Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: usbrecordplayers.net
Result:
GET / HTTP/1.1
Host: usbrecordplayers.net
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: usbrecordplayers.net
Referer: http://www.google.com/search?q=usbrecordplayers.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: usbrecordplayers.net
Referer: http://www.google.com/search?q=usbrecordplayers.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://www.usbrecordplayers.net/ | HTTP/1.1 200 OK Date: Sun, 05 Oct 2014 12:19:31 GMT Accept-Ranges: bytes ETag: "030a722b9bacc1:11b6c" Server: Microsoft-IIS/6.0 Content-Length: 7594 Content-Location: http://www.usbrecordplayers.net/default.html Content-Type: text/html Last-Modified: Wed, 14 Dec 2011 23:36:00 GMT X-Powered-By: ASP.NET | clean |
http://www.usbrecordplayers.net/default.html | 200 OK Content-Length: 7594 Content-Type: text/html | clean |
http://pagead2.googlesyndication.com/pagead/show_ads.js | 200 OK Content-Length: 21308 Content-Type: text/javascript | clean |
http://lapi.ebay.com/ws/eBayISAPI.dll?EKServer&ai=sx%7D%7Dadh%7E%7Dhy%3C%3F%3E&bdrcolor=000000&cid=0&eksize=1&encode=UTF-8&endcolor=FF0000&endtime=n&fbgcolor=FFFFFF&fntcolor=000000&fs=0&hdrcolor=ffffff&hdrimage=1&hdrsrch=n&img=y&lnkcolor=0000FF&logo=3&maxprice=100000&minprice=0&num=12&numbid=n&paypal=n&popup=n&prvd=9&query=Usb+Record+Player&r0=3&shipcost=n&sid=usbrecordplayers.net&siteid=0&sort=Me <span>...168 symbols skipped</span> | 200 OK Content-Length: 30772 Content-Type: text/html | clean |
http://lapi.ebay.com/ws/\""+href+"\""+(target==null||target=="_self"?"":" | HTTP/1.1 302 Moved Temporarily Date: Sun, 05 Oct 2014 12:19:34 GMT Location: http://pages.ebay.com/messages/page_not_responding.html?eBayErrorEventName=p4p%60gu%60m%2Bfslehq%60%3C%3Dsm%2Bpu56*%3B41453e-2014.10.05.05.19.34.351.MST Server: Apache-Coyote/1.1 Content-Length: 0 RlogId: p4p%60gu%60m%2Bfslehq%60%3C%3Dsm%2Bpu56*%3B41453e-148e040294f | clean |
http://pages.ebay.com/messages/page_not_responding.html?ebayerroreventname=p4p%60gu%60m%2bfslehq%60%3c%3dsm%2bpu56*%3b41453e-2014.10.05.05.19.34.351.mst | 200 OK Content-Length: 8866 Content-Type: text/html | clean |
http://include.ebaystatic.com/js/v/us/ebaybase.js | 200 OK Content-Length: 70480 Content-Type: application/javascript | clean |
http://include.ebaystatic.com/js/v/us/ebaysup.js | 200 OK Content-Length: 17110 Content-Type: application/javascript | clean |
http://lapi.ebay.com/test404page.js | HTTP/1.1 302 Moved Temporarily Date: Sun, 05 Oct 2014 12:19:36 GMT Location: http://pages.ebay.com/messages/page_not_responding.html?eBayErrorEventName=p4p%60gu%60m%2Bfslehq%60%3C%3Dsm%2Bpu56*a%3D%3Fe%3B6e-2014.10.05.05.19.36.510.MST Server: Apache-Coyote/1.1 Content-Length: 0 RlogId: p4p%60gu%60m%2Bfslehq%60%3C%3Dsm%2Bpu56*a%3D%3Fe%3B6e-148e04031be | clean |
http://pages.ebay.com/messages/page_not_responding.html?ebayerroreventname=p4p%60gu%60m%2bfslehq%60%3c%3dsm%2bpu56*a%3d%3fe%3b6e-2014.10.05.05.19.36.510.mst | 200 OK Content-Length: 8866 Content-Type: text/html | clean |
http://pages.ebay.com/securitycenter/index.html | 200 OK Content-Length: 23747 Content-Type: text/html | clean |
http://ir.ebaystatic.com/v4js/z/i5/r32gctn0fu3vjkpge2mjhij3q.js | 200 OK Content-Length: 104294 Content-Type: application/x-javascript | clean |
http://include.ebaystatic.com/js/e893/us/ebaybase_v4_e8933us.js | 200 OK Content-Length: 51638 Content-Type: application/javascript | clean |
http://include.ebaystatic.com/js/e893/us/ebaysup_e8933us.js | 200 OK Content-Length: 17110 Content-Type: application/javascript | clean |
http://ir.ebaystatic.com/rs/v/1hyeqrpc2m1tda5e0ae3tzqy1qp.js | 200 OK Content-Length: 202876 Content-Type: application/x-javascript | clean |
http://pages.ebay.com/securitycenter/ | 200 OK Content-Length: 23747 Content-Type: text/html | clean |
http://pages.ebay.com/securitycenter/Index.html | 200 OK Content-Length: 23747 Content-Type: text/html | clean |
http://pages.ebay.com/securitycenter/Identity.html | 200 OK Content-Length: 20490 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=usbrecordplayers.net
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://usbrecordplayers.net/
Result: usbrecordplayers.net is not infected or malware details are not published yet.
Result: usbrecordplayers.net is not infected or malware details are not published yet.