Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: interaula.net.br
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 03 Mar 2015 20:57:13 GMT
Accept-Ranges: bytes
ETag: "1e66c1-194-50b7179a09064"
Server: nginx
Content-Length: 404
Content-Type: text/html
Last-Modified: Tue, 30 Dec 2014 16:28:03 GMT
X-Accel-Version: 0.01
X-Powered-By: PleskLin
...404 bytes of data.
GET / HTTP/1.1
Host: interaula.net.br
Result:
HTTP/1.1 200 OK
Connection: close
Date: Tue, 03 Mar 2015 20:57:13 GMT
Accept-Ranges: bytes
ETag: "1e66c1-194-50b7179a09064"
Server: nginx
Content-Length: 404
Content-Type: text/html
Last-Modified: Tue, 30 Dec 2014 16:28:03 GMT
X-Accel-Version: 0.01
X-Powered-By: PleskLin
...404 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: interaula.net.br
Referer: http://www.google.com/search?q=interaula.net.br
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: interaula.net.br
Referer: http://www.google.com/search?q=interaula.net.br
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://interaula.net.br/ | HTTP/1.1 200 OK Connection: close Date: Tue, 03 Mar 2015 20:57:13 GMT Accept-Ranges: bytes ETag: "1e66c1-194-50b7179a09064" Server: nginx Content-Length: 404 Content-Type: text/html Last-Modified: Tue, 30 Dec 2014 16:28:03 GMT X-Accel-Version: 0.01 X-Powered-By: PleskLin | clean |
http://www.aprendaportuguesfacil.com.br/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Tue, 03 Mar 2015 20:57:15 GMT Location: http://aprendaportuguesfacil.com.br/ Server: nginx Content-Length: 0 Content-Type: text/html; charset=UTF-8 X-Pingback: http://aprendaportuguesfacil.com.br/xmlrpc.php X-Powered-By: PleskLin | clean |
http://aprendaportuguesfacil.com.br/ | 200 OK Content-Length: 98153 Content-Type: text/html | clean |
http://aprendaportuguesfacil.com.br/wp-includes/js/jquery/jquery.js | 200 OK Content-Length: 95807 Content-Type: application/javascript | clean |
http://aprendaportuguesfacil.com.br/wp-includes/js/jquery/jquery-migrate.min.js | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://aprendaportuguesfacil.com.br/wp-content/plugins/cforms2/js/jquery.md5.js | 200 OK Content-Length: 9610 Content-Type: application/javascript | clean |
http://aprendaportuguesfacil.com.br/wp-content/plugins/cforms2/js/cforms.js?ver=14.7 | 200 OK Content-Length: 25070 Content-Type: application/javascript | clean |
http://connect.facebook.net/en_US/all.js | 200 OK Content-Length: 161933 Content-Type: application/x-javascript | clean |
http://aprendaportuguesfacil.com.br/wp-content/plugins/thrive-visual-editor/editor/js/thrive_content_builder_frontend.min.js?ver=1.74 | 200 OK Content-Length: 10988 Content-Type: application/javascript | clean |
http://aprendaportuguesfacil.com.br/wp-content/plugins/thrive-visual-editor/editor/js/jquery.cookie.min.js | 200 OK Content-Length: 1372 Content-Type: application/javascript | clean |
http://aprendaportuguesfacil.com.br/wp-content/themes/focusblog/js/script.min.js?ver=4.0.1 | 200 OK Content-Length: 22984 Content-Type: application/javascript | clean |
http://aprendaportuguesfacil.com.br/wp-content/plugins/hybridconnect/includes/hc_facebook_api.php?ver=4.0.1 | 200 OK Content-Length: 59997 Content-Type: text/javascript | clean |
http://interaula.net.br/test404page.js | 404 Not Found Content-Length: 278 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=interaula.net.br
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://interaula.net.br/
Result: interaula.net.br is not infected or malware details are not published yet.
Result: interaula.net.br is not infected or malware details are not published yet.