Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: xerecas.net
Result:
GET / HTTP/1.1
Host: xerecas.net
Result:
Second query (visit from search engine):
GET / HTTP/1.1
Host: xerecas.net
Referer: http://www.google.com/search?q=xerecas.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: xerecas.net
Referer: http://www.google.com/search?q=xerecas.net
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://www.xerecas.net/ | HTTP/1.1 302 Found Connection: close Date: Tue, 30 Sep 2014 05:55:51 GMT Location: http://www.xerecas.net/tube Server: Apache Content-Length: 276 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.xerecas.net/tube | HTTP/1.1 301 Moved Permanently Connection: close Date: Tue, 30 Sep 2014 05:55:51 GMT Location: http://www.xerecas.net/tube/ Server: Apache Content-Length: 301 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.xerecas.net/tube/ | 200 OK Content-Length: 194660 Content-Type: text/html | clean |
http://www.xerecas.net/tube/wp-content/themes/xerecas/js/jquery-1.3.2.min.js | 200 OK Content-Length: 57254 Content-Type: application/javascript | clean |
http://www.xerecas.net/tube/wp-content/themes/xerecas/js/jqueryslidemenu/jqueryslidemenu.js | 200 OK Content-Length: 2095 Content-Type: application/javascript | clean |
http://www.xerecas.net/tube/wp-includes/js/jquery/jquery.js?ver=1.11.1 | 200 OK Content-Length: 95807 Content-Type: application/javascript | clean |
http://www.xerecas.net/tube/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.2.1 | 200 OK Content-Length: 7200 Content-Type: application/javascript | clean |
http://dtym7iokkjlif.cloudfront.net/media/js/jquery.shareaholic-publishers-sb.min.js?ver=6.1.5.1 | 200 OK Content-Length: 49666 Content-Type: application/javascript | clean |
http://dtym7iokkjlif.cloudfront.net/media/js/jquery.shareaholic-publishers-rd.min.js?ver=6.1.5.1 | 200 OK Content-Length: 440 Content-Type: application/javascript | clean |
http://s1.slimtrade.com/s6712.js | 200 OK Content-Length: 31250 Content-Type: application/javascript | clean |
http://www.xerecas.net/js/antiframe.js | 403 Forbidden Content-Length: 401 Content-Type: text/html | clean |
http://www.xerecas.net/test404page.js | 403 Forbidden Content-Length: 79 Content-Type: text/html | clean |
http://www.xerecas.net/banners/java.js | 403 Forbidden Content-Length: 79 Content-Type: text/html | clean |
http://www.xerecas.net/tube/wp-content/plugins/wp-postratings/postratings-js.js?ver=1.79 | 200 OK Content-Length: 3329 Content-Type: application/javascript | clean |
http://www.xerecas.net/js/xclicks2.js | 403 Forbidden Content-Length: 400 Content-Type: text/html | clean |
http://widgets.tcimg.com/v1/blog.js | 200 OK Content-Length: 1543 Content-Type: application/x-javascript | clean |
http://www.xerecas.net/img-ec/js/pop.js | 403 Forbidden Content-Length: 78 Content-Type: text/html | clean |
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=xerecas.net
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://xerecas.net/
Result: xerecas.net is not infected or malware details are not published yet.
Result: xerecas.net is not infected or malware details are not published yet.