Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=bosf.ru
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Google as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: bosf.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Connection: close
Date: Sat, 07 Mar 2015 20:47:11 GMT
Pragma: no-cache
Server: nginx
Vary: User-Agent,Accept-Encoding
Content-Type: text/html; charset=UTF-8
Expires: Mon, 26 Jul 1997 05:00:00 GMT
Last-Modified: Sat, 07 Mar 2015 20:47:10 GMT
Set-Cookie: tu=7098afb109c79f6443b2e265c4f12329; expires=Tue, 31-Dec-2019 23:00:00 GMT; path=/; domain=bosf.ru; httponly
X-Adblock-Key: MFwwDQYJKoZIhvcNAQEBBQADSwAwSAJBANnylWw2vLY4hUn9w06zQKbhKBfvjFUCsdFlb6TdQhxb9RXWXuI4t31c+o8fYOv/s8q1LGPga3DE1L/tHU4LENMCAwEAAQ==_VjQBdQtc/GLPy+MbBXY3uLxQ20GHiMRklTU9+BezexvhMpL29qiXXugComOXQQM54kVBlO7t5SwQiJYQHjHRrQ==
X-Cache: MISS from 051184
X-Powered-By: PHP/5.3.3-7+squeeze25
GET / HTTP/1.1
Host: bosf.ru
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Connection: close
Date: Sat, 07 Mar 2015 20:47:11 GMT
Pragma: no-cache
Server: nginx
Vary: User-Agent,Accept-Encoding
Content-Type: text/html; charset=UTF-8
Expires: Mon, 26 Jul 1997 05:00:00 GMT
Last-Modified: Sat, 07 Mar 2015 20:47:10 GMT
Set-Cookie: tu=7098afb109c79f6443b2e265c4f12329; expires=Tue, 31-Dec-2019 23:00:00 GMT; path=/; domain=bosf.ru; httponly
X-Adblock-Key: MFwwDQYJKoZIhvcNAQEBBQADSwAwSAJBANnylWw2vLY4hUn9w06zQKbhKBfvjFUCsdFlb6TdQhxb9RXWXuI4t31c+o8fYOv/s8q1LGPga3DE1L/tHU4LENMCAwEAAQ==_VjQBdQtc/GLPy+MbBXY3uLxQ20GHiMRklTU9+BezexvhMpL29qiXXugComOXQQM54kVBlO7t5SwQiJYQHjHRrQ==
X-Cache: MISS from 051184
X-Powered-By: PHP/5.3.3-7+squeeze25
Second query (visit from search engine):
GET / HTTP/1.1
Host: bosf.ru
Referer: http://www.google.com/search?q=bosf.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: bosf.ru
Referer: http://www.google.com/search?q=bosf.ru
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://bosf.ru/ | 200 OK Content-Length: 26933 Content-Type: text/html | clean |
http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js | 200 OK Content-Length: 72174 Content-Type: text/javascript | clean |
