Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: wakouan.co.jp
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 04 Oct 2014 17:08:28 GMT
Accept-Ranges: bytes
ETag: "1b72cb-4c21-541925da"
Server: A p a c h e
Content-Length: 19489
Content-Type: text/html
Last-Modified: Wed, 17 Sep 2014 06:10:34 GMT
...19489 bytes of data.
GET / HTTP/1.1
Host: wakouan.co.jp
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sat, 04 Oct 2014 17:08:28 GMT
Accept-Ranges: bytes
ETag: "1b72cb-4c21-541925da"
Server: A p a c h e
Content-Length: 19489
Content-Type: text/html
Last-Modified: Wed, 17 Sep 2014 06:10:34 GMT
...19489 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: wakouan.co.jp
Referer: http://www.google.com/search?q=wakouan.co.jp
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: wakouan.co.jp
Referer: http://www.google.com/search?q=wakouan.co.jp
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://wakouan.co.jp/ | 200 OK Content-Length: 19489 Content-Type: text/html | clean |
http://wakouan.co.jp/js/menu_img.js | 200 OK Content-Length: 1053 Content-Type: application/x-javascript | clean |
http://wakouan.co.jp/js/font_henkou.js | 200 OK Content-Length: 1827 Content-Type: application/x-javascript | clean |
http://wakouan.co.jp/js/swfobject.js | 200 OK Content-Length: 10220 Content-Type: application/x-javascript | clean |
https://www.gstatic.com/swiffy/v5.4/runtime.js | 200 OK Content-Length: 300332 Content-Type: text/javascript | clean |
http://wakouan.co.jp/Scripts/AC_RunActiveContent.js | 200 OK Content-Length: 8029 Content-Type: application/x-javascript | clean |
http://wakouan.co.jp/alt_flash/wakouan140410.js | 404 Not Found Content-Length: 335 Content-Type: text/html | clean |
http://wakouan.co.jp/test404page.js | 404 Not Found Content-Length: 323 Content-Type: text/html | clean |
http://tabiiro.jp/magazine/_common/js/bnr.js | 200 OK Content-Length: 4440 Content-Type: text/javascript | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=wakouan.co.jp
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://wakouan.co.jp/
Result: wakouan.co.jp is not infected or malware details are not published yet.
Result: wakouan.co.jp is not infected or malware details are not published yet.