Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=140.115.78.29
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://140.115.78.29/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: 140.115.78.29
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 21 Dec 2014 12:56:45 GMT
Server: Apache/2.2.8 (Win32) PHP/5.2.6
Content-Type: text/html
X-Powered-By: PHP/5.2.6
GET / HTTP/1.1
Host: 140.115.78.29
Result:
HTTP/1.1 200 OK
Connection: close
Date: Sun, 21 Dec 2014 12:56:45 GMT
Server: Apache/2.2.8 (Win32) PHP/5.2.6
Content-Type: text/html
X-Powered-By: PHP/5.2.6
Second query (visit from search engine):
GET / HTTP/1.1
Host: 140.115.78.29
Referer: http://www.google.com/search?q=140.115.78.29
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: 140.115.78.29
Referer: http://www.google.com/search?q=140.115.78.29
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://140.115.78.29/ | 200 OK Content-Length: 32677 Content-Type: text/html | clean |
http://140.115.78.29/map.phtml | 200 OK Content-Length: 28897 Content-Type: text/html | clean |
http://140.115.78.29/intro.phtml | 200 OK Content-Length: 144293 Content-Type: text/html | clean |
http://140.115.78.29/bsearch.phtml | 200 OK Content-Length: 19432 Content-Type: text/html | clean |
http://140.115.78.29/upload.phtml | HTTP/1.1 200 OK Connection: close Date: Sun, 21 Dec 2014 12:56:57 GMT Server: Apache/2.2.8 (Win32) PHP/5.2.6 Content-Length: 56 Content-Type: text/html Set-Cookie: mycookie=%2Fupload.phtml X-Powered-By: PHP/5.2.6 | clean |
http://140.115.78.29/login.phtml; | 404 Not Found Content-Length: 297 Content-Type: text/html | clean |
http://140.115.78.29/test404page.js | 404 Not Found Content-Length: 299 Content-Type: text/html | clean |
http://140.115.78.29/comment.phtml | 200 OK Content-Length: 26091 Content-Type: text/html | clean |
http://140.115.78.29/introrent01.phtml | 200 OK Content-Length: 24014 Content-Type: text/html | clean |
http://140.115.78.29/parking01.phtml | 200 OK Content-Length: 18812 Content-Type: text/html | clean |
http://140.115.78.29/member.phtml | 200 OK Content-Length: 16827 Content-Type: text/html | clean |
http://140.115.78.29/link.phtml | 200 OK Content-Length: 29721 Content-Type: text/html | clean |
http://140.115.78.29/manager.phtml | HTTP/1.1 200 OK Connection: close Date: Sun, 21 Dec 2014 12:57:12 GMT Server: Apache/2.2.8 (Win32) PHP/5.2.6 Content-Length: 62 Content-Type: text/html Set-Cookie: mycookie=%2Fmanager.phtml X-Powered-By: PHP/5.2.6 | clean |
http://140.115.78.29/logoin-out.phtml | 200 OK Content-Length: 17457 Content-Type: text/html | clean |
http://140.115.78.29/chk_ifmember.phtml | 200 OK Content-Length: 20364 Content-Type: text/html | clean |
http://140.115.78.29/editmember.phtml | HTTP/1.1 200 OK Connection: close Date: Sun, 21 Dec 2014 12:57:16 GMT Server: Apache/2.2.8 (Win32) PHP/5.2.6 Content-Length: 63 Content-Type: text/html Set-Cookie: mycookie=%2Feditmember.phtml X-Powered-By: PHP/5.2.6 | clean |
http://140.115.78.29/qreg.phtml | 200 OK Content-Length: 18422 Content-Type: text/html | clean |
http://140.115.78.29/parking02.phtml | 200 OK Content-Length: 22138 Content-Type: text/html | clean |