Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: ursulinegreaternoida.org
Result:
HTTP/1.1 200 OK
Cache-Control: private
Date: Sat, 04 Oct 2014 19:00:49 GMT
Server: Microsoft-IIS/7.5
Content-Length: 87334
Content-Type: text/html; charset=utf-8
Set-Cookie: ASP.NET_SessionId=ubg5mhazff4v50rsli2nsmee; path=/; HttpOnly
X-AspNet-Version: 2.0.50727
X-Powered-By: ASP.NET
...87334 bytes of data.
GET / HTTP/1.1
Host: ursulinegreaternoida.org
Result:
HTTP/1.1 200 OK
Cache-Control: private
Date: Sat, 04 Oct 2014 19:00:49 GMT
Server: Microsoft-IIS/7.5
Content-Length: 87334
Content-Type: text/html; charset=utf-8
Set-Cookie: ASP.NET_SessionId=ubg5mhazff4v50rsli2nsmee; path=/; HttpOnly
X-AspNet-Version: 2.0.50727
X-Powered-By: ASP.NET
...87334 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: ursulinegreaternoida.org
Referer: http://www.google.com/search?q=ursulinegreaternoida.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: ursulinegreaternoida.org
Referer: http://www.google.com/search?q=ursulinegreaternoida.org
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://ursulinegreaternoida.org/ | 200 OK Content-Length: 87334 Content-Type: text/html | clean |
http://ursulinegreaternoida.org/TinyDropdown/script.js | 200 OK Content-Length: 1269 Content-Type: application/x-javascript | clean |
http://ursulinegreaternoida.org/curvy.corners.trunk.js | 200 OK Content-Length: 58977 Content-Type: application/x-javascript | clean |
http://ursulinegreaternoida.org/WebResource.axd?d=HRH9TgXjg5vtphP2kAuu5EuEPCDWpWbDwe7lKrs-jkhEL8Th0BC6SGv9-2oC5a4Lt7Z_7YpNKP9LCHnBt5nvsOMPorc1&t=634604623351482412 | 200 OK Content-Length: 20794 Content-Type: application/x-javascript | clean |
http://ursulinegreaternoida.org/ScriptResource.axd?d=dDFxF9CEJOXx5g7qpELPEJCMh_js6odBxglSKVx0TDd0_CZ6iZvVX0KOGd0T7hx1vfBYWWaO2ylKkzhtDRgklzgUxRdmiV4yyVJXDS63Ov6xdrQhIBh6NlTZvyBVvl7Le7Xxh-CqviIAUoU6uXCiXIqupX01&t=ffffffffbf39349f | 200 OK Content-Length: 21615 Content-Type: application/x-javascript | clean |
http://ursulinegreaternoida.org/ScriptResource.axd?d=ytcP2kOoedq6F2h47_rPSD6yiByXYoDeZsn-E0TJGmg6leGBjbtJbhw6Sff9SY76Fp4xaZfyeSFIcmPVi7u-PDq-nqOuBOalXtEPXZdlmRj0Uou2Q3HuJGY6Y-thWru1QZ1zIJMjTir7Ey39kkwOMRbZQ18L7tvzPlOdkZtq7OxMH4Af0&t=ffffffffb868b5f4 | 200 OK Content-Length: 300073 Content-Type: application/x-javascript | clean |
http://ursulinegreaternoida.org/ScriptResource.axd?d=pQPjAa0B6L68nzxaXUEI8XJvK86VRwbasICxC12cb-LsdXacBrKSWgO40r0gAE5sujblLe2PEdZQqHhcRf7y3xfLQZv5sc-mczfOh1A2O8d6xncd5U2PR8k6oY160v4zFlottcrh_8aOxEvJzMgWaW5iuQkIhbkEoSVcKY8x0TlNHrArZZ3JB2yHmMKL6q8-CFEUHQ2&t=ffffffffb868b5f4 | 200 OK Content-Length: 78449 Content-Type: application/x-javascript | clean |
