Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: infohard-rs.com.br
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 17 Jan 2015 08:09:27 GMT
Accept-Ranges: bytes
ETag: "2777433336"
Server: Vetorial.net
Content-Length: 42919
Content-Type: text/html
Last-Modified: Sat, 02 Nov 2013 12:30:04 GMT
...42919 bytes of data.
GET / HTTP/1.1
Host: infohard-rs.com.br
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 17 Jan 2015 08:09:27 GMT
Accept-Ranges: bytes
ETag: "2777433336"
Server: Vetorial.net
Content-Length: 42919
Content-Type: text/html
Last-Modified: Sat, 02 Nov 2013 12:30:04 GMT
...42919 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: infohard-rs.com.br
Referer: http://www.google.com/search?q=infohard-rs.com.br
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: infohard-rs.com.br
Referer: http://www.google.com/search?q=infohard-rs.com.br
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://infohard-rs.com.br/ | 200 OK Content-Length: 42919 Content-Type: text/html | clean |
http://infohard-rs.com.br/js/caption.js | 200 OK Content-Length: 1963 Content-Type: text/javascript | clean |
http://infohard-rs.com.br/js/s5_flex_menu.js | 200 OK Content-Length: 43661 Content-Type: text/javascript | clean |
http://infohard-rs.com.br/js/s5_ls_fade.js | 200 OK Content-Length: 4417 Content-Type: text/javascript | clean |
http://infohard-rs.com.br/js/s5box.js | 200 OK Content-Length: 16301 Content-Type: text/javascript | clean |
http://infohard-rs.com.br/js/class.noobSlide.packed.js | 200 OK Content-Length: 3585 Content-Type: text/javascript | clean |
http://infohard-rs.com.br/js/overlay.js | 200 OK Content-Length: 2670 Content-Type: text/javascript | clean |
http://infohard-rs.com.br/js/multibox.js | 200 OK Content-Length: 22888 Content-Type: text/javascript | clean |
http://infohard-rs.com.br/js/AC_RunActiveContent.js | 200 OK Content-Length: 8321 Content-Type: text/javascript | clean |
http://infohard-rs.com.br/js/s5_font_adjuster.js | 200 OK Content-Length: 3905 Content-Type: text/javascript | clean |
http://www.infohard-rs.com.br/Atendimento/js/status_image.php?base_url=http://www.infohard-rs.com.br/Atendimento&l=admin&x=1&deptid=0& | 200 OK Content-Length: 7128 Content-Type: text/html | clean |
http://www.infohard-rs.com.br/Atendimento/js/status_image.php?base_url=http://www.infohard-rs.com.br/\"JavaScript:launch_support_491864_0()\" | 200 OK Content-Length: 7317 Content-Type: text/html | clean |
http://www.infohard-rs.com.br/Atendimento/js/status_image.php?base_url=http://www.infohard-rs.com.br/\"JavaScript:launch_support_7346053_()\" | 200 OK Content-Length: 7317 Content-Type: text/html | clean |
http://www.infohard-rs.com.br/Atendimento/js/status_image.php?base_url=http://www.infohard-rs.com.br/\"JavaScript:launch_support_2163161_()\" | 200 OK Content-Length: 7280 Content-Type: text/html | clean |
http://www.infohard-rs.com.br/Atendimento/js/status_image.php?base_url=http://www.infohard-rs.com.br/\"JavaScript:launch_support_259667_()\" | 200 OK Content-Length: 7310 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=infohard-rs.com.br
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://infohard-rs.com.br/
Result: infohard-rs.com.br is not infected or malware details are not published yet.
Result: infohard-rs.com.br is not infected or malware details are not published yet.