Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: wcgchile.com
Result:
HTTP/1.1 302 Moved Temporarily
Connection: close
Date: Sat, 04 Oct 2014 18:54:45 GMT
Location: http://ww1.wcgchile.com
Server: nginx/1.0.15
Content-Type: text/html
GET / HTTP/1.1
Host: wcgchile.com
Result:
HTTP/1.1 302 Moved Temporarily
Connection: close
Date: Sat, 04 Oct 2014 18:54:45 GMT
Location: http://ww1.wcgchile.com
Server: nginx/1.0.15
Content-Type: text/html
Second query (visit from search engine):
GET / HTTP/1.1
Host: wcgchile.com
Referer: http://www.google.com/search?q=wcgchile.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: wcgchile.com
Referer: http://www.google.com/search?q=wcgchile.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://wcgchile.com/ | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 04 Oct 2014 18:54:45 GMT Location: http://ww1.wcgchile.com Server: nginx/1.0.15 Content-Type: text/html | clean |
http://ww1.wcgchile.com/ | HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Connection: close Date: Sat, 04 Oct 2014 18:54:45 GMT Pragma: no-cache Server: Apache Vary: User-Agent,Accept-Encoding Content-Type: text/html; charset=UTF-8 Expires: Mon, 26 Jul 1997 05:00:00 GMT Last-Modified: Sat, 04 Oct 2014 18:54:45 GMT Set-Cookie: tu=3da4789793c128554b9529abf8a79be3; expires=Tue, 31-Dec-2019 23:00:00 GMT; path=/; domain=wcgchile.com; httponly X-Adblock-Key: MFwwDQYJKoZIhvcNAQEBBQADSwAwSAJBANnylWw2vLY4hUn9w06zQKbhKBfvjFUCsdFlb6TdQhxb9RXWXuI4t31c+o8fYOv/s8q1LGPga3DE1L/tHU4LENMCAwEAAQ==_JvZ6Z0WzEsDwMuoMb8x63XFrEtPMyFpcGe93AHtyitFQmCMjuEZ7DiRVbBQ+wPSNdme2dR7Tg4A/JdyEAq20SQ== X-Cache: MISS from 500320 X-Powered-By: PHP/5.3.3-7+squeeze19 | clean |
http://ww1.wcgchile.com//?gtnjs=1/ | 200 OK Content-Length: 23339 Content-Type: text/html | clean |
http://img.sedoparking.com/js/jquery-1.4.2.min.js | 200 OK Content-Length: 52579 Content-Type: application/x-javascript | clean |
http://www.google.com/adsense/domains/caf.js | 200 OK Content-Length: 258 Content-Type: text/javascript | clean |
http://wcgchile.com/test404page.js | HTTP/1.1 302 Moved Temporarily Connection: close Date: Sat, 04 Oct 2014 18:54:47 GMT Location: http://ww1.wcgchile.com Server: nginx/1.0.15 Content-Type: text/html | clean |
http://ww1.wcgchile.com/test404page.js | HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Connection: close Date: Sat, 04 Oct 2014 18:54:47 GMT Pragma: no-cache Server: Apache Vary: User-Agent,Accept-Encoding Content-Type: text/html; charset=UTF-8 Expires: Mon, 26 Jul 1997 05:00:00 GMT Last-Modified: Sat, 04 Oct 2014 18:54:47 GMT Set-Cookie: tu=5c38694cfd89f770f49c47e7bfad970b; expires=Tue, 31-Dec-2019 23:00:00 GMT; path=/; domain=wcgchile.com; httponly X-Adblock-Key: MFwwDQYJKoZIhvcNAQEBBQADSwAwSAJBANnylWw2vLY4hUn9w06zQKbhKBfvjFUCsdFlb6TdQhxb9RXWXuI4t31c+o8fYOv/s8q1LGPga3DE1L/tHU4LENMCAwEAAQ==_WioJSgxBnsjC9dwhcVsqUz3UfdDXMedR7MhQ/mAFd+nEzw2nFoHuouEpm8PRa/IHT7OuHT6t2CQH9CkKyGzuPw== X-Cache: MISS from 011291 X-Powered-By: PHP/5.3.3-7+squeeze19 | clean |
http://ww1.wcgchile.com/test404page.js/?gtnjs=1 | 200 OK Content-Length: 23339 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=wcgchile.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://wcgchile.com/
Result: wcgchile.com is not infected or malware details are not published yet.
Result: wcgchile.com is not infected or malware details are not published yet.