Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: whisperfare.com
Result:
GET / HTTP/1.1
Host: whisperfare.com
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: whisperfare.com
Referer: http://www.google.com/search?q=whisperfare.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: whisperfare.com
Referer: http://www.google.com/search?q=whisperfare.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://www.whisperfare.com/ | 200 OK Content-Length: 680 Content-Type: text/html | clean |
http://teso.co.kr/pds_upload/index2.php | 200 OK Content-Length: 0 Content-Type: text/html | clean |
http://teso.co.kr/test404page.js | 404 Not Found Content-Length: 3974 Content-Type: text/html | clean |
http://howhigh.xz.lt/pub/counter.js | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 05 Oct 2014 20:31:56 GMT Location: http://www.serveriai.lt/talpinimas.html Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Status: 301 | clean |
http://www.serveriai.lt/talpinimas.html | 200 OK Content-Length: 10073 Content-Type: text/html | clean |
http://www.serveriai.lt/ | 200 OK Content-Length: 7661 Content-Type: text/html | clean |
http://www.serveriai.lt//www.iv.lt/jquery/js/jquery.js/ | HTTP/1.1 302 Found Connection: close Date: Sun, 05 Oct 2014 20:31:57 GMT Location: http://www.serveriai.lt/ Server: Apache Vary: Accept-Encoding Content-Length: 208 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.serveriai.lt//www.iv.lt/jquery/js/notice.jquery.js/ | HTTP/1.1 302 Found Connection: close Date: Sun, 05 Oct 2014 20:31:57 GMT Location: http://www.serveriai.lt/ Server: Apache Vary: Accept-Encoding Content-Length: 208 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.serveriai.lt//www.googleadservices.com/pagead/conversion.js/ | HTTP/1.1 302 Found Connection: close Date: Sun, 05 Oct 2014 20:31:57 GMT Location: http://www.serveriai.lt/ Server: Apache Vary: Accept-Encoding Content-Length: 208 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.serveriai.lt//www.iv.lt/statistika.php?type=last_order&service=svetain%EBs+talpinimas+ir+el.+pa%F0tas/ | HTTP/1.1 302 Found Connection: close Date: Sun, 05 Oct 2014 20:31:57 GMT Location: http://www.serveriai.lt/ Server: Apache Vary: Accept-Encoding Content-Length: 208 Content-Type: text/html; charset=iso-8859-1 | clean |
http://howhigh.xz.lt//www.iv.lt/dokumentai/talpinimas.pdf/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 05 Oct 2014 20:31:57 GMT Location: http://www.serveriai.lt/talpinimas.html Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Status: 301 | clean |
http://howhigh.xz.lt/pub/srautas.html | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 05 Oct 2014 20:31:57 GMT Location: http://www.serveriai.lt/talpinimas.html Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Status: 301 | clean |
http://howhigh.xz.lt/pub/vieta.html | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 05 Oct 2014 20:31:57 GMT Location: http://www.serveriai.lt/talpinimas.html Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Status: 301 | clean |
http://howhigh.xz.lt/pub/pastas.html | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 05 Oct 2014 20:31:57 GMT Location: http://www.serveriai.lt/talpinimas.html Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Status: 301 | clean |
http://howhigh.xz.lt/pub/php.html | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 05 Oct 2014 20:31:57 GMT Location: http://www.serveriai.lt/talpinimas.html Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Status: 301 | clean |
http://howhigh.xz.lt/pub/mysql.html | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 05 Oct 2014 20:31:57 GMT Location: http://www.serveriai.lt/talpinimas.html Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Status: 301 | clean |
http://howhigh.xz.lt/pub/multi-domain.html | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 05 Oct 2014 20:31:57 GMT Location: http://www.serveriai.lt/talpinimas.html Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Status: 301 | clean |
http://howhigh.xz.lt/pub/programos.html | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 05 Oct 2014 20:31:57 GMT Location: http://www.serveriai.lt/talpinimas.html Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Status: 301 | clean |
http://howhigh.xz.lt/pub/apsauga.html | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 05 Oct 2014 20:31:57 GMT Location: http://www.serveriai.lt/talpinimas.html Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Status: 301 | clean |
http://howhigh.xz.lt/pub/ssl.html | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 05 Oct 2014 20:31:57 GMT Location: http://www.serveriai.lt/talpinimas.html Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Status: 301 | clean |
http://howhigh.xz.lt/pub/kopijos.html | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 05 Oct 2014 20:31:57 GMT Location: http://www.serveriai.lt/talpinimas.html Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Status: 301 | clean |
http://howhigh.xz.lt/pub/akcija.html | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 05 Oct 2014 20:31:57 GMT Location: http://www.serveriai.lt/talpinimas.html Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Status: 301 | clean |
http://howhigh.xz.lt/pub/garantija.html | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 05 Oct 2014 20:31:57 GMT Location: http://www.serveriai.lt/talpinimas.html Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Status: 301 | clean |
http://howhigh.xz.lt/pub/neribojami.html | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 05 Oct 2014 20:31:57 GMT Location: http://www.serveriai.lt/talpinimas.html Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Status: 301 | clean |
http://howhigh.xz.lt/pub/didmenininkams.html | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 05 Oct 2014 20:31:57 GMT Location: http://www.serveriai.lt/talpinimas.html Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Status: 301 | clean |
http://howhigh.xz.lt/pub/profesionalus.html | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 05 Oct 2014 20:31:57 GMT Location: http://www.serveriai.lt/talpinimas.html Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Status: 301 | clean |
http://howhigh.xz.lt/pub/dizainas.html | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 05 Oct 2014 20:31:57 GMT Location: http://www.serveriai.lt/talpinimas.html Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Status: 301 | clean |
http://howhigh.xz.lt/pub/demo/user.html | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 05 Oct 2014 20:31:57 GMT Location: http://www.serveriai.lt/talpinimas.html Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Status: 301 | clean |
http://howhigh.xz.lt/pub/talpinimas.html | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 05 Oct 2014 20:31:58 GMT Location: http://www.serveriai.lt/talpinimas.html Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Status: 301 | clean |
http://howhigh.xz.lt/pub/domenai.html | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 05 Oct 2014 20:31:58 GMT Location: http://www.serveriai.lt/talpinimas.html Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Status: 301 | clean |
http://howhigh.xz.lt/pub/klientams.html | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 05 Oct 2014 20:31:58 GMT Location: http://www.serveriai.lt/talpinimas.html Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Status: 301 | clean |
http://howhigh.xz.lt/pub/pirkti.php | HTTP/1.1 301 Moved Permanently Connection: close Date: Sun, 05 Oct 2014 20:31:58 GMT Location: http://www.serveriai.lt/talpinimas.html Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Status: 301 | clean |
http://www.reconstructing.me/is.js | 200 OK Content-Length: 1557 Content-Type: text/html | clean |
http://mondodesign.ro/sll/is.js | 404 Not Found Content-Length: 1148 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=whisperfare.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://whisperfare.com/
Result: whisperfare.com is not infected or malware details are not published yet.
Result: whisperfare.com is not infected or malware details are not published yet.