http://ib.adnxs.com/ttj?id=1600643&size=300x1050&promo_sizes=300x600,160x600,120x600,300x250,250x250,200x200,180x150 | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, private Date: Wed, 23 Apr 2014 20:52:24 GMT Pragma: no-cache Location: http://ib.adnxs.com/bounce?%2Fttj%3Fid%3D1600643%26size%3D300x1050%26promo_sizes%3D300x600%2C160x600%2C120x600%2C300x250%2C250x250%2C200x200%2C180x150 Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Sat, 15 Nov 2008 16:00:00 GMT P3P: policyref="http://cdn.adnxs.com/w3c/policy/p3p.xml", CP="NOI DSP COR ADM PSAo PSDo OURo SAMo UNRo OTRo BUS COM NAV DEM STA PRE" Set-Cookie: uuid2=0; path=/; expires=Tue, 22-Jul-2014 20:52:24 GMT; domain=.adnxs.com; HttpOnly Set-Cookie: sess=1; path=/; expires=Thu, 24-Apr-2014 20:52:24 GMT; domain=.adnxs.com; HttpOnly Set-Cookie: uuid2=5937034846469031266; path=/; expires=Tue, 22-Jul-2014 20:52:24 GMT; domain=.adnxs.com; HttpOnly X-XSS-Protection: 0 | clean |
http://ib.adnxs.com/bounce?%2fttj%3fid%3d1600643%26size%3d300x1050%26promo_sizes%3d300x600%2c160x600%2c120x600%2c300x250%2c250x250%2c200x200%2c180x150 | 200 OK Content-Length: 807 Content-Type: text/html | clean |
http://go.adversal.com/ttj?id=1600643&size=160x600&promo_sizes=120x600 | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, private Date: Wed, 23 Apr 2014 20:52:24 GMT Pragma: no-cache Location: http://ib.adnxs.com/ttj?id=1600643&size=160x600&promo_sizes=120x600 Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Sat, 15 Nov 2008 16:00:00 GMT P3P: policyref="http://cdn.adnxs.com/w3c/policy/p3p.xml", CP="NOI DSP COR ADM PSAo PSDo OURo SAMo UNRo OTRo BUS COM NAV DEM STA PRE" X-XSS-Protection: 0 | clean |
http://ib.adnxs.com/ttj?id=1600643&size=160x600&promo_sizes=120x600 | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, private Date: Wed, 23 Apr 2014 20:52:24 GMT Pragma: no-cache Location: http://ib.adnxs.com/bounce?%2Fttj%3Fid%3D1600643%26size%3D160x600%26promo_sizes%3D120x600 Content-Length: 0 Content-Type: text/html; charset=utf-8 Expires: Sat, 15 Nov 2008 16:00:00 GMT P3P: policyref="http://cdn.adnxs.com/w3c/policy/p3p.xml", CP="NOI DSP COR ADM PSAo PSDo OURo SAMo UNRo OTRo BUS COM NAV DEM STA PRE" Set-Cookie: uuid2=0; path=/; expires=Tue, 22-Jul-2014 20:52:24 GMT; domain=.adnxs.com; HttpOnly Set-Cookie: sess=1; path=/; expires=Thu, 24-Apr-2014 20:52:24 GMT; domain=.adnxs.com; HttpOnly Set-Cookie: uuid2=3595484681098048265; path=/; expires=Tue, 22-Jul-2014 20:52:24 GMT; domain=.adnxs.com; HttpOnly X-XSS-Protection: 0 | clean |
http://ib.adnxs.com/bounce?%2fttj%3fid%3d1600643%26size%3d160x600%26promo_sizes%3d120x600 | 200 OK Content-Length: 758 Content-Type: text/html | clean |
http://xslt.alexa.com/site_stats/js/s/a?url=http://djsdrive.in/ | 200 OK Content-Length: 3153 Content-Type: application/x-javascript | clean |
http://st2.freeonlineusers.com/on2.php?id=1509377 | 200 OK Content-Length: 23 Content-Type: text/html | clean |
http://ads-by.madadsmedia.com/tags/3995/3104/async/728x90.js | 200 OK Content-Length: 1689 Content-Type: application/x-javascript | clean |
http://s0.wp.com/wp-content/js/devicepx-jetpack.js?ver=201417 | 200 OK Content-Length: 9168 Content-Type: application/x-javascript | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=djsdrive.in
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://djsdrive.in/
Result: djsdrive.in is not infected or malware details are not published yet.
Result: djsdrive.in is not infected or malware details are not published yet.