Scanned pages/files
Request | Server response | Status |
http://chiterast.com/ | 200 OK Content-Length: 42925 Content-Type: text/html | suspicious |
Suspicious code found <div id="boxes"> <div id="popup-vhod" class="window"> <!-- block --> <div class="login-box"> <div class="log-box-l"> <div class="log-box-r"> <div class="close-div"><a href="#" class="close"></a></div> <div class="text270deg">Àâòîðèçàöèÿ</a></div> <div class="popup-body"> <!-- ÔÎÐÌÀ ÂÕÎÄÀ --> <div class="log-vhod"> <form class="flogin" method="post" ac <div valign="top"> <input class="but-log" onclick="submit();" name="image" alt="Âîéòè" type="button" value=""/> </div> <input name="login" type="hidden" id="login" value="submit" /> </form> </div> <!-- END ÔÎÐÌÀ ÂÕÎÄÀ --> <div class="clr"></div> </div> </div></div></div> </div> <!-- /block --> </div> <div id="mask"></div> | ||
http://chiterast.com/engine/classes/js/jquery.js | 200 OK Content-Length: 93637 Content-Type: application/x-javascript | clean |
http://chiterast.com/engine/classes/js/jqueryui.js | 200 OK Content-Length: 75927 Content-Type: application/x-javascript | clean |
http://chiterast.com/engine/classes/js/dle_js.js | 200 OK Content-Length: 23054 Content-Type: application/x-javascript | clean |
http://ajax.googleapis.com/ajax/libs/webfont/1/webfont.js | 200 OK Content-Length: 17844 Content-Type: text/javascript | clean |
http://chiterast.com/engine/editor/scripts/webfont.js | 200 OK Content-Length: 3019 Content-Type: application/x-javascript | clean |
http://chiterast.com/js/chite_find.js | 200 OK Content-Length: 17844 Content-Type: application/x-javascript | clean |
http://chiterast.com/index.php?do=feedback | 200 OK Content-Length: 19062 Content-Type: text/html | suspicious |
Suspicious code found <div id="boxes"> <div id="popup-vhod" class="window"> <!-- block --> <div class="login-box"> <div class="log-box-l"> <div class="log-box-r"> <div class="close-div"><a href="#" class="close"></a></div> <div class="text270deg">Àâòîðèçàöèÿ</a></div> <div class="popup-body"> <!-- ÔÎÐÌÀ ÂÕÎÄÀ --> <div class="log-vhod"> <form class="flogin" method="post" ac <div valign="top"> <input class="but-log" onclick="submit();" name="image" alt="Âîéòè" type="button" value=""/> </div> <input name="login" type="hidden" id="login" value="submit" /> </form> </div> <!-- END ÔÎÐÌÀ ÂÕÎÄÀ --> <div class="clr"></div> </div> </div></div></div> </div> <!-- /block --> </div> <div id="mask"></div> | ||
http://chiterast.com/index.php?do=register | 200 OK Content-Length: 16056 Content-Type: text/html | suspicious |
Suspicious code found <div id="boxes"> <div id="popup-vhod" class="window"> <!-- block --> <div class="login-box"> <div class="log-box-l"> <div class="log-box-r"> <div class="close-div"><a href="#" class="close"></a></div> <div class="text270deg">Àâòîðèçàöèÿ</a></div> <div class="popup-body"> <!-- ÔÎÐÌÀ ÂÕÎÄÀ --> <div class="log-vhod"> <form class="flogin" method="post" ac <div valign="top"> <input class="but-log" onclick="submit();" name="image" alt="Âîéòè" type="button" value=""/> </div> <input name="login" type="hidden" id="login" value="submit" /> </form> </div> <!-- END ÔÎÐÌÀ ÂÕÎÄÀ --> <div class="clr"></div> </div> </div></div></div> </div> <!-- /block --> </div> <div id="mask"></div> | ||
http://chiterast.com/index.php?do=rules | 200 OK Content-Length: 17685 Content-Type: text/html | suspicious |
Suspicious code found <div id="boxes"> <div id="popup-vhod" class="window"> <!-- block --> <div class="login-box"> <div class="log-box-l"> <div class="log-box-r"> <div class="close-div"><a href="#" class="close"></a></div> <div class="text270deg">Àâòîðèçàöèÿ</a></div> <div class="popup-body"> <!-- ÔÎÐÌÀ ÂÕÎÄÀ --> <div class="log-vhod"> <form class="flogin" method="post" ac <div valign="top"> <input class="but-log" onclick="submit();" name="image" alt="Âîéòè" type="button" value=""/> </div> <input name="login" type="hidden" id="login" value="submit" /> </form> </div> <!-- END ÔÎÐÌÀ ÂÕÎÄÀ --> <div class="clr"></div> </div> </div></div></div> </div> <!-- /block --> </div> <div id="mask"></div> | ||
http://chiterast.com/index.php?do=lastcomments | 200 OK Content-Length: 21671 Content-Type: text/html | suspicious |
Suspicious code found <div id="boxes"> <div id="popup-vhod" class="window"> <!-- block --> <div class="login-box"> <div class="log-box-l"> <div class="log-box-r"> <div class="close-div"><a href="#" class="close"></a></div> <div class="text270deg">Àâòîðèçàöèÿ</a></div> <div class="popup-body"> <!-- ÔÎÐÌÀ ÂÕÎÄÀ --> <div class="log-vhod"> <form class="flogin" method="post" ac <div valign="top"> <input class="but-log" onclick="submit();" name="image" alt="Âîéòè" type="button" value=""/> </div> <input name="login" type="hidden" id="login" value="submit" /> </form> </div> <!-- END ÔÎÐÌÀ ÂÕÎÄÀ --> <div class="clr"></div> </div> </div></div></div> </div> <!-- /block --> </div> <div id="mask"></div> | ||
http://chiterast.com/cheats-warface/ | 200 OK Content-Length: 42585 Content-Type: text/html | suspicious |