http://bosf.ru/search/redirect.php?f=http%3A%2F%2Fjmpdirect01.com%2Fctrd%2Fclick%2Fnewjump1.do%3Faffiliate%3D45549%26subid%3D52247%26terms%3Dbos%2520f%26ai%3DLJ1akTD7v3_TiBZWq8AVXStTG8kZr0LxGwtG4UrsptfAYTCbTS0nI7OHwMyuD7zehYh4s4lzkAO3QQuxRvnkhsKwHM7UdYBWzAZbIl76u3n7rPr4B9K8UzZBOXiY406fVNekmnutqTRqw1I63y-vPM8V6UZ3Ny9lnyGpk7EfJ8aKLWpqA1opfcqIHh5a7LKhMC92uNSVuonfHxGQEsiYpUZ0czSaFAkMBM4xrxiUDHLSmlAnMs <span>...726 symbols skipped</span> | HTTP/1.1 302 Moved Temporarily Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Connection: close Date: Sat, 07 Mar 2015 20:47:11 GMT Pragma: no-cache Location: http://bosf.ru/search/tcerider.php?f=http%3A%2F%2Fjmpdirect01.com%2Fctrd%2Fclick%2Fnewjump1.do%3Faffiliate%3D45549%26subid%3D52247%26terms%3Dbos%2520f%26ai%3DLJ1akTD7v3_TiBZWq8AVXStTG8kZr0LxGwtG4UrsptfAYTCbTS0nI7OHwMyuD7zehYh4s4lzkAO3QQuxRvnkhsKwHM7UdYBWzAZbIl76u3n7rPr4B9K8UzZBOXiY406fVNekmnutqTRqw1I63y-vPM8V6UZ3Ny9lnyGpk7EfJ8aKLWpqA1opfcqIHh5a7LKhMC92uNSVuonfHxGQEsiYpUZ0czSaFAkMBM4xrxiUDHLSmlAnMs4IT2kJYOeIcvzXXmYfkx862v5ZWSLdiwKBsgIH9xsGdpaPdLb-l2L5rxnQpggTx0ZYHomrWXm1PNyqYm4AFnZwfIqhTr2Tu38A8p9opeZaor_257zjx_SOfFPQWQlw5p0eGRzpEE1NZDSzbf45CRHDO-goMXl7XDDQ8eE4IyBnuTUHPi5_iS6Tihh8MpqC8SYYDg%26version%3D1.2&v=NTk0ZGJlMTNiMjQ4NzNkOTY4MjBjMmFjN2RiZTRiZGIJMQlib3NmLnJ1NTRmYjYzY2VjODI4OTUuMzY0MjkwNjMJYm9zZi5ydTU0ZmI2M2NlYzgzMDg4LjI1NjA3MjY2CTE0MjU3NjEyMzEJYWRfN18w&l=NAlBRFMJZmMxNzhhYmNlYTMxN2E2NzNkYjNlNDMxZTI0NTgwYWQJMC4wMDAzCTAJMTMJCTMxCTEJMQkwCTNiNjBmY2EyZTY3ZjhmN2ZiZTFhNzYzNTBmYTdkM2FiCWh0dHA6Ly92ZXJpZmllZHVwZGF0ZXMudGVjaG5vbG9neQk5MDM4NDE1MAljCTExNDI3NzM5NgkJYm9zIGYJMTAxMAk3CTIwCTI1CTE0MjU3NjEyMzEJMC4wMDA2CU4JMAkwCTAJCTAuMDAwMwkJCQkJCWJvc2YucnU1NGZiNjNjZWM4Mjg5NS4zNjQyOTA2MwkwLjAwMDYJMAkJMQkwCTEyMDUJNzc4NjE1MTAJ Server: nginx Vary: User-Agent,Accept-Encoding Content-Length: 0 Content-Type: text/html Expires: Mon, 26 Jul 1997 05:00:00 GMT Last-Modified: Sat, 07 Mar 2015 20:47:11 GMT X-Cache: MISS from 630831 X-Powered-By: PHP/5.3.3-7+squeeze25 | clean |
http://bosf.ru/search/tcerider.php?f=http%3a%2f%2fjmpdirect01.com%2fctrd%2fclick%2fnewjump1.do%3faffiliate%3d45549%26subid%3d52247%26terms%3dbos%2520f%26ai%3dlj1aktd7v3_tibzwq8avxsttg8kzr0lxgwtg4ursptfaytcbts0ni7ohwmyud7zehyh4s4lzkao3qquxrvnkhskwhm7udybwzazbil76u3n7rpr4b9k8uzzboxiy406fvnekmnutqtrqw1i63y-vpm8v6uz3ny9lnygpk7efj8aklwpqa1opfcqihh5a7lkhmc92unsvuonfhxgqesiypuz0czsafakmbm4xrxiudhlsmlanms <span>...726 symbols skipped</span> | 200 OK Content-Length: 0 Content-Type: text/html | clean |
http://bosf.ru/test404page.js | 200 OK Content-Length: 22850 Content-Type: text/html | clean |