Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: erai.org
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Fri, 01 Aug 2014 03:21:47 GMT
Location: http://www.erai.org/
Server: Apache/2.2.16 (Debian)
Vary: Accept-Encoding
Content-Length: 302
Content-Type: text/html; charset=iso-8859-1
...302 bytes of data.
GET / HTTP/1.1
Host: erai.org
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Fri, 01 Aug 2014 03:21:47 GMT
Location: http://www.erai.org/
Server: Apache/2.2.16 (Debian)
Vary: Accept-Encoding
Content-Length: 302
Content-Type: text/html; charset=iso-8859-1
...302 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: erai.org
Referer: http://www.google.com/search?q=erai.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: erai.org
Referer: http://www.google.com/search?q=erai.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://erai.org/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 01 Aug 2014 03:21:47 GMT Location: http://www.erai.org/ Server: Apache/2.2.16 (Debian) Vary: Accept-Encoding Content-Length: 302 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.erai.org/ | 200 OK Content-Length: 62894 Content-Type: text/html | clean |
http://www.erai.org/js/1varJS.php?chemin=/ | 200 OK Content-Length: 21 Content-Type: text/javascript | clean |
http://erai.org/js/coordinates.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 01 Aug 2014 03:21:50 GMT Location: http://www.erai.org/js/coordinates.js Server: Apache/2.2.16 (Debian) Vary: Accept-Encoding Content-Length: 319 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.erai.org/js/coordinates.js | 200 OK Content-Length: 2953 Content-Type: application/javascript | clean |
http://erai.org/js/csshover.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 01 Aug 2014 03:21:51 GMT Location: http://www.erai.org/js/csshover.js Server: Apache/2.2.16 (Debian) Vary: Accept-Encoding Content-Length: 316 Content-Type: text/html; charset=iso-8859-1 X-Pad: avoid browser bug | clean |
http://www.erai.org/js/csshover.js | 200 OK Content-Length: 3205 Content-Type: application/javascript | clean |
http://erai.org/js/cutTitleText.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 01 Aug 2014 03:21:52 GMT Location: http://www.erai.org/js/cutTitleText.js Server: Apache/2.2.16 (Debian) Vary: Accept-Encoding Content-Length: 320 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.erai.org/js/cuttitletext.js | 404 Not Found Content-Length: 294 Content-Type: text/html | clean |
http://www.erai.org/test404page.js | 404 Not Found Content-Length: 290 Content-Type: text/html | clean |
http://erai.org/js/debugIE6.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 01 Aug 2014 03:21:52 GMT Location: http://www.erai.org/js/debugIE6.js Server: Apache/2.2.16 (Debian) Vary: Accept-Encoding Content-Length: 316 Content-Type: text/html; charset=iso-8859-1 X-Pad: avoid browser bug | clean |
http://www.erai.org/js/debugie6.js | 404 Not Found Content-Length: 290 Content-Type: text/html | clean |
http://erai.org/js/detectnavigator.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 01 Aug 2014 03:21:53 GMT Location: http://www.erai.org/js/detectnavigator.js Server: Apache/2.2.16 (Debian) Vary: Accept-Encoding Content-Length: 323 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.erai.org/js/detectnavigator.js | 200 OK Content-Length: 1319 Content-Type: application/javascript | clean |
http://erai.org/js/dispatch.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 01 Aug 2014 03:21:53 GMT Location: http://www.erai.org/js/dispatch.js Server: Apache/2.2.16 (Debian) Vary: Accept-Encoding Content-Length: 316 Content-Type: text/html; charset=iso-8859-1 X-Pad: avoid browser bug | clean |
http://www.erai.org/js/dispatch.js | 200 OK Content-Length: 1466 Content-Type: application/javascript | clean |
http://erai.org/js/drag.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 01 Aug 2014 03:21:54 GMT Location: http://www.erai.org/js/drag.js Server: Apache/2.2.16 (Debian) Vary: Accept-Encoding Content-Length: 312 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.erai.org/js/drag.js | 200 OK Content-Length: 7545 Content-Type: application/javascript | clean |
http://erai.org/js/dragdrop.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 01 Aug 2014 03:21:54 GMT Location: http://www.erai.org/js/dragdrop.js Server: Apache/2.2.16 (Debian) Vary: Accept-Encoding Content-Length: 316 Content-Type: text/html; charset=iso-8859-1 X-Pad: avoid browser bug | clean |
http://www.erai.org/js/dragdrop.js | 200 OK Content-Length: 7336 Content-Type: application/javascript | clean |
http://erai.org/js/form.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 01 Aug 2014 03:21:55 GMT Location: http://www.erai.org/js/form.js Server: Apache/2.2.16 (Debian) Vary: Accept-Encoding Content-Length: 312 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.erai.org/js/form.js | 200 OK Content-Length: 25028 Content-Type: application/javascript | clean |
http://erai.org/js/form_ajx.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 01 Aug 2014 03:21:56 GMT Location: http://www.erai.org/js/form_ajx.js Server: Apache/2.2.16 (Debian) Vary: Accept-Encoding Content-Length: 316 Content-Type: text/html; charset=iso-8859-1 X-Pad: avoid browser bug | clean |
http://www.erai.org/js/form_ajx.js | 200 OK Content-Length: 22729 Content-Type: application/javascript | clean |
http://erai.org/js/load_data.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 01 Aug 2014 03:21:56 GMT Location: http://www.erai.org/js/load_data.js Server: Apache/2.2.16 (Debian) Vary: Accept-Encoding Content-Length: 317 Content-Type: text/html; charset=iso-8859-1 X-Pad: avoid browser bug | clean |
http://www.erai.org/js/load_data.js | 200 OK Content-Length: 2995 Content-Type: application/javascript | clean |
http://erai.org/js/managemodule.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 01 Aug 2014 03:21:57 GMT Location: http://www.erai.org/js/managemodule.js Server: Apache/2.2.16 (Debian) Vary: Accept-Encoding Content-Length: 320 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.erai.org/js/managemodule.js | 200 OK Content-Length: 8471 Content-Type: application/javascript | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=erai.org
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://erai.org/
Result: erai.org is not infected or malware details are not published yet.
Result: erai.org is not infected or malware details are not published yet.