Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=all-samp.at.ua
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://all-samp.at.ua/ | 200 OK Content-Length: 24611 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: stoats-imaterial.in <script type='text/javascript'> function resizeFrame(){ var WX,WY,BX,BY; var o=document.getElementById("iFaKA5u7"),t,d; if (!o) return; d=o.contentDocument; if (!(t=d.getElementById("wrapperXaKA5u7"))) WX=0; else WX=t.value; if (!(t=d.getElementById("wrapperYaKA5u7"))) WY=0; else WY=t.value; if (!(t=d.getElementById("bannerXaKA5u7"))) BX=0; else BX=t.value; if (!(t=d.getElementById("bannerY ...[4370 bytes skipped]... | ||
http://nativevat.hol.es/rases.txt | HTTP/1.1 404 Not Found Connection: close Date: Wed, 14 Jan 2015 12:23:32 GMT Server: Apache Content-Length: 170 Content-Type: text/html; charset=utf-8 X-Powered-By: PHP/5.2.17 | clean |
http://www.hostinger.lt/klaida_404? | 200 OK Content-Length: 11371 Content-Type: text/html | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.6.2/jquery.min.js | 200 OK Content-Length: 91556 Content-Type: text/javascript | clean |
http://ajax.googleapis.com/ajax/libs/jqueryui/1.8.14/jquery-ui.min.js | 200 OK Content-Length: 201658 Content-Type: text/javascript | clean |
http://nativevat.hol.es/js/site.php | HTTP/1.1 404 Not Found Connection: close Date: Wed, 14 Jan 2015 12:23:35 GMT Server: Apache Content-Length: 170 Content-Type: text/html; charset=utf-8 X-Powered-By: PHP/5.2.17 | clean |
http://www.hostinger.lt/test404page.js | 404 Not Found Content-Length: 331 Content-Type: text/html | clean |
http://nativevat.hol.es/js/popup.js | HTTP/1.1 404 Not Found Connection: close Date: Wed, 14 Jan 2015 12:23:36 GMT Server: Apache Content-Length: 170 Content-Type: text/html; charset=utf-8 X-Powered-By: PHP/5.2.17 | clean |
http://goo.gl/lwUXhf | HTTP/1.1 301 Moved Permanently Cache-Control: no-cache, no-store, max-age=0, must-revalidate Connection: close Date: Wed, 14 Jan 2015 12:23:36 GMT Pragma: no-cache Location: http://avto-cool.my1.ru/hjjjhll.txt Server: GSE Content-Type: text/html; charset=UTF-8 Expires: Fri, 01 Jan 1990 00:00:00 GMT Alternate-Protocol: 80:quic,p=0.02 X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-XSS-Protection: 1; mode=block | clean |
http://avto-cool.my1.ru/hjjjhll.txt | 404 Not Found Content-Length: 6869 Content-Type: text/html | clean |
http://avto-cool.my1.ru/ | 404 Not found Content-Length: 7067 Content-Type: text/html | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.10.2/jquery.min.js | 200 OK Content-Length: 93100 Content-Type: text/javascript | clean |
http://avto-cool.my1.ru/.serr/js/core.js | 200 OK Content-Length: 414 Content-Type: text/javascript | clean |
https://dl.dropboxusercontent.com/s/207odofje1uzdl5/orororo.txt | 401 Not Authorized Content-Length: 600 Content-Type: text/html | clean |
https://dl.dropboxusercontent.com/s/tnwyduomjbcsxzm/opapo.txt | 401 Not Authorized Content-Length: 600 Content-Type: text/html | clean |
http://pjatnuchanu.ucoz.ua/adblock.txt | 200 OK Content-Length: 3082 Content-Type: text/plain | clean |
http://s40.ucoz.net/src/jquery-1.7.2.js | 200 OK Content-Length: 94840 Content-Type: text/javascript | clean |
http://s40.ucoz.net/src/ulightbox/ulightbox.js | 200 OK Content-Length: 22097 Content-Type: text/javascript | clean |
http://s40.ucoz.net/src/uwnd.js?2 | 200 OK Content-Length: 228554 Content-Type: text/javascript | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: all-samp.at.ua
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache
Cache-Control: no-store
Cache-Control: private
Connection: close
Date: Wed, 14 Jan 2015 12:23:30 GMT
Pragma: no-cache
Server: uServ/3.2.2
Content-Type: text/html; charset=UTF-8
Set-Cookie: 2all-sampuCoz=; path=/; expires=Mon, 14-Jan-2013 12:23:31 GMT; domain=.all-samp.at.ua;
Set-Cookie: 2all-sampuzll=1421238211; path=/; expires=Thu, 14-Jan-2016 12:23:31 GMT; domain=.all-samp.at.ua;
Set-Cookie: 2all-sampuCoz=; path=/; expires=Mon, 14-Jan-2013 12:23:31 GMT; domain=.all-samp.at.ua;
Set-Cookie: 2all-sampuCoz=; path=/; expires=Mon, 14-Jan-2013 12:23:31 GMT; domain=.all-samp.at.ua;
GET / HTTP/1.1
Host: all-samp.at.ua
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache
Cache-Control: no-store
Cache-Control: private
Connection: close
Date: Wed, 14 Jan 2015 12:23:30 GMT
Pragma: no-cache
Server: uServ/3.2.2
Content-Type: text/html; charset=UTF-8
Set-Cookie: 2all-sampuCoz=; path=/; expires=Mon, 14-Jan-2013 12:23:31 GMT; domain=.all-samp.at.ua;
Set-Cookie: 2all-sampuzll=1421238211; path=/; expires=Thu, 14-Jan-2016 12:23:31 GMT; domain=.all-samp.at.ua;
Set-Cookie: 2all-sampuCoz=; path=/; expires=Mon, 14-Jan-2013 12:23:31 GMT; domain=.all-samp.at.ua;
Set-Cookie: 2all-sampuCoz=; path=/; expires=Mon, 14-Jan-2013 12:23:31 GMT; domain=.all-samp.at.ua;
Second query (visit from search engine):
GET / HTTP/1.1
Host: all-samp.at.ua
Referer: http://www.google.com/search?q=all-samp.at.ua
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: all-samp.at.ua
Referer: http://www.google.com/search?q=all-samp.at.ua
Result:
The result is similar to the first query. There are no suspicious redirects found.