Scanned pages/files
Request | Server response | Status |
http://static.ciudad.com.ar/ | 200 OK Content-Length: 158747 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: ciudad.com <!DOCTYPE html> <html lang="es" dir="ltr" xmlns:og="http://opengraphprotocol.org/schema/" xmlns:fb="http://www.facebook.com/2008/fbml" class="no-js"> <head> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <meta charset="utf-8" /> <script type="text/javascript">var _sf_startpt=(new Date()).getTime()</script> <link rel="shortcut icon" href="http://static.ciudad.com.ar/sites/all/themes/urbem/favicon.ico" type="image/x-icon" /> <meta name="application-name" content="ciudad.com" /> <meta name="msapplication-tooltip" content="ciudad.com - El sitio de Espectáculos Nº1 de Argentina" /> <meta name="msapplication-starturl" content="http://www.ciudad.com.ar" /> <meta name="msapplication-navbutton-color" content="#D41213" /> <meta name="msapplication-window" c ...[3482 bytes skipped]... | ||
http://static.ciudad.com.ar/sites/all/modules/shared/eplanning4/js/eplanning4.js | 200 OK Content-Length: 12607 Content-Type: application/javascript | clean |
http://www.ciudad.com.ar/sites/default/files/js/js_c99aa25fd2e23d152fd2ad956efb653b.js | 200 OK Content-Length: 301275 Content-Type: application/javascript | clean |
http://static.ciudad.com.ar/sites/all/modules/contrib/pinned_site/js/pinned_sitejs?X | 200 OK Content-Length: 1977 Content-Type: text/javascript | clean |
http://www.ciudad.com.ar/sites/default/files/js/js_108b7d8ada24f235794a683c282a0c6d.js | 200 OK Content-Length: 1416 Content-Type: application/javascript | clean |
http://static.ciudad.com.ar//platform.twitter.com/widgets.js/ | HTTP/1.1 301 Moved Permanently Cache-Control: must-revalidate Connection: close Date: Wed, 20 Aug 2014 19:17:36 GMT Via: 1.1 varnish Age: 0 Location: http://static.ciudad.com.ar/platform.twitter.com/widgets.js Server: Apache/2.2.20 (Unix) PHP/5.2.13 mod_fcgid/2.3.5 Content-Type: text/html; charset=utf-8 Expires: Sun, 11 Mar 1984 12:00:00 GMT Last-Modified: Wed, 20 Aug 2014 19:17:36 GMT X-Backend: www_ciudad[3] X-Block: X-Cache: MISS X-Cacheable: YES X-Cacheable-TTL: 600.000 X-X-Cookie-R: X-Cookie-S: X-Grace: 6m X-Hash: X-Http-Host: static.ciudad.com.ar X-Jash: static.ciudad.com.ar - //platform.twitter.com/widgets.js/ - ( | ) - - Default X-Logged: X-Powered-By: PHP/5.2.13 X-Purge: X-Ref: 0 - X-Req-Url: //platform.twitter.com/widgets.js/ X-Served-By: calamar14 X-UserAgent: Default X-Varnish: 1215099539 | clean |
http://static.ciudad.com.ar/platform.twitter.com/widgets.js | 404 Not Found Content-Length: 139 Content-Type: text/html | clean |
http://static.ciudad.com.ar/test404page.js | 404 Not Found Content-Length: 212 Content-Type: text/html | clean |
http://b.scorecardresearch.com/c2/6906409/ct.js | 200 OK Content-Length: 14802 Content-Type: application/x-javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: static.ciudad.com.ar
Result:
HTTP/1.1 200 OK
Cache-Control: must-revalidate
Connection: close
Date: Wed, 20 Aug 2014 19:17:25 GMT
Via: 1.1 varnish
Age: 0
Server: Apache/2.2.20 (Unix) PHP/5.2.13 mod_fcgid/2.3.5
Content-Type: text/html; charset=utf-8
Last-Modified: Wed, 20 Aug 2014 19:00:38 GMT
X-Backend: www_ciudad[3]
X-Block:
X-Cache: MISS
X-Cacheable: YES
X-Cacheable-TTL: 120.000
X-X-Cookie-R:
X-Cookie-S:
X-Grace: 6m
X-Hash:
X-Http-Host: static.ciudad.com.ar
X-Jash: static.ciudad.com.ar - / - ( | ) - - Default
X-Logged:
X-Purge:
X-Ref: 0 -
X-Req-Url: /
X-Served-By: v263uprod.int.cmd.com.ar
X-UserAgent: Default
X-Varnish: 760428589
GET / HTTP/1.1
Host: static.ciudad.com.ar
Result:
HTTP/1.1 200 OK
Cache-Control: must-revalidate
Connection: close
Date: Wed, 20 Aug 2014 19:17:25 GMT
Via: 1.1 varnish
Age: 0
Server: Apache/2.2.20 (Unix) PHP/5.2.13 mod_fcgid/2.3.5
Content-Type: text/html; charset=utf-8
Last-Modified: Wed, 20 Aug 2014 19:00:38 GMT
X-Backend: www_ciudad[3]
X-Block:
X-Cache: MISS
X-Cacheable: YES
X-Cacheable-TTL: 120.000
X-X-Cookie-R:
X-Cookie-S:
X-Grace: 6m
X-Hash:
X-Http-Host: static.ciudad.com.ar
X-Jash: static.ciudad.com.ar - / - ( | ) - - Default
X-Logged:
X-Purge:
X-Ref: 0 -
X-Req-Url: /
X-Served-By: v263uprod.int.cmd.com.ar
X-UserAgent: Default
X-Varnish: 760428589
Second query (visit from search engine):
GET / HTTP/1.1
Host: static.ciudad.com.ar
Referer: http://www.google.com/search?q=static.ciudad.com.ar
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: static.ciudad.com.ar
Referer: http://www.google.com/search?q=static.ciudad.com.ar
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=static.ciudad.com.ar
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://static.ciudad.com.ar/
Result: static.ciudad.com.ar is not infected or malware details are not published yet.
Result: static.ciudad.com.ar is not infected or malware details are not published yet.