Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: hornyelephant.com
Result:
HTTP/1.1 302 Moved Temporarily
Connection: close
Date: Mon, 19 Jan 2015 00:33:43 GMT
Location: http://www.hornyelephant.com/en
Server: nginx
Content-Length: 154
Content-Type: text/html
...154 bytes of data.
GET / HTTP/1.1
Host: hornyelephant.com
Result:
HTTP/1.1 302 Moved Temporarily
Connection: close
Date: Mon, 19 Jan 2015 00:33:43 GMT
Location: http://www.hornyelephant.com/en
Server: nginx
Content-Length: 154
Content-Type: text/html
...154 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: hornyelephant.com
Referer: http://www.google.com/search?q=hornyelephant.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: hornyelephant.com
Referer: http://www.google.com/search?q=hornyelephant.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://hornyelephant.com/ | HTTP/1.1 302 Moved Temporarily Connection: close Date: Mon, 19 Jan 2015 00:33:43 GMT Location: http://www.hornyelephant.com/en Server: nginx Content-Length: 154 Content-Type: text/html | clean |
http://www.hornyelephant.com/en | 200 OK Content-Length: 122270 Content-Type: text/html | clean |
http://www.hornyelephant.com/js/jquery-1.10.1.min.js | 200 OK Content-Length: 93070 Content-Type: application/x-javascript | clean |
http://hornyelephant.com/el/ | 200 OK Content-Length: 98800 Content-Type: text/html | clean |
http://hornyelephant.com/js/jquery-1.10.1.min.js | 200 OK Content-Length: 93070 Content-Type: application/x-javascript | clean |
http://hornyelephant.com/gl/ | 200 OK Content-Length: 80035 Content-Type: text/html | clean |
http://hornyelephant.com/yi/ | 200 OK Content-Length: 24560 Content-Type: text/html | clean |
http://hornyelephant.com/th/ | 200 OK Content-Length: 211548 Content-Type: text/html | clean |
http://hornyelephant.com/uk/ | 200 OK Content-Length: 62907 Content-Type: text/html | clean |
http://hornyelephant.com/lo/ | 200 OK Content-Length: 35741 Content-Type: text/html | clean |
http://hornyelephant.com/zh-cn/ | 200 OK Content-Length: 135592 Content-Type: text/html | clean |
http://hornyelephant.com/eo/ | 200 OK Content-Length: 32704 Content-Type: text/html | clean |
http://hornyelephant.com/ko/ | 200 OK Content-Length: 143320 Content-Type: text/html | clean |
http://hornyelephant.com/mk/ | 200 OK Content-Length: 47085 Content-Type: text/html | clean |
http://hornyelephant.com/bn/ | 200 OK Content-Length: 25094 Content-Type: text/html | clean |
http://hornyelephant.com/sk/ | 200 OK Content-Length: 73707 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=hornyelephant.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://hornyelephant.com/
Result: hornyelephant.com is not infected or malware details are not published yet.
Result: hornyelephant.com is not infected or malware details are not published yet.