Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: whippet-dog.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 03 Oct 2014 13:32:06 GMT
Accept-Ranges: bytes
ETag: "698183-17d8-4d2f5a6f90240"
Server: Apache/2
Content-Length: 6104
Content-Type: text/html
Last-Modified: Thu, 10 Jan 2013 21:13:37 GMT
...6104 bytes of data.
GET / HTTP/1.1
Host: whippet-dog.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Fri, 03 Oct 2014 13:32:06 GMT
Accept-Ranges: bytes
ETag: "698183-17d8-4d2f5a6f90240"
Server: Apache/2
Content-Length: 6104
Content-Type: text/html
Last-Modified: Thu, 10 Jan 2013 21:13:37 GMT
...6104 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: whippet-dog.com
Referer: http://www.google.com/search?q=whippet-dog.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: whippet-dog.com
Referer: http://www.google.com/search?q=whippet-dog.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://whippet-dog.com/ | 200 OK Content-Length: 6104 Content-Type: text/html | clean |
http://c1.navrcholu.cz/code?site=87793;t=lb14 | 200 OK Content-Length: 1612 Content-Type: application/x-javascript | clean |
http://whippet-dog.com/chs/index.htm | 200 OK Content-Length: 24645 Content-Type: text/html | clean |
http://whippet-dog.com/chs/ricci/index.htm | 200 OK Content-Length: 19956 Content-Type: text/html | clean |
http://whippet-dog.com/chs/ricci/ | 200 OK Content-Length: 19956 Content-Type: text/html | clean |
http://whippet-dog.com/chs/ricci/../puvodhappy/index.htm | 200 OK Content-Length: 26240 Content-Type: text/html | clean |
http://whippet-dog.com/chs/ricci/../puvodhappy/bravovyst2.jpg | 200 OK Content-Length: 40039 Content-Type: image/jpeg | clean |
http://whippet-dog.com/test404page.js | HTTP/1.1 302 Found Connection: close Date: Fri, 03 Oct 2014 13:32:08 GMT Location: http://error.banan.cz/404 Server: Apache/2 Content-Length: 276 Content-Type: text/html; charset=iso-8859-1 | clean |
http://error.banan.cz/404 | HTTP/1.1 302 Found Connection: close Date: Fri, 03 Oct 2014 13:32:08 GMT Location: http://error.banan.cz/404-not-found.html Server: Apache Vary: Accept-Encoding Content-Length: 224 Content-Type: text/html; charset=iso-8859-1 | clean |
http://error.banan.cz/404-not-found.html | 200 OK Content-Length: 7587 Content-Type: text/html | clean |
http://error.banan.cz/test404page.js | HTTP/1.1 302 Found Connection: close Date: Fri, 03 Oct 2014 13:32:08 GMT Location: http://error.banan.cz/404 Server: Apache Vary: Accept-Encoding Content-Length: 209 Content-Type: text/html; charset=iso-8859-1 | clean |
http://whippet-dog.com/chs/ricci/../puvodhappy/bravo9kk.jpg | 200 OK Content-Length: 77734 Content-Type: image/jpeg | clean |
http://whippet-dog.com/chs/ricci/../puvodhappy/bravohead.jpg | 200 OK Content-Length: 31829 Content-Type: image/jpeg | clean |
http://whippet-dog.com/chs/ricci/../puvodhappy/bravo_pohyb.jpg | 200 OK Content-Length: 35641 Content-Type: image/jpeg | clean |
http://whippet-dog.com/chs/ricci/../puvodhappy/gentlemanjack2.jpg | 200 OK Content-Length: 102251 Content-Type: image/jpeg | clean |
http://whippet-dog.com/chs/ricci/../puvodhappy/gentlemanjack.jpg | 200 OK Content-Length: 18687 Content-Type: image/jpeg | clean |
http://whippet-dog.com/chs/ricci/../puvodhappy/s_brazen.jpg | 200 OK Content-Length: 10700 Content-Type: image/jpeg | clean |
http://whippet-dog.com/chs/ricci/../puvodhappy/red.jpg | 200 OK Content-Length: 7063 Content-Type: image/jpeg | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=whippet-dog.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://whippet-dog.com/
Result: whippet-dog.com is not infected or malware details are not published yet.
Result: whippet-dog.com is not infected or malware details are not published yet.