Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: marketingdeconteudo.net.br
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 03 Mar 2015 00:29:09 GMT
Location: http://www.marketingporconteudo.com.br/
Server: Apache
Content-Length: 323
Content-Type: text/html; charset=iso-8859-1
...323 bytes of data.
GET / HTTP/1.1
Host: marketingdeconteudo.net.br
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Tue, 03 Mar 2015 00:29:09 GMT
Location: http://www.marketingporconteudo.com.br/
Server: Apache
Content-Length: 323
Content-Type: text/html; charset=iso-8859-1
...323 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: marketingdeconteudo.net.br
Referer: http://www.google.com/search?q=marketingdeconteudo.net.br
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: marketingdeconteudo.net.br
Referer: http://www.google.com/search?q=marketingdeconteudo.net.br
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://marketingdeconteudo.net.br/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Tue, 03 Mar 2015 00:29:09 GMT Location: http://www.marketingporconteudo.com.br/ Server: Apache Content-Length: 323 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.marketingporconteudo.com.br/ | HTTP/1.1 301 Moved Permanently Cache-Control: max-age=172800 Connection: close Date: Tue, 03 Mar 2015 00:29:10 GMT Location: http://www.marketingdeconteudo.com.br/ Server: Apache Vary: Accept-Encoding Content-Length: 327 Content-Type: text/html; charset=iso-8859-1 Expires: Thu, 05 Mar 2015 00:29:10 GMT | clean |
http://www.marketingdeconteudo.com.br/ | 200 OK Content-Length: 95851 Content-Type: text/html | clean |
http://www.marketingdeconteudo.com.br/blog/wp-includes/js/jquery/jquery.js?ver=1.11.1 | 200 OK Content-Length: 95807 Content-Type: text/javascript | clean |
http://www.marketingdeconteudo.com.br/blog/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: text/javascript | clean |
http://www.marketingdeconteudo.com.br/blog/wp-content/plugins/profit_builder/js/jquery.colorbox-min.js?ver=4.1.1 | 200 OK Content-Length: 11752 Content-Type: text/javascript | clean |
http://www.marketingdeconteudo.com.br/blog/wp-content/plugins/profit_builder/js/jquery.colorbox.js?ver=4.1.1 | 200 OK Content-Length: 30214 Content-Type: text/javascript | clean |
http://www.marketingdeconteudo.com.br/blog/wp-content/plugins/profit_builder//js/form_validate.js?ver=1.0.5 | 200 OK Content-Length: 5079 Content-Type: text/javascript | clean |
http://www.marketingdeconteudo.com.br/blog/wp-content/plugins/popup-domination/js/load_lightbox.js?ver=3.9.6 | 200 OK Content-Length: 2441 Content-Type: text/javascript | clean |
http://www.marketingdeconteudo.com.br/blog/wp-content/plugins/testimonial-rotator/js/jquery.cycletwo.js?ver=4.1.1 | 200 OK Content-Length: 48048 Content-Type: text/javascript | clean |
http://www.marketingdeconteudo.com.br/blog/wp-content/plugins/testimonial-rotator/js/jquery.cycletwo.addons.js?ver=4.1.1 | 200 OK Content-Length: 3461 Content-Type: text/javascript | clean |
http://www.marketingdeconteudo.com.br/blog/wp-content/themes/reporter/assets/js/respond.min.js?ver=1 | 200 OK Content-Length: 4047 Content-Type: text/javascript | clean |
http://www.marketingdeconteudo.com.br/blog/wp-content/plugins/wpleadplus/js/bgbs.js | 200 OK Content-Length: 4045 Content-Type: text/javascript | clean |
http://code.jquery.com/jquery-latest.min.js | 200 OK Content-Length: 95786 Content-Type: application/x-javascript | clean |
http://www.marketingdeconteudo.com.br/scripts/pp.js | 404 Not Found Content-Length: 46518 Content-Type: text/html | clean |
http://www.marketingdeconteudo.com.br//www.googleadservices.com/pagead/conversion.js/ | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, must-revalidate, max-age=0 Connection: close Date: Tue, 03 Mar 2015 00:29:22 GMT Pragma: no-cache Location: http://www.marketingdeconteudo.com.br/www.googleadservices.com/pagead/conversion.js/ Server: Apache Vary: Cookie,Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=UTF-8 Expires: Wed, 11 Jan 1984 05:00:00 GMT Set-Cookie: PHPSESSID=o8hpq6po9k7ou5smh8r268r172; path=/ Set-Cookie: sq_bgt_displayed_popup_array=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT X-Pingback: http://www.marketingdeconteudo.com.br/blog/xmlrpc.php | clean |
http://www.marketingdeconteudo.com.br/www.googleadservices.com/pagead/conversion.js/ | 404 Not Found Content-Length: 46518 Content-Type: text/html | clean |
http://www.marketingdeconteudo.com.br/blog/wp-includes/js/jquery/jquery.color.min.js?ver=2.1.1 | 200 OK Content-Length: 9295 Content-Type: text/javascript | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=marketingdeconteudo.net.br
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://marketingdeconteudo.net.br/
Result: marketingdeconteudo.net.br is not infected or malware details are not published yet.
Result: marketingdeconteudo.net.br is not infected or malware details are not published yet.