Suspicious code found <div id="boxes"> <div id="popup-vhod" class="window"> <!-- block --> <div class="login-box"> <div class="log-box-l"> <div class="log-box-r"> <div class="close-div"><a href="#" class="close"></a></div> <div class="text270deg">Àâòîðèçàöèÿ</a></div> <div class="popup-body"> <!-- ÔÎÐÌÀ ÂÕÎÄÀ --> <div class="log-vhod"> <form class="flogin" method="post" ac <div valign="top"> <input class="but-log" onclick="submit();" name="image" alt="Âîéòè" type="button" value=""/> </div> <input name="login" type="hidden" id="login" value="submit" /> </form> </div> <!-- END ÔÎÐÌÀ ÂÕÎÄÀ --> <div class="clr"></div> </div> </div></div></div> </div> <!-- /block --> </div> <div id="mask"></div> | ||
http://chiterast.com/cheats-world-of-tanks/ | 200 OK Content-Length: 43320 Content-Type: text/html | suspicious |
Suspicious code found <div id="boxes"> <div id="popup-vhod" class="window"> <!-- block --> <div class="login-box"> <div class="log-box-l"> <div class="log-box-r"> <div class="close-div"><a href="#" class="close"></a></div> <div class="text270deg">Àâòîðèçàöèÿ</a></div> <div class="popup-body"> <!-- ÔÎÐÌÀ ÂÕÎÄÀ --> <div class="log-vhod"> <form class="flogin" method="post" ac <div valign="top"> <input class="but-log" onclick="submit();" name="image" alt="Âîéòè" type="button" value=""/> </div> <input name="login" type="hidden" id="login" value="submit" /> </form> </div> <!-- END ÔÎÐÌÀ ÂÕÎÄÀ --> <div class="clr"></div> </div> </div></div></div> </div> <!-- /block --> </div> <div id="mask"></div> | ||
http://chiterast.com/cheats-pb/ | 200 OK Content-Length: 42312 Content-Type: text/html | suspicious |
Suspicious code found <div id="boxes"> <div id="popup-vhod" class="window"> <!-- block --> <div class="login-box"> <div class="log-box-l"> <div class="log-box-r"> <div class="close-div"><a href="#" class="close"></a></div> <div class="text270deg">Àâòîðèçàöèÿ</a></div> <div class="popup-body"> <!-- ÔÎÐÌÀ ÂÕÎÄÀ --> <div class="log-vhod"> <form class="flogin" method="post" ac <div valign="top"> <input class="but-log" onclick="submit();" name="image" alt="Âîéòè" type="button" value=""/> </div> <input name="login" type="hidden" id="login" value="submit" /> </form> </div> <!-- END ÔÎÐÌÀ ÂÕÎÄÀ --> <div class="clr"></div> </div> </div></div></div> </div> <!-- /block --> </div> <div id="mask"></div> | ||
http://chiterast.com/cheats-crossfire/ | 200 OK Content-Length: 42487 Content-Type: text/html | suspicious |
Suspicious code found <div id="boxes"> <div id="popup-vhod" class="window"> <!-- block --> <div class="login-box"> <div class="log-box-l"> <div class="log-box-r"> <div class="close-div"><a href="#" class="close"></a></div> <div class="text270deg">Àâòîðèçàöèÿ</a></div> <div class="popup-body"> <!-- ÔÎÐÌÀ ÂÕÎÄÀ --> <div class="log-vhod"> <form class="flogin" method="post" ac <div valign="top"> <input class="but-log" onclick="submit();" name="image" alt="Âîéòè" type="button" value=""/> </div> <input name="login" type="hidden" id="login" value="submit" /> </form> </div> <!-- END ÔÎÐÌÀ ÂÕÎÄÀ --> <div class="clr"></div> </div> </div></div></div> </div> <!-- /block --> </div> <div id="mask"></div> |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: chiterast.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Mon, 26 Jan 2015 13:53:51 GMT
Pragma: no-cache
Server: nginx lowprotect
Vary: Accept-Encoding
Vary: Accept-Encoding
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=db4toq3evjtuqh7i40p319r402; path=/; domain=.chiterast.com; HttpOnly
Set-Cookie: dle_user_id=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=.chiterast.com; httponly
Set-Cookie: dle_password=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=.chiterast.com; httponly
Set-Cookie: dle_hash=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=.chiterast.com; httponly
X-Powered-By: PHP/5.4.4-14+deb7u14
GET / HTTP/1.1
Host: chiterast.com
Result:
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: close
Date: Mon, 26 Jan 2015 13:53:51 GMT
Pragma: no-cache
Server: nginx lowprotect
Vary: Accept-Encoding
Vary: Accept-Encoding
Content-Type: text/html
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Set-Cookie: PHPSESSID=db4toq3evjtuqh7i40p319r402; path=/; domain=.chiterast.com; HttpOnly
Set-Cookie: dle_user_id=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=.chiterast.com; httponly
Set-Cookie: dle_password=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=.chiterast.com; httponly
Set-Cookie: dle_hash=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; domain=.chiterast.com; httponly
X-Powered-By: PHP/5.4.4-14+deb7u14
Second query (visit from search engine):
GET / HTTP/1.1
Host: chiterast.com
Referer: http://www.google.com/search?q=chiterast.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: chiterast.com
Referer: http://www.google.com/search?q=chiterast.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=chiterast.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://chiterast.com/
Result: chiterast.com is not infected or malware details are not published yet.
Result: chiterast.com is not infected or malware details are not published yet.