Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: ulunix.com
Result:
HTTP/1.1 200 OK
Date: Fri, 03 Oct 2014 17:29:57 GMT
Accept-Ranges: bytes
ETag: "aa567927d969ce1:1c1e"
Server: Microsoft-IIS/6.0
Content-Length: 87
Content-Location: http://ulunix.com/index.htm
Content-Type: text/html
Last-Modified: Sat, 15 Jun 2013 15:01:03 GMT
...87 bytes of data.
GET / HTTP/1.1
Host: ulunix.com
Result:
HTTP/1.1 200 OK
Date: Fri, 03 Oct 2014 17:29:57 GMT
Accept-Ranges: bytes
ETag: "aa567927d969ce1:1c1e"
Server: Microsoft-IIS/6.0
Content-Length: 87
Content-Location: http://ulunix.com/index.htm
Content-Type: text/html
Last-Modified: Sat, 15 Jun 2013 15:01:03 GMT
...87 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: ulunix.com
Referer: http://www.google.com/search?q=ulunix.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: ulunix.com
Referer: http://www.google.com/search?q=ulunix.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://ulunix.com/ | HTTP/1.1 200 OK Date: Fri, 03 Oct 2014 17:29:57 GMT Accept-Ranges: bytes ETag: "aa567927d969ce1:1c1e" Server: Microsoft-IIS/6.0 Content-Length: 87 Content-Location: http://ulunix.com/index.htm Content-Type: text/html Last-Modified: Sat, 15 Jun 2013 15:01:03 GMT | clean |
http://ulunix.com/index.htm | HTTP/1.1 200 OK Date: Fri, 03 Oct 2014 17:29:58 GMT Accept-Ranges: bytes ETag: "aa567927d969ce1:1c1e" Server: Microsoft-IIS/6.0 Content-Length: 87 Content-Type: text/html Last-Modified: Sat, 15 Jun 2013 15:01:03 GMT | clean |
http://www.ulunix.com/ | HTTP/1.1 200 OK Date: Fri, 03 Oct 2014 17:29:59 GMT Accept-Ranges: bytes ETag: "78c764e79dfcf1:1c1e" Server: Microsoft-IIS/6.0 Content-Length: 244768 Content-Location: http://www.ulunix.com/index.htm Content-Type: text/html Last-Modified: Fri, 03 Oct 2014 12:59:44 GMT | clean |
http://www.ulunix.com/index.htm | 200 OK Content-Length: 244768 Content-Type: text/html | clean |
http://www.haofbi.com/js/w.js | 404 Not Found Content-Length: 3533 Content-Type: text/html | clean |
http://s7.addthis.com/js/250/addthis_widget.js | 200 OK Content-Length: 6875 Content-Type: text/javascript | clean |
http://www.haofbi.com/ | 200 OK Content-Length: 3889 Content-Type: text/html | clean |
http://www.haofbi.com/terms.html | 200 OK Content-Length: 12796 Content-Type: text/html | clean |
http://www.haofbi.com/privacy.html | 200 OK Content-Length: 13346 Content-Type: text/html | clean |
http://www.haofbi.com/test404page.js | 404 Not Found Content-Length: 3519 Content-Type: text/html | clean |
http://s9.cnzz.com/stat.php?id=2162452&web_id=2162452&show=pic1 | 200 OK Content-Length: 9326 Content-Type: application/javascript | clean |
http://ulunix.com/terms.html | 404 Not Found Content-Length: 1308 Content-Type: text/html | clean |
http://ulunix.com/privacy.html | 404 Not Found Content-Length: 1308 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=ulunix.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://ulunix.com/
Result: ulunix.com is not infected or malware details are not published yet.
Result: ulunix.com is not infected or malware details are not published yet.