http://ursulinegreaternoida.org/ScriptResource.axd?d=VAlCt9J5hjYxFFBRQmyHt06-uWLy1QQLHi_diK7WZt0LrRHfXbXnBeB9wB9e6eM6bOANiRtgzW1f8hDj_ZyIWJLmKy5JMiEDGz6eIuBswLMkv9_lJNDxk4oz0kaLTogk_ea76ZgnCkOAhNcFwDEF8nL-sXU1&t=5f6a2d32 | 200 OK Content-Length: 2976 Content-Type: text/javascript | clean |
http://ursulinegreaternoida.org/ScriptResource.axd?d=DslyEpKx3IzL6jDRt22hmba59qbS4loUMCdPZap0fXg9bOlTZS-fqgHicgKSL6IKP6tELEGOcPd8TB4cy0mi12VDiID-8pEDHEhHMwaRZ3zyMfRE0fy4US1PXEINDvCUeY7L7CkM0be8Dalls8J6eIVde0Q1&t=5f6a2d32 | 200 OK Content-Length: 69167 Content-Type: text/javascript | clean |
http://ursulinegreaternoida.org/ScriptResource.axd?d=ugfX6wV9qexSmJpXWOMLqYFm31XbmPE0cwfmweNYfSKvbxnDdujJbhIOTQqXNDP5PolW9NKn90sA8uEr62EJDs4ThTTpEm8L-O-tD69DId73ENCoAfaEuljw1-lqwNRU4Gq0B_j7cp0T_EIUOdjckOsD6VLboBx6emSY1brAIOQMcs670&t=5f6a2d32 | 200 OK Content-Length: 32717 Content-Type: text/javascript | clean |
http://ursulinegreaternoida.org/ScriptResource.axd?d=gZmLwqsXotE8Gv86PigitTPAIty6yRklMh2pgl1UOfhvetFM2cUpg1hhrt2fPP94DzME0Dd1rtZExJCN5k31Zxnzr_X_ih1j4dsrkzZ5GTrNuc5MFVRgZiU0x6aIYagPqc2zMd_YWWZlfYgUXx9CT7HCfNP6rKoJqYr91wwF5_F4uVOR0&t=5f6a2d32 | 200 OK Content-Length: 30889 Content-Type: text/javascript | clean |
http://ursulinegreaternoida.org/ScriptResource.axd?d=Zi2cNT69jFpFaEmCepjVl9r2jMl693pLaxw368DqCHLp1CUXV5uHI_pedLGpttYoOEA1-BnaMlza3F-e5i5QwjAjg_ZHVgMMCJ2BdUY7zD15A2ypEenfkkROvII_Ff0fSccMckccwmGi5_7RucCfXhxnoUrDcR90RNJupp4_aZr6ttqt0&t=5f6a2d32 | 200 OK Content-Length: 8371 Content-Type: text/javascript | clean |
http://ursulinegreaternoida.org/ScriptResource.axd?d=6B61GCJ8cZAhxo2kVNsCEWYe9Tc-5qbaUrULCa014bKyeDy_eGYXToUpsyNn_oDOteUqYO67dI1cq6z0QYAf87uZ_0wjY9dFf9TAVF-UZ2JXSwShExb1fN7LQeidWRQmbSIejZo6dgw7w3-i1kLm7EtPHexTcauO00BCt0vyiiLt0e0GhpFaI4UaRfRdZdmiddFLZw2&t=5f6a2d32 | 200 OK Content-Length: 15788 Content-Type: text/javascript | clean |
http://ursulinegreaternoida.org/ScriptResource.axd?d=DYqsek2GiF0sW41QF-th83dUVpTi5I_VxGu54rfWtk7Yq8CvzE2YDA3NO2gLarMRUV7DxD5VkyJ0s81pqZu0x1dKwnoMojLZuJ7gPwy1lWjcNgF96El9U00NdWYOoK20qAeha15mgbgtXchWNYVDGz6jSWOvtM9PgVQXWB2c8ndQRk0nuEh8TdpKs9jAlWyzI30-4Q2&t=5f6a2d32 | 200 OK Content-Length: 15091 Content-Type: text/javascript | clean |
http://ursulinegreaternoida.org/ScriptResource.axd?d=zi0JmXzOAp8Bdro_QVrYAVWfb2wJ9HUdfY_ZHmaaQUl-r5WIb7cbpPOfWWx1dOBrtSJGr51P0-ttQpBNFcWfMo4b8LAilVc8tvI78CASJSHWZXTAJUc5hTdcZH5gos8bSOlGLZjCJw5eRdIU2l93iLMeOyQnj0SfHlbl2TlpmTCs9m5B0&t=5f6a2d32 | 200 OK Content-Length: 14580 Content-Type: text/javascript | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=ursulinegreaternoida.org
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://ursulinegreaternoida.org/
Result: ursulinegreaternoida.org is not infected or malware details are not published yet.
Result: ursulinegreaternoida.org is not infected or malware details are not published yet.