Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: mahanagargas.com
Result:
HTTP/1.1 301 Moved Permanently
Date: Sun, 18 Jan 2015 12:21:28 GMT
Location: http://www.mahanagargas.com/
Server: Microsoft-IIS/7.5
Content-Length: 151
Content-Type: text/html; charset=UTF-8
X-Powered-By: ASP.NET
X-Powered-By-Plesk: PleskWin
...151 bytes of data.
GET / HTTP/1.1
Host: mahanagargas.com
Result:
HTTP/1.1 301 Moved Permanently
Date: Sun, 18 Jan 2015 12:21:28 GMT
Location: http://www.mahanagargas.com/
Server: Microsoft-IIS/7.5
Content-Length: 151
Content-Type: text/html; charset=UTF-8
X-Powered-By: ASP.NET
X-Powered-By-Plesk: PleskWin
...151 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: mahanagargas.com
Referer: http://www.google.com/search?q=mahanagargas.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: mahanagargas.com
Referer: http://www.google.com/search?q=mahanagargas.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://mahanagargas.com/ | HTTP/1.1 301 Moved Permanently Date: Sun, 18 Jan 2015 12:21:28 GMT Location: http://www.mahanagargas.com/ Server: Microsoft-IIS/7.5 Content-Length: 151 Content-Type: text/html; charset=UTF-8 X-Powered-By: ASP.NET X-Powered-By-Plesk: PleskWin | clean |
http://www.mahanagargas.com/ | 200 OK Content-Length: 29067 Content-Type: text/html | clean |
http://www.mahanagargas.com/Common/script/valjavavalidate.js | 200 OK Content-Length: 24537 Content-Type: application/x-javascript | clean |
https://seal.thawte.com/getthawteseal?host_name=www.mahanagargas.com&size=S&lang=en | 200 OK Content-Length: 3036 Content-Type: text/javascript | clean |
http://mahanagargas.com/Index.aspx | HTTP/1.1 301 Moved Permanently Date: Sun, 18 Jan 2015 12:21:31 GMT Location: http://www.mahanagargas.com/Index.aspx Server: Microsoft-IIS/7.5 Content-Length: 161 Content-Type: text/html; charset=UTF-8 X-Powered-By: ASP.NET X-Powered-By-Plesk: PleskWin | clean |
http://www.mahanagargas.com/index.aspx | 200 OK Content-Length: 29067 Content-Type: text/html | clean |
http://www.mahanagargas.com/Index.aspx | 200 OK Content-Length: 29067 Content-Type: text/html | clean |
http://www.mahanagargas.com/HF_Content.aspx?Key=Mjc= | 200 OK Content-Length: 16940 Content-Type: text/html | clean |
http://www.mahanagargas.com/HF_Content.aspx?Key=NQ== | 200 OK Content-Length: 19997 Content-Type: text/html | clean |
http://www.mahanagargas.com/HF_Content.aspx?Key=MTI= | 200 OK Content-Length: 15906 Content-Type: text/html | clean |
http://www.mahanagargas.com/Career.aspx | 200 OK Content-Length: 17370 Content-Type: text/html | clean |
http://www.mahanagargas.com/SiteMap.aspx | 200 OK Content-Length: 37628 Content-Type: text/html | clean |
http://www.mahanagargas.com/feedback.asp | 200 OK Content-Length: 16588 Content-Type: text/html | clean |
http://www.mahanagargas.com/Common/calendor/calendor.js | 200 OK Content-Length: 159234 Content-Type: application/x-javascript | clean |
http://www.mahanagargas.com/Login.aspx | 200 OK Content-Length: 19502 Content-Type: text/html | clean |
http://www.mahanagargas.com/../../Index.aspx | 403 Forbidden Content-Length: 312 Content-Type: text/html | clean |
http://www.mahanagargas.com/test404page.js | 404 Not Found Content-Length: 5218 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=mahanagargas.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://mahanagargas.com/
Result: mahanagargas.com is not infected or malware details are not published yet.
Result: mahanagargas.com is not infected or malware details are not published yet.