Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=buh-prof.kz
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://buh-prof.kz/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: buh-prof.kz
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache
Connection: close
Date: Mon, 29 Dec 2014 18:04:12 GMT
Pragma: no-cache
Server: Apache/2.2.22 (Unix) mod_ssl/2.2.22 OpenSSL/1.0.1e-fips mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635
Content-Type: text/html; charset=utf-8
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: 00b34f0ddd4cfe13cbeccc298efe4130=e8390b8356c9a48ae4db4d13630ca19a; path=/
Set-Cookie: zt_neoa_tpl=zt_neoa; expires=Sat, 19-Dec-2015 18:04:12 GMT; path=/
Set-Cookie: neoa_ismobile=deleted; expires=Sun, 29-Dec-2013 18:04:11 GMT; path=/
X-Powered-By: PHP/5.2.17
GET / HTTP/1.1
Host: buh-prof.kz
Result:
HTTP/1.1 200 OK
Cache-Control: no-cache
Connection: close
Date: Mon, 29 Dec 2014 18:04:12 GMT
Pragma: no-cache
Server: Apache/2.2.22 (Unix) mod_ssl/2.2.22 OpenSSL/1.0.1e-fips mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635
Content-Type: text/html; charset=utf-8
P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
Set-Cookie: 00b34f0ddd4cfe13cbeccc298efe4130=e8390b8356c9a48ae4db4d13630ca19a; path=/
Set-Cookie: zt_neoa_tpl=zt_neoa; expires=Sat, 19-Dec-2015 18:04:12 GMT; path=/
Set-Cookie: neoa_ismobile=deleted; expires=Sun, 29-Dec-2013 18:04:11 GMT; path=/
X-Powered-By: PHP/5.2.17
Second query (visit from search engine):
GET / HTTP/1.1
Host: buh-prof.kz
Referer: http://www.google.com/search?q=buh-prof.kz
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: buh-prof.kz
Referer: http://www.google.com/search?q=buh-prof.kz
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://buh-prof.kz/ | 200 OK Content-Length: 31667 Content-Type: text/html | clean |
http://buh-prof.kz/media/system/js/mootools-core.js | 200 OK Content-Length: 96362 Content-Type: application/javascript | clean |
http://buh-prof.kz/media/system/js/core.js | 200 OK Content-Length: 4784 Content-Type: application/javascript | clean |
http://buh-prof.kz/media/system/js/mootools-more.js | 200 OK Content-Length: 238331 Content-Type: application/javascript | clean |
http://buh-prof.kz/media/system/js/modal.js | 200 OK Content-Length: 9732 Content-Type: application/javascript | clean |
http://buh-prof.kz//ajax.googleapis.com/ajax/libs/jquery/1.7/jquery.min.js/ | 404 ÐаÑегоÑÐ¸Ñ Ð½Ðµ найдена Content-Length: 1950 Content-Type: text/html | clean |
http://buh-prof.kz/index.php | 200 OK Content-Length: 31685 Content-Type: text/html | clean |
http://buh-prof.kz/components/com_k2/js/k2.js | 200 OK Content-Length: 6820 Content-Type: application/javascript | clean |
http://buh-prof.kz/media/widgetkit/js/jquery.js | 200 OK Content-Length: 95265 Content-Type: application/javascript | clean |
http://buh-prof.kz/cache/widgetkit/widgetkit-ef6a69c3.js | 200 OK Content-Length: 19596 Content-Type: application/javascript | clean |
http://buh-prof.kz/templates/zt_neoa/zt_menus/zt_megamenu/zt.megamenu.js | 200 OK Content-Length: 3250 Content-Type: application/javascript | clean |
http://buh-prof.kz/media/system/js/caption.js | 200 OK Content-Length: 729 Content-Type: application/javascript | clean |
http://buh-prof.kz/media/system/js/validate.js | 200 OK Content-Length: 2923 Content-Type: application/javascript | clean |
http://buh-prof.kz/modules/mod_pwebcontact/js/script.js | 200 OK Content-Length: 3924 Content-Type: application/javascript | clean |
http://buh-prof.kz/modules/mod_news_pro_gk4/interface/scripts/engine.portal.mode.1.js | 200 OK Content-Length: 2395 Content-Type: application/javascript | clean |